Windows
Analysis Report
ShippingOrder_ GSHS2400052.exe
Overview
General Information
Detection
Score: | 100 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- ShippingOrder_ GSHS2400052.exe (PID: 6424 cmdline:
"C:\Users\ user\Deskt op\Shippin gOrder_ GS HS2400052. exe" MD5: 5A9BF748B2B3431B39E5A8FEA6FEAA80) - MSBuild.exe (PID: 6816 cmdline:
"C:\Window s\Microsof t.NET\Fram ework\v4.0 .30319\MSB uild.exe" MD5: 8FDF47E0FF70C40ED3A17014AEEA4232) - WerFault.exe (PID: 6968 cmdline:
C:\Windows \system32\ WerFault.e xe -u -p 6 424 -s 240 8 MD5: FD27D9F6D02763BDE32511B5DF7FF7A0)
- cleanup
Name | Description | Attribution | Blogpost URLs | Link |
---|---|---|---|---|
Agent Tesla, AgentTesla | A .NET based information stealer readily available to actors due to leaked builders. The malware is able to log keystrokes, can access the host's clipboard and crawls the disk for credentials or other valuable information. It has the capability to send information back to its C&C via HTTP(S), SMTP, FTP, or towards a Telegram channel. |
Name | Description | Attribution | Blogpost URLs | Link |
---|---|---|---|---|
zgRAT | zgRAT is a Remote Access Trojan malware which sometimes drops other malware such as AgentTesla malware. zgRAT has an inforstealer use which targets browser information and cryptowallets.Usually spreads by USB or phishing emails with -zip/-lnk/.bat/.xlsx attachments and so on. | No Attribution |
{"Exfil Mode": "SMTP", "Host": "mail.iaa-airferight.com", "Username": "mail@iaa-airferight.com", "Password": "Asaprocky11"}
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_GenericDownloader_1 | Yara detected Generic Downloader | Joe Security |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_PureLogStealer | Yara detected PureLog Stealer | Joe Security | ||
JoeSecurity_zgRAT_1 | Yara detected zgRAT | Joe Security | ||
JoeSecurity_PureLogStealer | Yara detected PureLog Stealer | Joe Security | ||
JoeSecurity_CredentialStealer | Yara detected Credential Stealer | Joe Security | ||
JoeSecurity_AgentTesla_1 | Yara detected AgentTesla | Joe Security | ||
Click to see the 14 entries |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_zgRAT_1 | Yara detected zgRAT | Joe Security | ||
JoeSecurity_PureLogStealer | Yara detected PureLog Stealer | Joe Security | ||
JoeSecurity_zgRAT_1 | Yara detected zgRAT | Joe Security | ||
JoeSecurity_PureLogStealer | Yara detected PureLog Stealer | Joe Security | ||
JoeSecurity_zgRAT_1 | Yara detected zgRAT | Joe Security | ||
Click to see the 27 entries |
System Summary |
---|
Source: | Author: Kiran kumar s, oscd.community: |
Source: | Author: frack113: |
Click to jump to signature section
AV Detection |
---|
Source: | Malware Configuration Extractor: |
Source: | Virustotal: | Perma Link | ||
Source: | Virustotal: | Perma Link | ||
Source: | Virustotal: | Perma Link | ||
Source: | Virustotal: | Perma Link | ||
Source: | Virustotal: | Perma Link |
Source: | ReversingLabs: | |||
Source: | Virustotal: | Perma Link |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Static PE information: |
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: |
Networking |
---|
Source: | File source: | ||
Source: | File source: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: |
Source: | ASN Name: |
Source: | JA3 fingerprint: |
Source: | DNS query: | ||
Source: | DNS query: | ||
Source: | DNS query: |
Source: | TCP traffic: |
Source: | HTTP traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Key, Mouse, Clipboard, Microphone and Screen Capturing |
---|
Source: | .Net Code: | ||
Source: | .Net Code: |
Source: | Windows user hook set: | Jump to behavior |
Source: | Window created: | Jump to behavior |
System Summary |
---|
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Static PE information: |
Source: | Process Stats: |
Source: | Code function: | 0_2_00007FFD9B8A9F40 | |
Source: | Code function: | 1_2_01154A98 | |
Source: | Code function: | 1_2_0115ADF0 | |
Source: | Code function: | 1_2_01153E80 | |
Source: | Code function: | 1_2_011541C8 | |
Source: | Code function: | 1_2_0115F8A5 | |
Source: | Code function: | 1_2_06413578 | |
Source: | Code function: | 1_2_06415D30 | |
Source: | Code function: | 1_2_064145A0 | |
Source: | Code function: | 1_2_06411030 | |
Source: | Code function: | 1_2_0641E0B9 | |
Source: | Code function: | 1_2_0641A140 | |
Source: | Code function: | 1_2_064191E0 | |
Source: | Code function: | 1_2_06415650 | |
Source: | Code function: | 1_2_0641C618 | |
Source: | Code function: | 1_2_06413C8F | |
Source: | Code function: | 1_2_06410328 |
Source: | Process created: |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: |
Source: | Classification label: |
Source: | Mutant created: | ||
Source: | Mutant created: |
Source: | File created: | Jump to behavior |
Source: | Static PE information: |
Source: | Static file information: |
Source: | WMI Queries: | ||
Source: | WMI Queries: |
Source: | File read: | Jump to behavior |
Source: | Key opened: | Jump to behavior |
Source: | ReversingLabs: | ||
Source: | Virustotal: |
Source: | File read: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior |
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior |
Source: | Key value queried: | Jump to behavior |
Source: | File opened: | Jump to behavior |
Source: | Key opened: | Jump to behavior |
Source: | Static PE information: |
Source: | Static PE information: |
Source: | Static PE information: |
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: |
Data Obfuscation |
---|
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: |
Source: | .Net Code: |
Source: | Code function: | 0_2_00007FFD9B8A4757 | |
Source: | Code function: | 0_2_00007FFD9B8A26BA | |
Source: | Code function: | 1_2_01150CC2 | |
Source: | Code function: | 1_2_01150C3A |
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: |
Source: | Registry key monitored for changes: | Jump to behavior | ||
Source: | Registry key monitored for changes: | Jump to behavior |
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior |
Malware Analysis System Evasion |
---|
Source: | WMI Queries: |
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior |
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior |
Source: | Window / User API: | Jump to behavior | ||
Source: | Window / User API: | Jump to behavior | ||
Source: | Window / User API: | Jump to behavior | ||
Source: | Window / User API: | Jump to behavior |
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior |
Source: | WMI Queries: |
Source: | WMI Queries: | ||
Source: | WMI Queries: |
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | Process information queried: | Jump to behavior |
Source: | Process queried: | Jump to behavior | ||
Source: | Process queried: | Jump to behavior |
