Windows Analysis Report aZOmps0Ug8
Overview
General Information
Detection
Score: | 100 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
Process Tree |
---|
|
Malware Configuration |
---|
Threatname: Lokibot |
---|
{"C2 list": ["http://kbfvzoboss.bid/alien/fre.php", "http://alphastand.trade/alien/fre.php", "http://alphastand.win/alien/fre.php", "http://alphastand.top/alien/fre.php", "http://74f26d34ffff049368a6cff8812f86ee.gq/BN111/fre.php"]}
Yara Overview |
---|
Memory Dumps |
---|
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_Lokibot_1 | Yara detected Lokibot | Joe Security | ||
SUSP_XORed_URL_in_EXE | Detects an XORed URL in an executable | Florian Roth |
| |
JoeSecurity_CredentialStealer | Yara detected Credential Stealer | Joe Security | ||
JoeSecurity_aPLib_compressed_binary | Yara detected aPLib compressed binary | Joe Security | ||
JoeSecurity_Lokibot | Yara detected Lokibot | Joe Security | ||
Click to see the 17 entries |
Unpacked PEs |
---|
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
SUSP_XORed_URL_in_EXE | Detects an XORed URL in an executable | Florian Roth |
| |
JoeSecurity_CredentialStealer | Yara detected Credential Stealer | Joe Security | ||
JoeSecurity_aPLib_compressed_binary | Yara detected aPLib compressed binary | Joe Security | ||
JoeSecurity_Lokibot | Yara detected Lokibot | Joe Security | ||
Loki_1 | Loki Payload | kevoreilly |
| |
Click to see the 26 entries |
Sigma Overview |
---|
No Sigma rule has matched |
---|
Jbx Signature Overview |
---|
Click to jump to signature section
AV Detection: |
---|
Found malware configuration | Show sources |
Source: | Malware Configuration Extractor: |
Multi AV Scanner detection for submitted file | Show sources |
Source: | Virustotal: | Perma Link |
Antivirus detection for URL or domain | Show sources |
Source: | Avira URL Cloud: |
Multi AV Scanner detection for domain / URL | Show sources |
Source: | Virustotal: | Perma Link | ||
Source: | Virustotal: | Perma Link |
Machine Learning detection for sample | Show sources |
Source: | Joe Sandbox ML: |
Compliance: |
---|
Detected unpacking (overwrites its own PE header) | Show sources |
Source: | Unpacked PE file: |
Source: | Static PE information: |
Source: | Binary string: | ||
Source: | Binary string: |
Source: | Code function: | 0_2_00405E93 | |
Source: | Code function: | 0_2_004054BD | |
Source: | Code function: | 0_2_00402671 | |
Source: | Code function: | 1_2_00403D74 |
Networking: |
---|
Snort IDS alert for network traffic (e.g. based on Emerging Threat rules) | Show sources |
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: | ||
Source: | Snort IDS: |
C2 URLs / IPs found in malware configuration | Show sources |
Source: | URLs: | ||
Source: | URLs: | ||
Source: | URLs: | ||
Source: | URLs: | ||
Source: | URLs: |
Source: | ASN Name: |
Source: | IP Address: | ||
Source: | IP Address: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: |
Source: | Code function: | 1_2_00404ED4 |
Source: | Code function: | 0_2_00404FC2 |
System Summary: |
---|
Malicious sample detected (through community Yara rule) | Show sources |
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Static PE information: |
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Code function: | 0_2_004030FB |
Source: | Code function: | 0_2_004047D3 | |
Source: | Code function: | 0_2_004061D4 | |
Source: | Code function: | 0_2_10008836 | |
Source: | Code function: | 0_2_10003D10 | |
Source: | Code function: | 0_2_100110E1 | |
Source: | Code function: | 0_2_1000F902 | |
Source: | Code function: | 0_2_100119AC | |
Source: | Code function: | 0_2_100059B1 | |
Source: | Code function: | 0_2_1001A9FA | |
Source: | Code function: | 0_2_1001AA09 | |
Source: | Code function: | 0_2_1000B23E | |
Source: | Code function: | 0_2_1000FE74 | |
Source: | Code function: | 0_2_10005EA5 | |
Source: | Code function: | 0_2_100062BD | |
Source: | Code function: | 0_2_100066F2 | |
Source: | Code function: | 0_2_10006B27 | |
Source: | Code function: | 0_2_1000F390 | |
Source: | Code function: | 1_2_0040549C | |
Source: | Code function: | 1_2_004029D4 |
Source: | Binary or memory string: |
Source: | Virustotal: |
Source: | File read: | Jump to behavior |
Source: | Static PE information: |
Source: | Key opened: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior |
Source: | Key value queried: | Jump to behavior |
Source: | Code function: | 1_2_0040650A |
Source: | File created: | Jump to behavior |
Source: | File created: | Jump to behavior |
Source: | Classification label: |
Source: | Code function: | 0_2_00402053 |
Source: | File read: | Jump to behavior |
Source: | Code function: | 0_2_00404292 |
Source: | Mutant created: |
Source: | File read: | Jump to behavior | ||
Source: | File read: | Jump to behavior | ||
Source: | File read: | Jump to behavior | ||
Source: | File read: | Jump to behavior |
Source: | Key opened: | Jump to behavior |
Source: | Binary string: | ||
Source: | Binary string: |
Data Obfuscation: |
---|
Detected unpacking (overwrites its own PE header) | Show sources |
Source: | Unpacked PE file: |
Detected unpacking (changes PE section rights) | Show sources |
Source: | Unpacked PE file: |
Yara detected aPLib compressed binary | Show sources |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | Code function: | 0_2_1000A518 | |
Source: | Code function: | 1_2_00402AD4 | |
Source: | Code function: | 1_2_00402AFC |
Source: | File created: | Jump to dropped file |
Source: | Code function: | 0_2_10008836 |
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior |
Source: | Thread sleep time: | Jump to behavior |
Source: | Code function: | 0_2_00405E93 | |
Source: | Code function: | 0_2_004054BD | |
Source: | Code function: | 0_2_00402671 | |
Source: | Code function: | 1_2_00403D74 |
Source: | Thread delayed: | Jump to behavior |
Source: | Binary or memory string: |
Source: | Code function: | 0_2_1000CDB2 |
Source: | Code function: | 0_2_100093F8 |
Source: | Code function: | 0_2_100098C2 |
Source: | Process token adjusted: | Jump to behavior |
Source: | Code function: | 0_2_1001A402 | |
Source: | Code function: | 0_2_1001A616 | |
Source: | Code function: | 0_2_1001A6C7 | |
Source: | Code function: | 0_2_1001A706 | |
Source: | Code function: | 0_2_1001A744 | |
Source: | Code function: | 1_2_0040317B |
Source: | Code function: | 0_2_10009B60 |
HIPS / PFW / Operating System Protection Evasion: |
---|
Injects a PE file into a foreign processes | Show sources |
Source: | Memory written: | Jump to behavior |
Source: | Process created: | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | Code function: | 0_2_100098DF |
Source: | Key value queried: | Jump to behavior |
Source: | Code function: | 0_2_10012E10 |
Source: | Code function: | 0_2_004030FB |
Source: | Code function: | 1_2_00406069 |
Stealing of Sensitive Information: |
---|
Yara detected Lokibot | Show sources |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Tries to harvest and steal Putty / WinSCP information (sessions, passwords, etc) | Show sources |
Source: | Key opened: | Jump to behavior | ||
Source: | Key opened: | Jump to behavior |
Tries to harvest and steal ftp login credentials | Show sources |
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior |
Tries to steal Mail credentials (via file registry) | Show sources |
Source: | Code function: | 1_2_0040D069 | |
Source: | Code function: | 1_2_0040D069 |
Tries to steal Mail credentials (via file access) | Show sources |
Source: | Key opened: | Jump to behavior | ||
Source: | Key opened: | Jump to behavior |
Tries to harvest and steal browser information (history, passwords, etc) | Show sources |
Source: | File opened: | Jump to behavior |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Remote Access Functionality: |
---|
Yara detected Lokibot | Show sources |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Mitre Att&ck Matrix |
---|
Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Exfiltration | Command and Control | Network Effects | Remote Service Effects | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Valid Accounts | Windows Management Instrumentation | Application Shimming1 | Application Shimming1 | Deobfuscate/Decode Files or Information1 | OS Credential Dumping2 | System Time Discovery1 | Remote Services | Archive Collected Data1 | Exfiltration Over Other Network Medium | Ingress Tool Transfer3 | Eavesdrop on Insecure Network Communication | Remotely Track Device Without Authorization | System Shutdown/Reboot1 |
Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Access Token Manipulation1 | Obfuscated Files or Information2 | Credentials in Registry2 | Account Discovery1 | Remote Desktop Protocol | Data from Local System2 | Exfiltration Over Bluetooth | Encrypted Channel1 | Exploit SS7 to Redirect Phone Calls/SMS | Remotely Wipe Data Without Authorization | Device Lockout |
Domain Accounts | At (Linux) | Logon Script (Windows) | Process Injection112 | Software Packing2 | Security Account Manager | File and Directory Discovery2 | SMB/Windows Admin Shares | Email Collection1 | Automated Exfiltration | Non-Application Layer Protocol3 | Exploit SS7 to Track Device Location | Obtain Device Cloud Backups | Delete Device Data |
Local Accounts | At (Windows) | Logon Script (Mac) | Logon Script (Mac) | Masquerading1 | NTDS | System Information Discovery16 | Distributed Component Object Model | Clipboard Data1 | Scheduled Transfer | Application Layer Protocol113 | SIM Card Swap | Carrier Billing Fraud | |
Cloud Accounts | Cron | Network Logon Script | Network Logon Script | Virtualization/Sandbox Evasion11 | LSA Secrets | Security Software Discovery31 | SSH | Keylogging | Data Transfer Size Limits | Fallback Channels | Manipulate Device Communication | Manipulate App Store Rankings or Ratings | |
Replication Through Removable Media | Launchd | Rc.common | Rc.common | Access Token Manipulation1 | Cached Domain Credentials | Process Discovery1 | VNC | GUI Input Capture | Exfiltration Over C2 Channel | Multiband Communication | Jamming or Denial of Service | Abuse Accessibility Features | |
External Remote Services | Scheduled Task | Startup Items | Startup Items | Process Injection112 | DCSync | Virtualization/Sandbox Evasion11 | Windows Remote Management | Web Portal Capture | Exfiltration Over Alternative Protocol | Commonly Used Port | Rogue Wi-Fi Access Points | Data Encrypted for Impact | |
Drive-by Compromise | Command and Scripting Interpreter | Scheduled Task/Job | Scheduled Task/Job | Indicator Removal from Tools | Proc Filesystem | System Owner/User Discovery1 | Shared Webroot | Credential API Hooking | Exfiltration Over Symmetric Encrypted Non-C2 Protocol | Application Layer Protocol | Downgrade to Insecure Protocols | Generate Fraudulent Advertising Revenue | |
Exploit Public-Facing Application | PowerShell | At (Linux) | At (Linux) | Masquerading | /etc/passwd and /etc/shadow | Remote System Discovery1 | Software Deployment Tools | Data Staged | Exfiltration Over Asymmetric Encrypted Non-C2 Protocol | Web Protocols | Rogue Cellular Base Station | Data Destruction |
Behavior Graph |
---|
Screenshots |
---|
Thumbnails
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Antivirus, Machine Learning and Genetic Malware Detection |
---|
Initial Sample |
---|
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
43% | Virustotal | Browse | ||
100% | Joe Sandbox ML |
Dropped Files |
---|
No Antivirus matches |
---|
Unpacked PE Files |
---|
Source | Detection | Scanner | Label | Link | Download |
---|---|---|---|---|---|
100% | Avira | HEUR/AGEN.1130366 | Download File | ||
100% | Avira | TR/Crypt.XPACK.Gen | Download File | ||
100% | Avira | TR/Crypt.XPACK.Gen | Download File | ||
100% | Avira | HEUR/AGEN.1130366 | Download File | ||