Source: | Process token adjusted: | Jump to behavior | ||
Source: | Process token adjusted: | Jump to behavior |
Source: | Memory allocated: | Jump to behavior |
HIPS / PFW / Operating System Protection Evasion |
---|
Source: | Memory allocated: | Jump to behavior |
Source: | Memory written: | Jump to behavior |
Source: | Memory written: | Jump to behavior | ||
Source: | Memory written: | Jump to behavior | ||
Source: | Memory written: | Jump to behavior | ||
Source: | Memory written: | Jump to behavior | ||
Source: | Memory written: | Jump to behavior |
Source: | Process created: | Jump to behavior |
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior |
Source: | Key value queried: | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Stealing of Sensitive Information |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | Key opened: | Jump to behavior |
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior |
Source: | File opened: | Jump to behavior |
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | Key opened: | Jump to behavior | ||
Source: | Key opened: | Jump to behavior |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Remote Access Functionality |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | 121 Windows Management Instrumentation | 1 DLL Side-Loading | 1 DLL Side-Loading | 1 Disable or Modify Tools | 2 OS Credential Dumping | 1 File and Directory Discovery | Remote Services | 11 Archive Collected Data | 1 Ingress Tool Transfer | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 311 Process Injection | 1 Deobfuscate/Decode Files or Information | 21 Input Capture | 24 System Information Discovery | Remote Desktop Protocol | 2 Data from Local System | 11 Encrypted Channel | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 Obfuscated Files or Information | 1 Credentials in Registry | 1 Query Registry | SMB/Windows Admin Shares | 1 Email Collection | 2 Non-Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | 2 Software Packing | NTDS | 131 Security Software Discovery | Distributed Component Object Model | 21 Input Capture | 23 Application Layer Protocol | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | 1 DLL Side-Loading | LSA Secrets | 1 Process Discovery | SSH | 1 Clipboard Data | Fallback Channels | Scheduled Transfer | Data Encrypted for Impact |
Domain Properties | Botnet | Replication Through Removable Media | Scheduled Task | RC Scripts | RC Scripts | 151 Virtualization/Sandbox Evasion | Cached Domain Credentials | 151 Virtualization/Sandbox Evasion | VNC | GUI Input Capture | Multiband Communication | Data Transfer Size Limits | Service Stop |
DNS | Web Services | External Remote Services | Systemd Timers | Startup Items | Startup Items | 311 Process Injection | DCSync | 1 Application Window Discovery | Windows Remote Management | Web Portal Capture | Commonly Used Port | Exfiltration Over C2 Channel | Inhibit System Recovery |
Network Trust Dependencies | Serverless | Drive-by Compromise | Container Orchestration Job | Scheduled Task/Job | Scheduled Task/Job | Indicator Removal from Tools | Proc Filesystem | 1 System Network Configuration Discovery | Cloud Services | Credential API Hooking | Application Layer Protocol | Exfiltration Over Alternative Protocol | Defacement |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
34% | ReversingLabs | Win32.Trojan.AgentTesla | ||
43% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Virustotal | Browse | ||
3% | Virustotal | Browse | ||
12% | Virustotal | Browse | ||
0% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
12% | Virustotal | Browse | ||
1% | Virustotal | Browse | ||
3% | Virustotal | Browse | ||
10% | Virustotal | Browse | ||
10% | Virustotal | Browse | ||
10% | Virustotal | Browse |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
bg.microsoft.map.fastly.net | 199.232.210.172 | true | false |
| unknown |
mail.iaa-airferight.com | 46.175.148.58 | true | true |
| unknown |
playerenterprises.org | 193.222.96.147 | true | false |
| unknown |
api.ipify.org | 172.67.74.152 | true | false | high | |
fp2e7a.wpc.phicdn.net | 192.229.211.108 | true | false |
| unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false |
| unknown | |
false |
| unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown | ||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false |
| unknown | ||
false | high | |||
false |
| unknown | ||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
46.175.148.58 | mail.iaa-airferight.com | Ukraine | 56394 | ASLAGIDKOM-NETUA | true | |
193.222.96.147 | playerenterprises.org | Germany | 3303 | SWISSCOMSwisscomSwitzerlandLtdCH | false | |
172.67.74.152 | api.ipify.org | United States | 13335 | CLOUDFLARENETUS | false |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1429031 |
Start date and time: | 2024-04-20 06:47:05 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 8m 48s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | default.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 9 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Sample name: | ShippingOrder_ GSHS2400052.exe |
Detection: | MAL |
Classification: | mal100.troj.spyw.evad.winEXE@4/5@3/3 |
EGA Information: |
|
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, WerFault.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 40.126.29.7, 40.126.29.11, 40.126.29.12, 40.126.29.6, 40.126.29.9, 40.126.29.10, 40.126.29.13, 40.126.29.5, 199.232.210.172, 192.229.211.108, 40.68.123.157, 13.95.31.18, 20.42.73.29, 52.165.164.15
- Excluded domains from analysis (whitelisted): prdv4a.aadg.msidentity.com, slscr.update.microsoft.com, www.tm.v4.a.prd.aadg.trafficmanager.net, ctldl.windowsupdate.com, wu-bg-shim.trafficmanager.net, login.msa.msidentity.com, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, ocsp.digicert.com, login.live.com, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, blobcollector.events.data.trafficmanager.net, onedsblobprdeus15.eastus.cloudapp.azure.com, sls.update.microsoft.com, umwatson.events.data.microsoft.com, www.tm.lg.prod.aadmsa.trafficmanager.net, glb.sls.prod.dcat.dsp.trafficmanager.net
- Execution Graph export aborted for target ShippingOrder_ GSHS2400052.exe, PID 6424 because it is empty
- HTTPS proxy raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- Not all processes where analyzed, report is missing behavior information
- Report size exceeded maximum capacity and may have missing behavior information.
- Report size getting too big, too many NtOpenKeyEx calls found.
- Report size getting too big, too many NtProtectVirtualMemory calls found.
- Report size getting too big, too many NtQueryValueKey calls found.
- Report size getting too big, too many NtReadVirtualMemory calls found.
- Report size getting too big, too many NtSetInformationFile calls found.
Time | Type | Description |
---|---|---|
06:47:54 | API Interceptor | |
06:48:01 | API Interceptor | |
06:48:16 | API Interceptor |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
46.175.148.58 | Get hash | malicious | AgentTesla | Browse | ||
Get hash | malicious | AgentTesla | Browse | |||
Get hash | malicious | AgentTesla | Browse | |||
Get hash | malicious | AgentTesla | Browse | |||
Get hash | malicious | AgentTesla | Browse | |||
Get hash | malicious | AgentTesla | Browse | |||
Get hash | malicious | AgentTesla | Browse | |||
Get hash | malicious | AgentTesla | Browse | |||
Get hash | malicious | AgentTesla | Browse | |||
Get hash | malicious | AgentTesla | Browse | |||
193.222.96.147 | Get hash | malicious | AgentTesla | Browse | ||
172.67.74.152 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Stealit | Browse |
| ||
Get hash | malicious | Stealit | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
fp2e7a.wpc.phicdn.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | PayPal Phisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | TechSupportScam | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | PureLog Stealer, zgRAT | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | TechSupportScam | Browse |
| ||
mail.iaa-airferight.com | Get hash | malicious | AgentTesla | Browse |
| |
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
bg.microsoft.map.fastly.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | PayPal Phisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | TechSupportScam | Browse |
| ||
Get hash | malicious | TechSupportScam | Browse |
| ||
Get hash | malicious | TechSupportScam | Browse |
| ||
Get hash | malicious | TechSupportScam | Browse |
| ||
Get hash | malicious | TechSupportScam | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
playerenterprises.org | Get hash | malicious | AgentTesla | Browse |
| |
api.ipify.org | Get hash | malicious | AgentTesla | Browse |
| |
Get hash | malicious | AgentTesla, PureLog Stealer | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla, GuLoader | Browse |
| ||
Get hash | malicious | CredGrabber, Meduza Stealer, PureLog Stealer, zgRAT | Browse |
| ||
Get hash | malicious | AgentTesla, PureLog Stealer | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
ASLAGIDKOM-NETUA | Get hash | malicious | AgentTesla | Browse |
| |
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
SWISSCOMSwisscomSwitzerlandLtdCH | Get hash | malicious | HTMLPhisher | Browse |
| |
Get hash | malicious | GuLoader, Remcos | Browse |
| ||
Get hash | malicious | GuLoader, Remcos | Browse |
| ||
Get hash | malicious | GuLoader, Remcos | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | GuLoader, Remcos | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
CLOUDFLARENETUS | Get hash | malicious | LummaC, Glupteba, Mars Stealer, PureLog Stealer, RedLine, RisePro Stealer, SmokeLoader | Browse |
| |
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | RedLine | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | TechSupportScam | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | TechSupportScam | Browse |
| ||
Get hash | malicious | TechSupportScam | Browse |
| ||
Get hash | malicious | TechSupportScam | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
3b5074b1b5d032e5620f69f9f700ff0e | Get hash | malicious | AgentTesla | Browse |
| |
Get hash | malicious | RedLine | Browse |
| ||
Get hash | malicious | AgentTesla, PureLog Stealer | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla, PureLog Stealer | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla, GuLoader | Browse |
| ||
Get hash | malicious | DCRat, PureLog Stealer, zgRAT | Browse |
|
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_ShippingOrder_ G_c05f69ea49c545b52540ede261d1523dc0c4da49_19f2bd8d_292068fc-b850-4303-bb11-dec50d1c5818\Report.wer
Download File
Process: | C:\Windows\System32\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 65536 |
Entropy (8bit): | 1.2120825092482466 |
Encrypted: | false |
SSDEEP: | 192:1jiw295081zbaWB+lPIUMpzuiFZZ24lO8z+:piw2g81zbamIgVpzuiFZY4lO8z |
MD5: | D1AF2656809F4EB0D3BF479402C49E6C |
SHA1: | E46EE1A278A9E76EF86C50930313C0BD2C60331B |
SHA-256: | 19F6637298273D2BC0958DDC5F64B6858BF46F0A9AAD6113119CB70B6942BADB |
SHA-512: | 23B417B12EECC8DEFB776DF6B1DE15587312B5C78D5652699EE3CBEF41326367BE1ECEC7DA3E77C162CEDA7954E223D9E7156F0AAD05D0F0427C4DD6187F6C96 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Windows\System32\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 571139 |
Entropy (8bit): | 2.703775943496332 |
Encrypted: | false |
SSDEEP: | 3072:s0IOFRGEYHc4n+P3KcSk6T3q1CCqpPw3+vCtdN9tdN9tdN9tdCfmoaTe8lCp:s0BY8vqTLoqtw3QUTeA |
MD5: | 6A78E945F0750DDB8C70EAA1B7DAAE62 |
SHA1: | 9216E650BF2E5B12E7B05C4CC967104CC16E1F71 |
SHA-256: | DEEA68B23086D7C727168976B6FDBE7E93FFAAC137FF307A8518D34F1B48A4B0 |
SHA-512: | D9B46E13DE8C216FC2251D68FD6101A07A9E3588708622B8AF646C6D566F394800FF1D32D66E2364234909AAA9D9DFA1F1BE047B98B9F9A5FF0A7D877159230F |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Windows\System32\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 8896 |
Entropy (8bit): | 3.7046091041623677 |
Encrypted: | false |
SSDEEP: | 192:R6l7wVeJwGLu6Y9n9QgmfZBWpru89boc1Jgf/4m:R6lXJ5C6YN9QgmfPsokJgfV |
MD5: | ED6A5D48DAE2855AEA111827C263CDDE |
SHA1: | 6B743F2276368CA85939A2C19B5D9172BE3B8170 |
SHA-256: | 25A1403A93CA609EF4378A1FA7753A72BF23D8E05AA7B93EE3F1D810AB70EEEF |
SHA-512: | 6691C6B24C83667B55FA278FD35B34B1593C3BAA6E997DC2407D0BFF3CF8AEB34824EEEA4AAE6D2E86445AB22A9D6C6CCAC74579D04E93613044742CD049D6D0 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Windows\System32\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4816 |
Entropy (8bit): | 4.494690700781559 |
Encrypted: | false |
SSDEEP: | 48:cvIwWl8zsDJg771I9yNWpW8VYdYm8M4JVrGSYL96FXyq8vwGSYL99kWCjTCyd:uIjfdI7N87VVJBopYWwop9k5iyd |
MD5: | 0A8397FB9153C8EF798483142539B668 |
SHA1: | 5304EF6DEE02731E221A483FEF618DA99BDFD9AE |
SHA-256: | AAB389EDE4CF7C9E35168BFF70DF1460F5A0F42E21C685D28EDBDCCC0DF609B1 |
SHA-512: | A37F85F5EEB53091094F59A9C6CD37A6145E634757B68C6FFF2839CBF1B2B8ACCF5220C3AFEFD1BE69035B249FA544C29B86F5F9CC15F931236935860C6D528C |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Windows\System32\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1835008 |
Entropy (8bit): | 4.465722882160903 |
Encrypted: | false |
SSDEEP: | 6144:yIXfpi67eLPU9skLmb0b4aWSPKaJG8nAgejZMMhA2gX4WABl0uN4dwBCswSb+:3XD94aWlLZMM6YFHu++ |
MD5: | 47B03DF1C4873FDF5BE5FB68E471493D |
SHA1: | C140748AEB50BD8505EC1D4BDD1F7FCEAA1AA983 |
SHA-256: | BED759661AF55E9E5C6FF3439598E5E3C4F751B3FE7D189DB75292BFC97B3353 |
SHA-512: | 0BE734BE1427495C8194188EE875B52E98FDE135BF4919322AF576C8E1F605CAF0E0E0E063F6E37B7502398D10DE354B5774279CCB2E380D877110FB3F529CD5 |
Malicious: | false |
Reputation: | low |
Preview: |
File type: | |
Entropy (8bit): | 5.932304734057946 |
TrID: |
|
File name: | ShippingOrder_ GSHS2400052.exe |
File size: | 189'952 bytes |
MD5: | 5a9bf748b2b3431b39e5a8fea6feaa80 |
SHA1: | 08a558eb27295a8e3f70a7a05cf958e2907fd970 |
SHA256: | 3801a5a9dd369ed4fefc953437c2059d00da7b98fabd3ec68262ef48f9718bcf |
SHA512: | caa42a2ea17c2ca98812478dd5739479be6fee0c243401c08003092749b1848b4090b7470f9f6641219b9696cccfecebfc2497e2d7fc8200fb833a13bbe0e022 |
SSDEEP: | 3072:fcGYpXxZwveS8lH9YYLI42pVWse3Ns6G2FxgiNCJmPG04:EGYpvwveMYpBRFxgvh |
TLSH: | 7B045B18EF88C622DA5E173260A343008FB8D1D7A647EBCBEC5468F82C537495E556BF |
File Content Preview: | MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......PE..L...$.!f............................R.... ... ....@.. .......................@............@................................ |
Icon Hash: | 90cececece8e8eb0 |
Entrypoint: | 0x430152 |
Entrypoint Section: | .text |
Digitally signed: | false |
Imagebase: | 0x400000 |
Subsystem: | windows gui |
Image File Characteristics: | EXECUTABLE_IMAGE |
DLL Characteristics: | DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE |
Time Stamp: | 0x6621C524 [Fri Apr 19 01:13:08 2024 UTC] |
TLS Callbacks: | |
CLR (.Net) Version: | |
OS Version Major: | 4 |
OS Version Minor: | 0 |
File Version Major: | 4 |
File Version Minor: | 0 |
Subsystem Version Major: | 4 |
Subsystem Version Minor: | 0 |
Import Hash: | f34d5f2d4577ed6d9ceec516c1f5a744 |
Instruction |
---|
jmp dword ptr [00430160h] |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
xor al, 01h |
add eax, dword ptr [eax] |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
and al, C5h |
and dword ptr [esi+00h], esp |
add byte ptr [eax], al |
add byte ptr [edx], al |
add byte ptr [eax], al |
add byte ptr [ecx+00h], cl |
add byte ptr [eax], al |
test byte ptr [ecx], al |
add eax, dword ptr [eax] |
test bl, ah |
add al, byte ptr [eax] |
push edx |
push ebx |
inc esp |
push ebx |
mov edi, 6E45C05Fh |
cwde |
pop eax |
dec edi |
wait |
dec eax |
push esi |
jne 00007F0BE09190D6h |
scasb |
cld |
add dword ptr [ecx], 00000000h |
add byte ptr [eax], al |
inc ebx |
cmp bl, byte ptr [ebp+edx*2+73h] |
jc 00007F0BE0919186h |
pop esp |
arpl word ptr [edi+6Dh], bp |
jo 00007F0BE0919187h |
je 00007F0BE0919177h |
jc 00007F0BE091916Eh |
inc esp |
jnc 00007F0BE091917Eh |
je 00007F0BE0919181h |
jo 00007F0BE091916Eh |
dec edi |
jne 00007F0BE0919186h |
jo 00007F0BE0919187h |
je 00007F0BE0919185h |
pop esp |
inc ebp |
insd |
jnc 00007F0BE0919174h |
outsb |
arpl word ptr [edi+4Eh], bp |
insb |
jo 00007F0BE0919177h |
bound eax, dword ptr [eax] |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
Name | Virtual Address | Virtual Size | Is in Section |
---|---|---|---|
IMAGE_DIRECTORY_ENTRY_EXPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IMPORT | 0x30104 | 0x4c | .text |
IMAGE_DIRECTORY_ENTRY_RESOURCE | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_EXCEPTION | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_SECURITY | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BASERELOC | 0x32000 | 0xc | .reloc |
IMAGE_DIRECTORY_ENTRY_DEBUG | 0x30168 | 0x1c | .text |
IMAGE_DIRECTORY_ENTRY_COPYRIGHT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_GLOBALPTR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_TLS | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IAT | 0x30160 | 0x8 | .text |
IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR | 0x2000 | 0x48 | .text |
IMAGE_DIRECTORY_ENTRY_RESERVED | 0x0 | 0x0 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Xored PE | ZLIB Complexity | File Type | Entropy | Characteristics |
---|---|---|---|---|---|---|---|---|---|
.text | 0x2000 | 0x2e1cd | 0x2e200 | 1383d7dab6f6cf9df4e3e11bca2cc24e | False | 0.4144594766260163 | data | 5.949353241730458 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ |
.reloc | 0x32000 | 0xc | 0x200 | d2cbb0866d64f2d9e2039a63bad76cfe | False | 0.044921875 | data | 0.08153941234324169 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_DISCARDABLE, IMAGE_SCN_MEM_READ |
DLL | Import |
---|---|