100% | Avira | TR/Crypt.XPACK.Gen | Download File | ||
100% | Avira | HEUR/AGEN.1130366 | Download File |
Domains |
---|
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
13% | Virustotal | Browse |
URLs |
---|
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
16% | Virustotal | Browse | ||
100% | Avira URL Cloud | malware | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | Avira URL Cloud | safe |
Domains and IPs |
---|
Contacted Domains |
---|
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
74f26d34ffff049368a6cff8812f86ee.gq | 172.67.219.104 | true | true |
| unknown |
Contacted URLs |
---|
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
true |
| unknown | |
true |
| unknown | |
true |
| unknown | |
true |
| unknown | |
true |
| unknown |
URLs from Memory and Binaries |
---|
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false |
| unknown | ||
true |
| unknown |
Contacted IPs |
---|
General Information |
---|
Joe Sandbox Version: | 33.0.0 White Diamond |
Analysis ID: | 502657 |
Start date: | 14.10.2021 |
Start time: | 08:27:12 |
Joe Sandbox Product: | CloudBasic |
Overall analysis duration: | 0h 7m 22s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Sample file name: | aZOmps0Ug8 (renamed file extension from none to exe) |
Cookbook file name: | default.jbs |
Analysis system description: | Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211 |
Number of analysed new started processes analysed: | 22 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal100.troj.spyw.evad.winEXE@3/4@81/3 |
EGA Information: | Failed |
HDC Information: |
|
HCA Information: |
|
Cookbook Comments: |
|
Warnings: | Show All
|
Simulations |
---|
Behavior and APIs |
---|
Time | Type | Description |
---|---|---|
08:28:20 | API Interceptor |
Joe Sandbox View / Context |
---|
IPs |
---|
Match | Associated Sample Name / URL | SHA 256 | Detection | Link | Context |
---|---|---|---|---|---|
172.67.219.104 | Get hash | malicious | Browse |
| |
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
104.21.62.32 | Get hash | malicious | Browse |
| |
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
|
Domains |
---|
Match | Associated Sample Name / URL | SHA 256 | Detection | Link | Context |
---|---|---|---|---|---|
74f26d34ffff049368a6cff8812f86ee.gq | Get hash | malicious | Browse |
| |
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
|
ASN |
---|
Match | Associated Sample Name / URL | SHA 256 | Detection | Link | Context |
---|---|---|---|---|---|
CLOUDFLARENETUS | Get hash | malicious | Browse |
| |
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
| ||
Get hash | malicious | Browse |
|
JA3 Fingerprints |
---|
No context |
---|
Dropped Files |
---|
Created / dropped Files |
---|
Process: | C:\Users\user\Desktop\aZOmps0Ug8.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 217921 |
Entropy (8bit): | 7.989316240408084 |
Encrypted: | false |
SSDEEP: | 6144:lURBaQUyhxMk5O9VK/zHl/hfjB9i4laUw+I:lYUyvMC/jXjrH3I |
MD5: | D6B090A9F226F60E8C2514C17AC0ACAE |
SHA1: | 95852FEF4218FD1620E8AE8425A29332B1AA8403 |
SHA-256: | DF082B249FD67FDAF005CC9ED5C047DE2914995F41AB72CD35B18CF661AB27CC |
SHA-512: | 91DA3ED8442E03CEA52DEEC0C0266A19FBEC2EFD4475CCC05C5FD9A9212A8C715981F94BD17EB16EE0AD880785544E3A41AC56E195C6C03DEB3B433EEDE3FCC7 |
Malicious: | false |
Reputation: | low |
Preview: |
|
Process: | C:\Users\user\Desktop\aZOmps0Ug8.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 107520 |
Entropy (8bit): | 6.386049451747606 |
Encrypted: | false |
SSDEEP: | 1536:wmFgGAZxpEuLPsu0NR7mNzUK2q8fIrzcYyKkRrIAHaqsWnvf3WklE9ncobUfsirl:FFgGAaus+eyvKjxlErGrz |
MD5: | B5D0F9FBB3DF9A1A42B479FDD334417C |
SHA1: | F0780DBAFBDB20235C97A28CC0AD8E1ABC1547F3 |
SHA-256: | 0EAEC60342B2074DA968F010E592AD52C8B7DBFD72759B97F999F0EB88861136 |
SHA-512: | 3BD39726FEB5B0B946E6B29C17A12BA044BF2D0E5374C217527542A6A6F09F65E3944007D0427936178E5C485BEDE8631CAA5738D0BE50AC291759FCDD4EC26F |
Malicious: | false |
Joe Sandbox View: |
|
Reputation: | low |
Preview: |
|
Process: | C:\Users\user\Desktop\aZOmps0Ug8.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1 |
Entropy (8bit): | 0.0 |
Encrypted: | false |
SSDEEP: | 3:U:U |
MD5: | C4CA4238A0B923820DCC509A6F75849B |
SHA1: | 356A192B7913B04C54574D18C28D46E6395428AB |
SHA-256: | 6B86B273FF34FCE19D6B804EFF5A3F5747ADA4EAA22F1D49C01E52DDB7875B4B |
SHA-512: | 4DFF4EA340F0A823F15D3F4F01AB62EAE0E5DA579CCB851F8DB9DFE84C58B2B37B89903A740E1EE172DA793A6E79D560E5F7F9BD058A12A280433ED6FA46510A |
Malicious: | false |
Reputation: | high, very likely benign file |
Preview: |
|
Process: | C:\Users\user\Desktop\aZOmps0Ug8.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 49 |
Entropy (8bit): | 1.2701062923235522 |
Encrypted: | false |
SSDEEP: | 3:/l1PL3n:fPL3 |
MD5: | CD8FA61AD2906643348EEF98A988B873 |
SHA1: | 0B10E2F323B5C73F3A6EA348633B62AE522DDF39 |
SHA-256: | 49A11A24821F2504B8C91BA9D8A6BD6F421ED2F0212C1C771BF1CAC9DE32AD75 |
SHA-512: | 1E6F44AB3231232221CF0F4268E96A13C82E3F96249D7963B78805B693B52D3EBDABF873DB240813DF606D8C207BD2859338D67BA94F33ECBA43EA9A4FEFA086 |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
|
Static File Info |
---|
General | |
---|---|
File type: | |
Entropy (8bit): | 7.93701459995172 |
TrID: |
|
File name: | aZOmps0Ug8.exe |
File size: | 283552 |
MD5: | 70d177abc7455c709ae9710630b9ea49 |
SHA1: | 4d81e55880a35c0157046560eca20b9f528838f4 |
SHA256: | b87ecdb8035fa8b5ce87570d757265182a9f49122a02e77dc7f414816cf4b511 |
SHA512: | 25fd5fa3de0e8bfb89695b3ce55dbeb059eaaaef4a8d9cd4e503f1ccda379cc0ba550354aee59445876c1ea1244d3d696ecfd7e964f3ce0f328a83f48c5ce24c |
SSDEEP: | 6144:wBlL/cVBMRm3NqjXSfxgGNoYnUC9jIVUp6Uxgo9+n1J8UA:CeVj9+XI/NoYxpWV4go9afA |
File Content Preview: | MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$........0(..QF..QF..QF.*^...QF..QG.qQF.*^...QF..rv..QF..W@..QF.Rich.QF.........PE..L...e:.V.................\...........0.......p....@ |
File Icon |
---|
Icon Hash: | b2a88c96b2ca6a72 |
Static PE Info |
---|
General | |
---|---|
Entrypoint: | 0x4030fb |
Entrypoint Section: | .text |
Digitally signed: | false |
Imagebase: | 0x400000 |
Subsystem: | windows gui |
Image File Characteristics: | LOCAL_SYMS_STRIPPED, 32BIT_MACHINE, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, RELOCS_STRIPPED |
DLL Characteristics: | TERMINAL_SERVER_AWARE |
Time Stamp: | 0x56FF3A65 [Sat Apr 2 03:20:05 2016 UTC] |
TLS Callbacks: | |
CLR (.Net) Version: | |
OS Version Major: | 4 |
OS Version Minor: | 0 |
File Version Major: | 4 |
File Version Minor: | 0 |
Subsystem Version Major: | 4 |
Subsystem Version Minor: | 0 |
Import Hash: | b76363e9cb88bf9390860da8e50999d2 |
Entrypoint Preview |
---|
Instruction |
---|
sub esp, 00000184h |
push ebx |
push ebp |
push esi |
push edi |
xor ebx, ebx |
push 00008001h |
mov dword ptr [esp+20h], ebx |
mov dword ptr [esp+14h], 00409168h |
mov dword ptr [esp+1Ch], ebx |
mov byte ptr [esp+18h], 00000020h |
call dword ptr [004070B0h] |
call dword ptr [004070ACh] |
cmp ax, 00000006h |
je 00007FC0C4CD96E3h |
push ebx |
call 00007FC0C4CDC4C4h |
cmp eax, ebx |
je 00007FC0C4CD96D9h |
push 00000C00h |
call eax |
mov esi, 00407280h |
push esi |
call 00007FC0C4CDC440h |
push esi |
call dword ptr [00407108h] |
lea esi, dword ptr [esi+eax+01h] |
cmp byte ptr [esi], bl |
jne 00007FC0C4CD96BDh |
push 0000000Dh |
call 00007FC0C4CDC498h |
push 0000000Bh |
call 00007FC0C4CDC491h |
mov dword ptr [00423F44h], eax |
call dword ptr [00407038h] |
push ebx |
call dword ptr [0040726Ch] |
mov dword ptr [00423FF8h], eax |
push ebx |
lea eax, dword ptr [esp+38h] |
push 00000160h |
push eax |
push ebx |
push 0041F4F0h |
call dword ptr [0040715Ch] |
push 0040915Ch |
push 00423740h |
call 00007FC0C4CDC0C4h |
call dword ptr [0040710Ch] |
mov ebp, 0042A000h |
push eax |
push ebp |
call 00007FC0C4CDC0B2h |
push ebx |
call dword ptr [00407144h] |
Rich Headers |
---|
Programming Language: |
|
Data Directories |
---|
Name | Virtual Address | Virtual Size | Is in Section |
---|---|---|---|
IMAGE_DIRECTORY_ENTRY_EXPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IMPORT | 0x7418 | 0xa0 | .rdata |
IMAGE_DIRECTORY_ENTRY_RESOURCE | 0x2d000 | 0x9e0 | .rsrc |
IMAGE_DIRECTORY_ENTRY_EXCEPTION | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_SECURITY | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BASERELOC | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_DEBUG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COPYRIGHT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_GLOBALPTR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_TLS | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IAT | 0x7000 | 0x27c | .rdata |
IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_RESERVED | 0x0 | 0x0 |
Sections |
---|
Name | Virtual Address | Virtual Size | Raw Size | Xored PE | ZLIB Complexity | File Type | Entropy | Characteristics |
---|---|---|---|---|---|---|---|---|
.text | 0x1000 | 0x5aeb | 0x5c00 | False | 0.665123980978 | data | 6.42230569414 | IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_READ |
.rdata | 0x7000 | 0x1196 | 0x1200 | False | 0.458984375 | data | 5.20291736659 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ |
.data | 0x9000 | 0x1b038 | 0x600 | False | 0.432291666667 | data | 4.0475118296 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_WRITE, IMAGE_SCN_MEM_READ |
.ndata | 0x25000 | 0x8000 | 0x0 | False | 0 | empty | 0.0 | IMAGE_SCN_MEM_WRITE, IMAGE_SCN_CNT_UNINITIALIZED_DATA, IMAGE_SCN_MEM_READ |
.rsrc | 0x2d000 | 0x9e0 | 0xa00 | False | 0.45625 | data | 4.50948350161 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ |
Resources |
---|
Name | RVA | Size | Type | Language | Country |
---|---|---|---|---|---|
RT_ICON | 0x2d190 | 0x2e8 | data | English | United States |
RT_DIALOG | 0x2d478 | 0x100 | data | English | United States |
RT_DIALOG | 0x2d578 | 0x11c | data | English | United States |
RT_DIALOG | 0x2d698 | 0x60 | data | English | United States |
RT_GROUP_ICON | 0x2d6f8 | 0x14 | data | English | United States |
RT_MANIFEST | 0x2d710 | 0x2cc | XML 1.0 document, ASCII text, with very long lines, with no line terminators | English | United States |
Imports |
---|
DLL | Import |
---|---|
KERNEL32.dll | GetTickCount, GetShortPathNameA, GetFullPathNameA, MoveFileA, SetCurrentDirectoryA, GetFileAttributesA, SetFileAttributesA, CompareFileTime, SearchPathA, GetFileSize, GetModuleFileNameA, GetCurrentProcess, CopyFileA, ExitProcess, GetWindowsDirectoryA, GetTempPathA, Sleep, lstrcmpiA, GetVersion, SetErrorMode, lstrcpynA, GetDiskFreeSpaceA, GlobalUnlock, GlobalLock, CreateThread, GetLastError, CreateDirectoryA, CreateProcessA, RemoveDirectoryA, CreateFileA, GetTempFileNameA, lstrcatA, GetSystemDirectoryA, WaitForSingleObject, SetFileTime, CloseHandle, GlobalFree, lstrcmpA, ExpandEnvironmentStringsA, GetExitCodeProcess, GlobalAlloc, lstrlenA, GetCommandLineA, GetProcAddress, FindFirstFileA, FindNextFileA, DeleteFileA, SetFilePointer, ReadFile, FindClose, GetPrivateProfileStringA, WritePrivateProfileStringA, WriteFile, MulDiv, MultiByteToWideChar, LoadLibraryExA, GetModuleHandleA, FreeLibrary |
USER32.dll | SetCursor, GetWindowRect, EnableMenuItem, GetSystemMenu, SetClassLongA, IsWindowEnabled, SetWindowPos, GetSysColor, EndDialog, ScreenToClient, LoadCursorA, CheckDlgButton, GetMessagePos, LoadBitmapA, CallWindowProcA, IsWindowVisible, CloseClipboard, SetForegroundWindow, GetWindowLongA, RegisterClassA, TrackPopupMenu, AppendMenuA, CreatePopupMenu, GetSystemMetrics, SetDlgItemTextA, GetDlgItemTextA, MessageBoxIndirectA, CharPrevA, DispatchMessageA, PeekMessageA, GetDC, EnableWindow, InvalidateRect, SendMessageA, DefWindowProcA, BeginPaint, GetClientRect, FillRect, DrawTextA, SystemParametersInfoA, CreateWindowExA, GetClassInfoA, DialogBoxParamA, CharNextA, ExitWindowsEx, SetTimer, PostQuitMessage, SetWindowLongA, SendMessageTimeoutA, LoadImageA, wsprintfA, GetDlgItem, FindWindowExA, IsWindow, SetClipboardData, EmptyClipboard, OpenClipboard, EndPaint, CreateDialogParamA, DestroyWindow, ShowWindow, SetWindowTextA |