mscoree.dll | _CorExeMain |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 20, 2024 06:47:51.566257954 CEST | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Apr 20, 2024 06:47:55.445805073 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:55.445883989 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:55.446192980 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:55.465955973 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:55.466034889 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:55.893446922 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:55.893585920 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:55.915636063 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:55.915715933 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:55.916723967 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:55.972569942 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.022039890 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.064172983 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.505055904 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.505129099 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.505150080 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.505167961 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.505204916 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.505223036 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.505341053 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.505342007 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.505342007 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.505342007 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.505410910 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.505450964 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.505476952 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.505481005 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.505498886 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.505506992 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.505552053 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.505559921 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.505631924 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.505650997 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.550720930 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.707701921 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.707739115 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.707935095 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.707983971 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.708004951 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.708022118 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.708122969 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.708123922 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.708123922 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.708123922 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.708193064 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.708230019 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.708282948 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.708292961 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.708317041 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.708360910 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.753824949 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.910501957 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.910552025 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.910772085 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.910772085 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.910793066 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.910820007 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.910865068 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.910895109 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.910896063 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.910963058 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.911011934 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.911036015 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.911129951 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.911170006 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.911201954 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.911216974 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.911247015 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.911276102 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.911470890 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.911510944 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.911544085 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.911560059 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.911587000 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.911612034 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.911807060 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.911845922 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.911884069 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.911896944 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.911925077 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.911951065 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.912153959 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.912194014 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.912228107 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.912240982 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.912270069 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.912296057 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.942600965 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.942645073 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.942856073 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.942856073 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:56.942918062 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:56.942980051 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.116858006 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.116903067 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.117077112 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.117077112 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.117106915 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.117135048 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.117180109 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.117202997 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.117202997 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.117252111 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.117290974 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.117314100 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.117461920 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.117501974 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.117537022 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.117552042 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.117594004 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.117641926 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.117767096 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.117806911 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.117842913 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.117855072 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.117882967 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.117908955 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.118058920 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.118100882 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.118136883 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.118149996 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.118175983 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.118201017 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.118417978 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.118455887 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.118495941 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.118509054 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.118535042 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.118558884 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.118683100 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.118721962 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.118760109 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.118772030 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.118798018 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.118823051 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.118989944 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.119030952 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.119067907 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.119081020 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.119107962 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.119127989 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.119287014 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.119327068 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.119364977 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.119376898 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.119404078 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.119432926 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.119482994 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.119522095 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.119555950 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.119566917 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.119594097 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.119613886 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.119767904 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.119807959 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.119844913 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.119857073 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.119888067 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.119924068 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.348717928 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.348767996 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.348895073 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.348913908 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.348913908 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.348983049 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349056959 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349061012 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349081039 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349088907 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349112034 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349123955 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349158049 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349251986 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349298954 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349421024 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349458933 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349525928 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349525928 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349525928 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349525928 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349592924 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349632978 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349649906 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349668026 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349699974 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349704027 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349720001 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349740028 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349781036 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349806070 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.349858999 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.349895954 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350011110 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350056887 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350055933 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.350055933 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.350116968 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350173950 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.350173950 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.350178003 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350220919 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350285053 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.350285053 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.350306988 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350332975 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350379944 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350392103 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.350406885 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350446939 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.350480080 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350554943 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.350569963 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350615978 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.350627899 CEST | 443 | 49730 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.350688934 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.363708973 CEST | 49730 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.490534067 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.490614891 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.490859985 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.492168903 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.492244005 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.905735970 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:57.908184052 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:57.908242941 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.516577005 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.516635895 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.516679049 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.516849995 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.516849995 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.516920090 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.516958952 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.516993046 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.517023087 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.517045975 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.517064095 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.717487097 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.717539072 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.717796087 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.717803001 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.717856884 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.717905045 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.717917919 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.717926025 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.717948914 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.717988014 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.717988014 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.718091965 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.718133926 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.718163013 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.718179941 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.718211889 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.718230963 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.918747902 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.918797970 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.918972969 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.918972969 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.919034958 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.919075966 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.919101000 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.919116974 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.919143915 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.919152021 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.919172049 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.919192076 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.919218063 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.919235945 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.919370890 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.919411898 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.919456005 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.919486046 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.919513941 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.919533014 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.919727087 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.919765949 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.919903994 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.919903994 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.919965982 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.920021057 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.920048952 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.920089960 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.920178890 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.920178890 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.920197964 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.920247078 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.920381069 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.920420885 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.920450926 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.920469999 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.920500994 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.920521975 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.954477072 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.954520941 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.954710007 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.954710007 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:58.954771996 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:58.954941034 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.120887995 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.120933056 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121110916 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.121110916 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.121172905 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121213913 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121239901 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.121256113 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121298075 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.121298075 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121298075 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.121325970 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121387959 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.121387959 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.121505976 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121561050 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121692896 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.121692896 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.121754885 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121800900 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121814013 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.121831894 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121860027 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.121865034 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121903896 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.121948004 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.121985912 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.122009039 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.122009039 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.122037888 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.122064114 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.122081995 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.122091055 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.122103930 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.122143030 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.122165918 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.122325897 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.122364044 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.122395992 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.122410059 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.122438908 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.122464895 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.122718096 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.122760057 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.122792006 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.122805119 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.122832060 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.122857094 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.123023987 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.123063087 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.123095989 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.123107910 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.123162031 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.123162031 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.123333931 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.123373985 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.123409033 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.123425961 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.123450041 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.123470068 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.123696089 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.123739004 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.123769999 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.123783112 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.123815060 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.123831034 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.124020100 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.124058962 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.124090910 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.124125004 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.124147892 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.124171019 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.155100107 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.155139923 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.155262947 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.155262947 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.155324936 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.155390024 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.155459881 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.155500889 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.155551910 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.155551910 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.155579090 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.155632019 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.155751944 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.155791998 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.155966997 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.155966997 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.156028986 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.156092882 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.325217962 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.325263977 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.325350046 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.325413942 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.325452089 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.325474977 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.325525999 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.325567007 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.325591087 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.325606108 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.325638056 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.325675011 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.325855970 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.325897932 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.326072931 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.326073885 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.326136112 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.326174974 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.326199055 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.326214075 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.326247931 