GDI32.dll | SelectObject, SetBkMode, CreateFontIndirectA, SetTextColor, DeleteObject, GetDeviceCaps, CreateBrushIndirect, SetBkColor |
SHELL32.dll | SHGetSpecialFolderLocation, SHGetPathFromIDListA, SHBrowseForFolderA, SHGetFileInfoA, SHFileOperationA, ShellExecuteA |
ADVAPI32.dll | RegDeleteValueA, SetFileSecurityA, RegOpenKeyExA, RegDeleteKeyA, RegEnumValueA, RegCloseKey, RegCreateKeyExA, RegSetValueExA, RegQueryValueExA, RegEnumKeyA |
COMCTL32.dll | ImageList_AddMasked, ImageList_Destroy, ImageList_Create |
ole32.dll | OleUninitialize, OleInitialize, CoTaskMemFree, CoCreateInstance |
Possible Origin |
---|
Language of compilation system | Country where language is spoken | Map |
---|---|---|
English | United States |
Network Behavior |
---|
Snort IDS Alerts |
---|
Timestamp | Protocol | SID | Message | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|---|---|---|
10/14/21-08:28:19.047157 | TCP | 2024312 | ET TROJAN LokiBot Application/Credential Data Exfiltration Detected M1 | 49779 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:19.047157 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49779 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:19.047157 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49779 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:19.047157 | TCP | 2024317 | ET TROJAN LokiBot Application/Credential Data Exfiltration Detected M2 | 49779 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:20.347127 | TCP | 2024312 | ET TROJAN LokiBot Application/Credential Data Exfiltration Detected M1 | 49780 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:20.347127 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49780 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:20.347127 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49780 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:20.347127 | TCP | 2024317 | ET TROJAN LokiBot Application/Credential Data Exfiltration Detected M2 | 49780 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:21.339482 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49781 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:21.339482 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49781 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:21.339482 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49781 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:21.339482 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49781 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:22.592928 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49782 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:22.592928 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49782 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:22.592928 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49782 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:22.592928 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49782 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:23.792482 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49783 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:23.792482 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49783 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:23.792482 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49783 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:23.792482 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49783 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:24.885116 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49784 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:24.885116 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49784 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:24.885116 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49784 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:24.885116 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49784 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:26.025162 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49785 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:26.025162 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49785 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:26.025162 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49785 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:26.025162 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49785 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:27.340972 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49786 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:27.340972 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49786 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:27.340972 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49786 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:27.340972 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49786 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:30.289742 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49787 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:30.289742 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49787 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:30.289742 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49787 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:30.289742 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49787 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:31.397798 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49788 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:31.397798 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49788 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:31.397798 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49788 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:31.397798 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49788 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:32.511259 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49789 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:32.511259 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49789 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:32.511259 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49789 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:32.511259 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49789 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:33.672462 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49790 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:33.672462 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49790 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:33.672462 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49790 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:33.672462 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49790 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:34.890356 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49791 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:34.890356 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49791 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:34.890356 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49791 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:34.890356 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49791 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:35.993003 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49792 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:35.993003 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49792 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:35.993003 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49792 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:35.993003 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49792 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:37.119939 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49793 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:37.119939 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49793 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:37.119939 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49793 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:37.119939 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49793 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:38.386394 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49794 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:38.386394 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49794 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:38.386394 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49794 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:38.386394 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49794 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:39.512557 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49795 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:39.512557 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49795 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:39.512557 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49795 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:39.512557 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49795 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:41.105942 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49798 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:41.105942 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49798 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:41.105942 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49798 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:41.105942 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49798 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:42.274934 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49799 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:42.274934 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49799 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:42.274934 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49799 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:42.274934 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49799 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:43.873245 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49800 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:43.873245 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49800 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:43.873245 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49800 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:43.873245 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49800 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:45.343359 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49801 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:45.343359 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49801 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:45.343359 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49801 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:45.343359 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49801 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:48.039638 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49802 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:48.039638 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49802 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:48.039638 