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.326253891 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.326266050 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.326282024 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.326347113 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.326348066 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.326699972 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.326739073 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.326782942 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.326800108 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.326829910 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.326852083 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.327033997 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.327075005 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.327106953 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.327124119 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.327151060 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.327173948 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.327330112 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.327369928 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.327399969 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.327415943 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.327439070 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.327480078 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.327621937 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.327661037 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.327689886 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.327702999 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.327760935 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.327760935 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.327872038 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.327912092 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.327944994 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.327961922 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.327986002 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.328016043 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.328150034 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.328191042 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.328223944 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.328239918 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.328264952 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.328289986 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.328411102 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.328449011 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.328480005 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.328490973 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.328520060 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.328551054 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.328722000 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.328762054 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.328794956 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.328807116 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.328834057 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.328855038 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.328958988 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.328999996 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.329029083 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.329046011 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.329070091 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.329101086 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.329221010 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.329260111 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.329289913 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.329302073 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.329329014 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.329365015 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.329480886 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.329521894 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.329555988 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.329572916 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.329597950 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.329623938 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.329788923 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.329840899 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.329879045 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.329890966 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.329916000 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.329946041 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.329998016 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.330040932 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.330074072 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.330091000 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.330112934 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.330147982 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.330302954 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.330347061 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.330384970 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.330399036 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.330425024 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.330442905 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.330564976 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.330604076 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.330661058 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.330678940 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.330702066 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.330755949 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.330827951 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.330867052 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.330909014 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.330925941 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.330949068 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.330991983 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.331075907 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.331115961 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.331155062 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.331166983 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.331196070 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.331232071 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.758683920 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.758708954 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.758750916 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.758899927 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.758899927 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.758965969 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759016037 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759052992 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759069920 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759108067 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759109020 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759135008 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759147882 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759177923 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759246111 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759289980 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759308100 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759322882 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759356976 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759407043 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759443998 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759557962 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759602070 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759634972 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759634972 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759634972 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759701014 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759754896 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759757996 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759757996 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759783030 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759819984 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759845972 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759845972 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759879112 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759915113 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759938955 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.759943962 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759967089 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.759996891 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760010004 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760021925 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760035038 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760065079 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760087013 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760190964 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760231972 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760267973 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760287046 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760338068 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760338068 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760360003 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760397911 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760412931 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760426044 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760457039 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760477066 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760509968 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760548115 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760570049 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760587931 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760615110 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760615110 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760641098 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760662079 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760706902 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760729074 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760741949 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760767937 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760791063 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760829926 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760869980 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760895014 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760906935 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.760935068 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760957003 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.760978937 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761020899 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761043072 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761054993 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761084080 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761106014 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761132956 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761173010 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761194944 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761207104 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761234999 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761256933 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761290073 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761342049 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761365891 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761384964 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761409044 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761428118 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761464119 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761506081 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761528969 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761540890 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761590958 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761590958 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761630058 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761672020 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761697054 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761714935 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761739969 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761759996 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761802912 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761857986 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761872053 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761884928 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.761913061 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761934996 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.761981010 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762023926 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762048960 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762065887 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762088060 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762109995 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762145996 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762187958 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762212038 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762223959 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762250900 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762273073 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762314081 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762351990 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762375116 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762387037 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762415886 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762439966 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762470007 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762510061 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762525082 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762537956 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762568951 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762590885 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762631893 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762671947 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762701035 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762717962 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762747049 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762768030 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762793064 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762833118 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762856960 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762870073 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762901068 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762923002 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.762948990 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.762986898 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763009071 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763020992 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763050079 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763071060 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763103962 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763144970 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763168097 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763180017 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763211012 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763233900 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763263941 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763302088 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763323069 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763335943 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763362885 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763384104 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763411999 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763449907 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763463974 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763475895 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763500929 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763521910 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763571978 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763613939 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763637066 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763657093 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763684034 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763705015 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763756990 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763808966 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763834000 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763864994 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763891935 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763912916 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.763931990 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763972998 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.763997078 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764009953 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764034033 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764055967 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764096975 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764172077 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764175892 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764194965 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764231920 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764254093 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764317036 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764355898 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764378071 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764390945 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764419079 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764440060 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764476061 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764518023 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764539957 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764552116 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764578104 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764600039 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764636993 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764679909 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764700890 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764714003 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764741898 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764763117 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764797926 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764837027 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764858007 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764869928 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764904022 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764904022 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.764954090 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.764993906 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.765012026 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.765024900 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.765053034 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.765074015 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.765115023 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.765153885 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.765177011 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.765188932 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.765223980 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.765223980 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.765245914 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.765285015 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.765311003 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.765327930 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.765352011 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.765369892 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.940615892 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.940677881 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.940821886 CEST | 443 | 49731 | 193.222.96.147 | 192.168.2.4 |
Apr 20, 2024 06:47:59.940877914 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.940877914 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.940877914 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:47:59.941509962 CEST | 49731 | 443 | 192.168.2.4 | 193.222.96.147 |
Apr 20, 2024 06:48:00.903172970 CEST | 49732 | 443 | 192.168.2.4 | 172.67.74.152 |
Apr 20, 2024 06:48:00.903270960 CEST | 443 | 49732 | 172.67.74.152 | 192.168.2.4 |
Apr 20, 2024 06:48:00.903367043 CEST | 49732 | 443 | 192.168.2.4 | 172.67.74.152 |
Apr 20, 2024 06:48:00.910633087 CEST | 49732 | 443 | 192.168.2.4 | 172.67.74.152 |
Apr 20, 2024 06:48:00.910676003 CEST | 443 | 49732 | 172.67.74.152 | 192.168.2.4 |
Apr 20, 2024 06:48:01.142287970 CEST | 443 | 49732 | 172.67.74.152 | 192.168.2.4 |
Apr 20, 2024 06:48:01.142381907 CEST | 49732 | 443 | 192.168.2.4 | 172.67.74.152 |
Apr 20, 2024 06:48:01.145586014 CEST | 49732 | 443 | 192.168.2.4 | 172.67.74.152 |
Apr 20, 2024 06:48:01.145611048 CEST | 443 | 49732 | 172.67.74.152 | 192.168.2.4 |
Apr 20, 2024 06:48:01.146022081 CEST | 443 | 49732 | 172.67.74.152 | 192.168.2.4 |
Apr 20, 2024 06:48:01.175615072 CEST | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Apr 20, 2024 06:48:01.191215038 CEST | 49732 | 443 | 192.168.2.4 | 172.67.74.152 |
Apr 20, 2024 06:48:01.229337931 CEST | 49732 | 443 | 192.168.2.4 | 172.67.74.152 |
Apr 20, 2024 06:48:01.272161007 CEST | 443 | 49732 | 172.67.74.152 | 192.168.2.4 |
Apr 20, 2024 06:48:01.439193010 CEST | 443 | 49732 | 172.67.74.152 | 192.168.2.4 |
Apr 20, 2024 06:48:01.439335108 CEST | 443 | 49732 | 172.67.74.152 | 192.168.2.4 |
Apr 20, 2024 06:48:01.439395905 CEST | 49732 | 443 | 192.168.2.4 | 172.67.74.152 |
Apr 20, 2024 06:48:01.445903063 CEST | 49732 | 443 | 192.168.2.4 | 172.67.74.152 |
Apr 20, 2024 06:48:02.223037958 CEST | 49734 | 25 | 192.168.2.4 | 46.175.148.58 |
Apr 20, 2024 06:48:03.222487926 CEST | 49734 | 25 | 192.168.2.4 | 46.175.148.58 |
Apr 20, 2024 06:48:05.222495079 CEST | 49734 | 25 | 192.168.2.4 | 46.175.148.58 |
Apr 20, 2024 06:48:09.238219976 CEST | 49734 | 25 | 192.168.2.4 | 46.175.148.58 |
Apr 20, 2024 06:48:17.238122940 CEST | 49734 | 25 | 192.168.2.4 | 46.175.148.58 |
Apr 20, 2024 06:49:04.238624096 CEST | 49724 | 80 | 192.168.2.4 | 23.53.13.32 |
Apr 20, 2024 06:49:04.345527887 CEST | 80 | 49724 | 23.53.13.32 | 192.168.2.4 |
Apr 20, 2024 06:49:04.345580101 CEST | 49724 | 80 | 192.168.2.4 | 23.53.13.32 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 20, 2024 06:47:54.975570917 CEST | 56221 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 20, 2024 06:47:55.432879925 CEST | 53 | 56221 | 1.1.1.1 | 192.168.2.4 |