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49802 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:48.039638 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49802 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:49.659261 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49803 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:49.659261 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49803 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:49.659261 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49803 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:49.659261 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49803 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:50.976327 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49804 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:50.976327 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49804 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:50.976327 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49804 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:50.976327 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49804 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:52.327367 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49805 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:52.327367 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49805 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:52.327367 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49805 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:52.327367 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49805 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:53.563440 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49806 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:53.563440 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49806 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:53.563440 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49806 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:53.563440 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49806 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:54.645979 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49807 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:54.645979 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49807 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:54.645979 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49807 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:54.645979 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49807 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:28:56.080095 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49808 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:56.080095 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49808 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:56.080095 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49808 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:56.080095 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49808 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:57.516460 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49810 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:57.516460 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49810 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:57.516460 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49810 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:57.516460 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49810 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:58.883205 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49811 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:58.883205 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49811 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:58.883205 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49811 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:28:58.883205 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49811 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:00.298238 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49812 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:00.298238 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49812 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:00.298238 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49812 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:00.298238 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49812 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:01.666924 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49813 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:01.666924 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49813 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:01.666924 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49813 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:01.666924 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49813 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:03.076480 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49814 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:03.076480 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49814 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:03.076480 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49814 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:03.076480 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49814 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:06.184636 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49815 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:06.184636 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49815 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:06.184636 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49815 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:06.184636 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49815 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:07.530339 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49816 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:07.530339 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49816 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:07.530339 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49816 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:07.530339 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49816 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:08.722566 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49817 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:08.722566 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49817 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:08.722566 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49817 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:08.722566 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49817 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:09.909566 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49820 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:09.909566 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49820 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:09.909566 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49820 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:09.909566 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49820 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:11.124122 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49826 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:11.124122 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49826 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:11.124122 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49826 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:11.124122 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49826 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:12.348796 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49834 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:12.348796 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49834 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:12.348796 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49834 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:12.348796 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49834 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:13.657085 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49843 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:13.657085 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49843 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:13.657085 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49843 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:13.657085 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49843 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:15.138022 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49853 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:15.138022 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49853 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:15.138022 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49853 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:15.138022 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49853 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:16.658468 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49860 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:16.658468 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49860 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:16.658468 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49860 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:16.658468 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49860 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:18.009856 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49863 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:18.009856 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49863 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:18.009856 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49863 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:18.009856 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49863 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:20.400475 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49864 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:20.400475 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49864 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:20.400475 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49864 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:20.400475 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49864 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:21.825019 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49870 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:21.825019 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49870 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:21.825019 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49870 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:21.825019 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49870 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:23.419826 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49871 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:23.419826 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49871 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:23.419826 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49871 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:23.419826 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49871 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:27.468224 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49872 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:27.468224 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49872 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:27.468224 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49872 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:27.468224 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49872 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:29.646629 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49873 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:29.646629 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49873 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:29.646629 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49873 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:29.646629 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49873 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:31.734477 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49875 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:31.734477 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49875 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:31.734477 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49875 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:31.734477 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49875 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:33.006583 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49876 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:33.006583 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49876 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:33.006583 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49876 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:33.006583 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49876 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:35.265241 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49878 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:35.265241 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49878 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:35.265241 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49878 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:35.265241 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49878 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:36.968309 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49883 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:36.968309 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49883 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:36.968309 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49883 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:36.968309 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49883 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:38.139186 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49890 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:38.139186 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49890 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:38.139186 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49890 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:38.139186 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49890 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:39.373198 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49897 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:39.373198 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49897 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:39.373198 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49897 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:39.373198 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49897 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:40.707681 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49905 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:40.707681 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49905 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:40.707681 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49905 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:40.707681 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49905 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:41.873661 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49910 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:41.873661 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49910 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:41.873661 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49910 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:41.873661 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49910 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:43.281959 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49911 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:43.281959 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49911 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:43.281959 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49911 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:43.281959 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49911 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:44.429017 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49912 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:44.429017 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49912 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:44.429017 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49912 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:44.429017 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49912 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:45.763145 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49913 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:45.763145 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49913 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:45.763145 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49913 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:45.763145 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49913 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:46.923367 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49914 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:46.923367 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49914 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:46.923367 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49914 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:46.923367 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49914 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:48.049871 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49915 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:48.049871 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49915 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:48.049871 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49915 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:48.049871 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49915 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:49.324402 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49916 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:49.324402 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49916 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:49.324402 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49916 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:49.324402 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49916 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:51.880554 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49918 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:51.880554 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49918 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:51.880554 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49918 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:51.880554 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49918 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:55.836603 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49921 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:55.836603 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49921 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:55.836603 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49921 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:55.836603 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49921 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:56.968340 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49923 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:56.968340 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49923 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:56.968340 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49923 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:56.968340 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49923 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:58.074973 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49924 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:58.074973 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49924 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:58.074973 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49924 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:58.074973 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49924 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:29:59.226831 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49925 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:59.226831 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49925 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:59.226831 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49925 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:29:59.226831 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49925 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:00.311329 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49926 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:00.311329 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49926 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:00.311329 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49926 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:00.311329 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49926 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:01.416467 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49927 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:01.416467 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49927 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:01.416467 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49927 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:01.416467 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49927 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:02.546683 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49928 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:02.546683 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49928 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:02.546683 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49928 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:02.546683 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49928 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:03.716523 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49929 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:03.716523 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49929 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:03.716523 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49929 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:03.716523 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49929 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:04.877321 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49930 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:04.877321 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49930 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:04.877321 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49930 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:04.877321 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49930 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:05.956296 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49931 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:05.956296 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49931 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:05.956296 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49931 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:05.956296 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49931 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:07.140644 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49932 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:07.140644 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49932 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:07.140644 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49932 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:07.140644 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49932 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:08.437281 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49933 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:08.437281 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49933 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:08.437281 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49933 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:08.437281 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49933 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:09.692348 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49934 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:09.692348 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49934 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:09.692348 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49934 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:09.692348 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49934 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:11.132684 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49935 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:11.132684 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49935 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:11.132684 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49935 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:11.132684 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49935 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:13.066124 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49936 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:13.066124 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49936 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:13.066124 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49936 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:13.066124 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49936 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:15.336416 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49937 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:15.336416 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49937 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:15.336416 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49937 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:15.336416 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49937 | 80 | 192.168.2.6 | 104.21.62.32 |
10/14/21-08:30:16.682402 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49938 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:16.682402 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49938 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:16.682402 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49938 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:16.682402 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49938 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:18.312437 | TCP | 2024313 | ET TROJAN LokiBot Request for C2 Commands Detected M1 | 49939 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:18.312437 | TCP | 2021641 | ET TROJAN LokiBot User-Agent (Charon/Inferno) | 49939 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:18.312437 | TCP | 2025381 | ET TROJAN LokiBot Checkin | 49939 | 80 | 192.168.2.6 | 172.67.219.104 |
10/14/21-08:30:18.312437 | TCP | 2024318 | ET TROJAN LokiBot Request for C2 Commands Detected M2 | 49939 | 80 | 192.168.2.6 | 172.67.219.104 |
Network Port Distribution |
---|
TCP Packets |
---|
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Oct 14, 2021 08:28:19.027772903 CEST | 49779 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:19.043910027 CEST | 80 | 49779 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:19.044029951 CEST | 49779 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:19.047157049 CEST | 49779 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:19.063246012 CEST | 80 | 49779 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:19.063373089 CEST | 49779 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:19.079444885 CEST | 80 | 49779 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:19.209945917 CEST | 80 | 49779 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:19.210149050 CEST | 49779 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:19.214078903 CEST | 80 | 49779 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:19.214210033 CEST | 49779 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:19.226104975 CEST | 80 | 49779 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:20.327538013 CEST | 49780 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:20.343683004 CEST | 80 | 49780 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:20.343846083 CEST | 49780 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:20.347126961 CEST | 49780 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:20.363301039 CEST | 80 | 49780 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:20.363467932 CEST | 49780 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:20.379602909 CEST | 80 | 49780 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:20.460792065 CEST | 80 | 49780 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:20.461388111 CEST | 49780 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:20.463710070 CEST | 80 | 49780 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:20.463839054 CEST | 49780 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:20.477552891 CEST | 80 | 49780 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:21.319694996 CEST | 49781 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:21.335665941 CEST | 80 | 49781 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:21.335860968 CEST | 49781 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:21.339482069 CEST | 49781 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:21.355335951 CEST | 80 | 49781 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:21.355484962 CEST | 49781 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:21.371328115 CEST | 80 | 49781 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:21.535239935 CEST | 80 | 49781 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:21.535434008 CEST | 49781 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:21.539542913 CEST | 80 | 49781 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:21.539675951 CEST | 49781 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:21.551295042 CEST | 80 | 49781 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:22.573314905 CEST | 49782 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:22.589943886 CEST | 80 | 49782 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:22.590146065 CEST | 49782 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:22.592927933 CEST | 49782 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:22.609252930 CEST | 80 | 49782 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:22.609401941 CEST | 49782 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:22.625505924 CEST | 80 | 49782 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:22.751913071 CEST | 80 | 49782 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:22.752219915 CEST | 49782 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:22.755004883 CEST | 80 | 49782 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:22.755127907 CEST | 49782 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:22.769331932 CEST | 80 | 49782 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:23.772778034 CEST | 49783 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:23.789092064 CEST | 80 | 49783 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:23.789271116 CEST | 49783 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:23.792481899 CEST | 49783 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:23.808448076 CEST | 80 | 49783 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:23.808618069 CEST | 49783 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:23.826692104 CEST | 80 | 49783 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:23.945936918 CEST | 80 | 49783 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:23.946243048 CEST | 49783 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:23.950661898 CEST | 80 | 49783 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:23.950746059 CEST | 49783 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:23.962250948 CEST | 80 | 49783 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:24.866316080 CEST | 49784 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:24.882256985 CEST | 80 | 49784 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:24.882406950 CEST | 49784 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:24.885116100 CEST | 49784 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:24.901065111 CEST | 80 | 49784 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:24.901196003 CEST | 49784 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:24.917064905 CEST | 80 | 49784 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:25.039886951 CEST | 80 | 49784 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:25.040055990 CEST | 49784 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:25.044074059 CEST | 80 | 49784 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:25.044162989 CEST | 49784 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:25.055864096 CEST | 80 | 49784 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:26.004973888 CEST | 49785 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:26.021157980 CEST | 80 | 49785 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:26.021306992 CEST | 49785 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:26.025161982 CEST | 49785 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:26.041219950 CEST | 80 | 49785 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:26.041390896 CEST | 49785 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:26.057322979 CEST | 80 | 49785 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:26.179322958 CEST | 80 | 49785 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:26.184068918 CEST | 80 | 49785 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:26.184221983 CEST | 49785 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:26.233534098 CEST | 49785 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:26.249512911 CEST | 80 | 49785 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:27.318810940 CEST | 49786 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:27.334852934 CEST | 80 | 49786 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:27.337574005 CEST | 49786 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:27.340971947 CEST | 49786 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:27.356816053 CEST | 80 | 49786 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:27.357132912 CEST | 49786 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:27.372992039 CEST | 80 | 49786 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:27.495248079 CEST | 80 | 49786 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:27.495812893 CEST | 49786 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:27.502477884 CEST | 80 | 49786 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:27.502729893 CEST | 49786 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:27.511775017 CEST | 80 | 49786 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:30.268244028 CEST | 49787 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:30.285348892 CEST | 80 | 49787 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:30.285460949 CEST | 49787 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:30.289741993 CEST | 49787 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:30.307091951 CEST | 80 | 49787 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:30.307250023 CEST | 49787 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:30.324394941 CEST | 80 | 49787 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:30.451376915 CEST | 80 | 49787 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:30.451589108 CEST | 49787 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:30.458794117 CEST | 80 | 49787 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:30.459002972 CEST | 49787 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:30.467573881 CEST | 80 | 49787 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:31.364558935 CEST | 49788 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:31.380477905 CEST | 80 | 49788 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:31.380641937 CEST | 49788 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:31.397798061 CEST | 49788 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:31.413549900 CEST | 80 | 49788 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:31.413613081 CEST | 49788 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:31.429367065 CEST | 80 | 49788 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:31.565464973 CEST | 80 | 49788 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:31.565495968 CEST | 80 | 49788 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:31.569339037 CEST | 49788 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:31.569370031 CEST | 49788 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:31.585639954 CEST | 80 | 49788 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:32.492398024 CEST | 49789 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:32.508377075 CEST | 80 | 49789 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:32.508481026 CEST | 49789 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:32.511259079 CEST | 49789 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:32.527503014 CEST | 80 | 49789 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:32.527611971 CEST | 49789 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:32.543457985 CEST | 80 | 49789 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:32.680007935 CEST | 80 | 49789 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:32.680180073 CEST | 49789 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:32.683983088 CEST | 80 | 49789 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:32.684098005 CEST | 49789 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:32.695982933 CEST | 80 | 49789 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:33.651530027 CEST | 49790 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:33.668298960 CEST | 80 | 49790 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:33.668442011 CEST | 49790 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:33.672461987 CEST | 49790 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:33.689089060 CEST | 80 | 49790 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:33.689187050 CEST | 49790 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:33.706042051 CEST | 80 | 49790 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:33.830368042 CEST | 80 | 49790 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:33.830600977 CEST | 49790 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:33.833925962 CEST | 80 | 49790 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:33.834012032 CEST | 49790 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:33.846543074 CEST | 80 | 49790 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:34.871316910 CEST | 49791 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:34.887226105 CEST | 80 | 49791 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:34.887434006 CEST | 49791 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:34.890356064 CEST | 49791 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:34.906491041 CEST | 80 | 49791 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:34.906606913 CEST | 49791 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:34.922707081 CEST | 80 | 49791 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:35.044509888 CEST | 80 | 49791 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:35.044855118 CEST | 49791 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:35.048998117 CEST | 80 | 49791 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:35.049129963 CEST | 49791 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:35.060842037 CEST | 80 | 49791 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:35.974087954 CEST | 49792 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:35.989825964 CEST | 80 | 49792 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:35.990343094 CEST | 49792 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:35.993002892 CEST | 49792 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:36.008764982 CEST | 80 | 49792 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:36.008896112 CEST | 49792 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:36.024523973 CEST | 80 | 49792 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:36.144937992 CEST | 80 | 49792 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:36.146392107 CEST | 49792 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:36.148103952 CEST | 80 | 49792 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:36.148227930 CEST | 49792 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:36.162077904 CEST | 80 | 49792 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:37.095299959 CEST | 49793 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:37.111279964 CEST | 80 | 49793 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:37.111439943 CEST | 49793 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:37.119939089 CEST | 49793 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:37.135917902 CEST | 80 | 49793 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:37.136126995 CEST | 49793 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:37.152204037 CEST | 80 | 49793 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:37.232311010 CEST | 80 | 49793 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:37.232479095 CEST | 49793 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:37.236232996 CEST | 80 | 49793 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:37.236380100 CEST | 49793 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:37.252430916 CEST | 80 | 49793 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:38.367342949 CEST | 49794 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:38.383460045 CEST | 80 | 49794 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:38.383738041 CEST | 49794 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:38.386394024 CEST | 49794 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:38.402209044 CEST | 80 | 49794 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:38.402403116 CEST | 49794 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:38.418232918 CEST | 80 | 49794 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:38.540837049 CEST | 80 | 49794 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:38.541168928 CEST | 49794 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:38.545337915 CEST | 80 | 49794 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:38.545483112 CEST | 49794 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:38.556890011 CEST | 80 | 49794 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:39.492939949 CEST | 49795 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:39.508737087 CEST | 80 | 49795 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:39.509788036 CEST | 49795 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:39.512557030 CEST | 49795 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:39.528422117 CEST | 80 | 49795 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:39.528501034 CEST | 49795 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:39.544223070 CEST | 80 | 49795 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:39.669177055 CEST | 80 | 49795 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:39.669383049 CEST | 49795 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:39.673511028 CEST | 80 | 49795 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:39.673631907 CEST | 49795 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:39.685206890 CEST | 80 | 49795 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:41.067152023 CEST | 49798 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:41.082995892 CEST | 80 | 49798 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:41.083137989 CEST | 49798 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:41.105942011 CEST | 49798 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:41.121716022 CEST | 80 | 49798 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:41.121790886 CEST | 49798 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:41.137526989 CEST | 80 | 49798 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:41.219671965 CEST | 80 | 49798 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:41.219835043 CEST | 49798 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:41.223129034 CEST | 80 | 49798 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:41.223215103 CEST | 49798 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:41.235600948 CEST | 80 | 49798 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:42.254771948 CEST | 49799 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:42.270489931 CEST | 80 | 49799 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:42.271445036 CEST | 49799 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:42.274934053 CEST | 49799 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:42.290599108 CEST | 80 | 49799 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:42.290678978 CEST | 49799 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:42.306401014 CEST | 80 | 49799 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:42.387685061 CEST | 80 | 49799 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:42.387815952 CEST | 49799 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:42.394315004 CEST | 80 | 49799 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:42.396763086 CEST | 49799 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:42.403693914 CEST | 80 | 49799 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:43.848814964 CEST | 49800 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:43.864871025 CEST | 80 | 49800 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:43.865060091 CEST | 49800 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:43.873245001 CEST | 49800 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:43.889305115 CEST | 80 | 49800 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:43.889446020 CEST | 49800 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:43.905512094 CEST | 80 | 49800 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:43.996604919 CEST | 80 | 49800 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:43.996789932 CEST | 49800 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:43.998589039 CEST | 80 | 49800 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:43.998670101 CEST | 49800 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:44.013036013 CEST | 80 | 49800 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:45.305026054 CEST | 49801 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:45.320739985 CEST | 80 | 49801 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:45.320862055 CEST | 49801 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:45.343358994 CEST | 49801 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:45.359078884 CEST | 80 | 49801 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:45.361588955 CEST | 49801 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:45.377338886 CEST | 80 | 49801 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:45.464049101 CEST | 80 | 49801 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:45.464484930 CEST | 49801 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:45.467679977 CEST | 80 | 49801 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:45.467830896 CEST | 49801 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:45.480146885 CEST | 80 | 49801 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:48.020804882 CEST | 49802 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:48.036874056 CEST | 80 | 49802 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:48.036969900 CEST | 49802 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:48.039638042 CEST | 49802 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:48.055605888 CEST | 80 | 49802 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:48.055685043 CEST | 49802 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:48.071571112 CEST | 80 | 49802 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:48.163419962 CEST | 80 | 49802 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:48.163548946 CEST | 49802 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:48.165496111 CEST | 80 | 49802 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:48.165595055 CEST | 49802 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:48.179533005 CEST | 80 | 49802 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:49.639492035 CEST | 49803 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:49.655677080 CEST | 80 | 49803 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:49.657088041 CEST | 49803 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:49.659260988 CEST | 49803 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:49.675313950 CEST | 80 | 49803 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:49.675806999 CEST | 49803 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:49.691874027 CEST | 80 | 49803 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:49.774518013 CEST | 80 | 49803 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:49.774641991 CEST | 80 | 49803 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:49.774741888 CEST | 49803 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:49.774770021 CEST | 49803 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:49.790961027 CEST | 80 | 49803 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:50.952090979 CEST | 49804 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:50.967997074 CEST | 80 | 49804 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:50.968147993 CEST | 49804 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:50.976326942 CEST | 49804 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:50.992233992 CEST | 80 | 49804 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:50.992428064 CEST | 49804 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:51.008234978 CEST | 80 | 49804 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:51.090559006 CEST | 80 | 49804 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:51.090776920 CEST | 49804 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:51.093907118 CEST | 80 | 49804 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:51.094017982 CEST | 49804 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:51.106555939 CEST | 80 | 49804 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:52.303160906 CEST | 49805 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:52.319185972 CEST | 80 | 49805 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:52.319715023 CEST | 49805 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:52.327367067 CEST | 49805 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:52.343226910 CEST | 80 | 49805 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:52.343465090 CEST | 49805 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:52.359374046 CEST | 80 | 49805 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:52.449971914 CEST | 80 | 49805 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:52.451148033 CEST | 49805 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:52.455553055 CEST | 80 | 49805 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:52.455698967 CEST | 49805 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:52.467087984 CEST | 80 | 49805 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:53.544533014 CEST | 49806 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:53.560533047 CEST | 80 | 49806 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:53.560643911 CEST | 49806 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:53.563440084 CEST | 49806 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:53.579401970 CEST | 80 | 49806 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:53.579511881 CEST | 49806 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:53.595551968 CEST | 80 | 49806 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:53.674302101 CEST | 80 | 49806 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:53.674453020 CEST | 49806 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:53.679147959 CEST | 80 | 49806 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:53.679223061 CEST | 49806 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:53.690466881 CEST | 80 | 49806 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:54.626549959 CEST | 49807 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:54.642462969 CEST | 80 | 49807 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:54.642591953 CEST | 49807 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:54.645978928 CEST | 49807 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:54.661820889 CEST | 80 | 49807 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:54.661925077 CEST | 49807 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:54.677676916 CEST | 80 | 49807 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:54.761792898 CEST | 80 | 49807 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:54.761943102 CEST | 49807 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:54.765676022 CEST | 80 | 49807 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:54.765758038 CEST | 49807 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:28:54.777797937 CEST | 80 | 49807 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:28:56.056102991 CEST | 49808 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:56.071824074 CEST | 80 | 49808 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:56.072069883 CEST | 49808 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:56.080095053 CEST | 49808 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:56.095856905 CEST | 80 | 49808 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:56.096412897 CEST | 49808 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:56.112082005 CEST | 80 | 49808 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:56.196356058 CEST | 80 | 49808 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:56.196599960 CEST | 49808 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:56.199531078 CEST | 80 | 49808 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:56.199629068 CEST | 49808 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:56.212317944 CEST | 80 | 49808 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:57.497778893 CEST | 49810 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:57.513653994 CEST | 80 | 49810 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:57.513819933 CEST | 49810 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:57.516459942 CEST | 49810 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:57.532274008 CEST | 80 | 49810 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:57.532377005 CEST | 49810 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:57.548203945 CEST | 80 | 49810 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:57.630285978 CEST | 80 | 49810 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:57.630428076 CEST | 49810 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:57.634421110 CEST | 80 | 49810 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:57.634573936 CEST | 49810 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:57.646219969 CEST | 80 | 49810 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:58.858968973 CEST | 49811 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:58.874847889 CEST | 80 | 49811 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:58.875158072 CEST | 49811 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:58.883204937 CEST | 49811 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:58.899183989 CEST | 80 | 49811 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:58.899343967 CEST | 49811 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:58.915180922 CEST | 80 | 49811 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:59.036413908 CEST | 80 | 49811 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:59.036602974 CEST | 49811 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:59.039031982 CEST | 80 | 49811 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:28:59.040175915 CEST | 49811 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:28:59.052