Apr 20, 2024 06:48:00.793487072 CEST | 53567 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 20, 2024 06:48:00.898452997 CEST | 53 | 53567 | 1.1.1.1 | 192.168.2.4 |
Apr 20, 2024 06:48:02.094162941 CEST | 58099 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 20, 2024 06:48:02.222239971 CEST | 53 | 58099 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 20, 2024 06:47:54.975570917 CEST | 192.168.2.4 | 1.1.1.1 | 0x8ff5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 20, 2024 06:48:00.793487072 CEST | 192.168.2.4 | 1.1.1.1 | 0xe543 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 20, 2024 06:48:02.094162941 CEST | 192.168.2.4 | 1.1.1.1 | 0x471f | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 20, 2024 06:47:55.432879925 CEST | 1.1.1.1 | 192.168.2.4 | 0x8ff5 | No error (0) | 193.222.96.147 | A (IP address) | IN (0x0001) | false | ||
Apr 20, 2024 06:48:00.898452997 CEST | 1.1.1.1 | 192.168.2.4 | 0xe543 | No error (0) | 172.67.74.152 | A (IP address) | IN (0x0001) | false | ||
Apr 20, 2024 06:48:00.898452997 CEST | 1.1.1.1 | 192.168.2.4 | 0xe543 | No error (0) | 104.26.13.205 | A (IP address) | IN (0x0001) | false | ||
Apr 20, 2024 06:48:00.898452997 CEST | 1.1.1.1 | 192.168.2.4 | 0xe543 | No error (0) | 104.26.12.205 | A (IP address) | IN (0x0001) | false | ||
Apr 20, 2024 06:48:02.222239971 CEST | 1.1.1.1 | 192.168.2.4 | 0x471f | No error (0) | 46.175.148.58 | A (IP address) | IN (0x0001) | false | ||
Apr 20, 2024 06:48:02.447978020 CEST | 1.1.1.1 | 192.168.2.4 | 0xa6ec | No error (0) | 199.232.210.172 | A (IP address) | IN (0x0001) | false | ||
Apr 20, 2024 06:48:02.447978020 CEST | 1.1.1.1 | 192.168.2.4 | 0xa6ec | No error (0) | 199.232.214.172 | A (IP address) | IN (0x0001) | false | ||
Apr 20, 2024 06:48:03.347492933 CEST | 1.1.1.1 | 192.168.2.4 | 0xb3f | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 20, 2024 06:48:03.347492933 CEST | 1.1.1.1 | 192.168.2.4 | 0xb3f | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49730 | 193.222.96.147 | 443 | 6424 | C:\Users\user\Desktop\ShippingOrder_ GSHS2400052.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-20 04:47:56 UTC | 103 | OUT | |
2024-04-20 04:47:56 UTC | 256 | IN | |
2024-04-20 04:47:56 UTC | 16128 | IN | |
2024-04-20 04:47:56 UTC | 16384 | IN | |
2024-04-20 04:47:56 UTC | 16384 | IN | |
2024-04-20 04:47:56 UTC | 16384 | IN | |
2024-04-20 04:47:56 UTC | 16384 | IN | |
2024-04-20 04:47:56 UTC | 16384 | IN | |
2024-04-20 04:47:56 UTC | 16384 | IN | |
2024-04-20 04:47:56 UTC | 16384 | IN | |
2024-04-20 04:47:56 UTC | 16384 | IN | |
2024-04-20 04:47:56 UTC | 16384 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49731 | 193.222.96.147 | 443 | 6424 | C:\Users\user\Desktop\ShippingOrder_ GSHS2400052.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-20 04:47:57 UTC | 87 | OUT | |
2024-04-20 04:47:58 UTC | 258 | IN | |
2024-04-20 04:47:58 UTC | 16126 | IN | |
2024-04-20 04:47:58 UTC | 16384 | IN | |
2024-04-20 04:47:58 UTC | 16384 | IN | |
2024-04-20 04:47:58 UTC | 16384 | IN | |
2024-04-20 04:47:58 UTC | 16384 | IN | |
2024-04-20 04:47:58 UTC | 16384 | IN | |
2024-04-20 04:47:58 UTC | 16384 | IN | |
2024-04-20 04:47:58 UTC | 16384 | IN | |
2024-04-20 04:47:58 UTC | 16384 | IN | |
2024-04-20 04:47:58 UTC | 16384 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49732 | 172.67.74.152 | 443 | 6816 | C:\Windows\Microsoft.NET\Framework\v4.0.30319\MSBuild.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-20 04:48:01 UTC | 155 | OUT | |
2024-04-20 04:48:01 UTC | 211 | IN | |
2024-04-20 04:48:01 UTC | 12 | IN |
Click to jump to process
Click to jump to process
back
Click to dive into process behavior distribution
Click to jump to process
Target ID: | 0 |
Start time: | 06:47:53 |
Start date: | 20/04/2024 |
Path: | C:\Users\user\Desktop\ShippingOrder_ GSHS2400052.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0xd00000 |
File size: | 189'952 bytes |
MD5 hash: | 5A9BF748B2B3431B39E5A8FEA6FEAA80 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 1 |
Start time: | 06:47:59 |
Start date: | 20/04/2024 |
Path: | C:\Windows\Microsoft.NET\Framework\v4.0.30319\MSBuild.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x6f0000 |
File size: | 262'432 bytes |
MD5 hash: | 8FDF47E0FF70C40ED3A17014AEEA4232 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Reputation: | moderate |
Has exited: | false |
Target ID: | 4 |
Start time: | 06:48:00 |
Start date: | 20/04/2024 |
Path: | C:\Windows\System32\WerFault.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7969d0000 |
File size: | 570'736 bytes |
MD5 hash: | FD27D9F6D02763BDE32511B5DF7FF7A0 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Function 00007FFD9B8A9F40 Relevance: 1.3, Instructions: 1299COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A08ED Relevance: .5, Instructions: 529COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A3040 Relevance: .5, Instructions: 458COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A1831 Relevance: .3, Instructions: 291COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A51F2 Relevance: .3, Instructions: 278COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A3060 Relevance: .3, Instructions: 275COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8AB6FA Relevance: .3, Instructions: 272COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8AE191 Relevance: .3, Instructions: 252COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A4A74 Relevance: .2, Instructions: 241COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A443D Relevance: .2, Instructions: 234COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A5864 Relevance: .2, Instructions: 224COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A29B6 Relevance: .2, Instructions: 189COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A4089 Relevance: .2, Instructions: 159COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A32FA Relevance: .1, Instructions: 149COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A34A1 Relevance: .1, Instructions: 130COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A4EE1 Relevance: .1, Instructions: 119COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A0490 Relevance: .1, Instructions: 118COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A1328 Relevance: .1, Instructions: 117COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A0558 Relevance: .1, Instructions: 109COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A0E79 Relevance: .1, Instructions: 81COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8AE39D Relevance: .1, Instructions: 61COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A9CC0 Relevance: .1, Instructions: 59COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A3D39 Relevance: .0, Instructions: 44COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A04A0 Relevance: .0, Instructions: 44COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A4369 Relevance: .0, Instructions: 42COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A57F0 Relevance: .0, Instructions: 41COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A57F5 Relevance: .0, Instructions: 40COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8AB8D0 Relevance: .0, Instructions: 38COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A9A01 Relevance: .0, Instructions: 29COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8AB9F5 Relevance: .0, Instructions: 28COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8ABCE9 Relevance: .0, Instructions: 26COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00007FFD9B8A4FA0 Relevance: .0, Instructions: 24COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Execution Graph
Execution Coverage: | 11.5% |
Dynamic/Decrypted Code Coverage: | 100% |
Signature Coverage: | 0% |
Total number of Nodes: | 3 |
Total number of Limit Nodes: | 0 |
Graph
Function 0115ADF0 Relevance: 2.7, Instructions: 2707COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01153E80 Relevance: 1.5, Strings: 1, Instructions: 238COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01154A98 Relevance: .3, Instructions: 266COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01154806 Relevance: 2.7, Strings: 2, Instructions: 182COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01154810 Relevance: 2.7, Strings: 2, Instructions: 180COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0641EA38 Relevance: 1.6, APIs: 1, Instructions: 55COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0641EA40 Relevance: 1.6, APIs: 1, Instructions: 52COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01153E74 Relevance: 1.5, Strings: 1, Instructions: 237COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01156ECF Relevance: 1.4, Strings: 1, Instructions: 172COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01157D90 Relevance: 1.3, Strings: 1, Instructions: 95COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01157D80 Relevance: 1.3, Strings: 1, Instructions: 91COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01156B98 Relevance: 1.3, Strings: 1, Instructions: 75COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01158720 Relevance: .6, Instructions: 555COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0115A1AA Relevance: .4, Instructions: 405COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01154A8E Relevance: .3, Instructions: 263COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0115A6C8 Relevance: .1, Instructions: 137COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01156CD4 Relevance: .1, Instructions: 134COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01156CE0 Relevance: .1, Instructions: 132COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01151128 Relevance: .1, Instructions: 118COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01151138 Relevance: .1, Instructions: 112COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01151111 Relevance: .1, Instructions: 105COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0115DE6A Relevance: .1, Instructions: 101COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 011526DC Relevance: .1, Instructions: 92COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 011526E8 Relevance: .1, Instructions: 90COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0115A068 Relevance: .1, Instructions: 82COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0115169F Relevance: .1, Instructions: 81COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0115A078 Relevance: .1, Instructions: 78COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01151488 Relevance: .1, Instructions: 78COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 011517C0 Relevance: .1, Instructions: 78COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01159F68 Relevance: .1, Instructions: 76COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0115A85A Relevance: .1, Instructions: 75COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01154F8A Relevance: .1, Instructions: 75COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01151382 Relevance: .1, Instructions: 72COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0102D030 Relevance: .1, Instructions: 72COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01151878 Relevance: .1, Instructions: 71COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01151888 Relevance: .1, Instructions: 70COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01159F78 Relevance: .1, Instructions: 70COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 011516B0 Relevance: .1, Instructions: 69COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01154F98 Relevance: .1, Instructions: 68COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01150838 Relevance: .1, Instructions: 62COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01150848 Relevance: .1, Instructions: 62COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01151498 Relevance: .1, Instructions: 53COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0102D02B Relevance: .1, Instructions: 53COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0115A6B8 Relevance: .1, Instructions: 52COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01158F08 Relevance: .0, Instructions: 41COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01157EA8 Relevance: .0, Instructions: 34COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 01158F18 Relevance: .0, Instructions: 33COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |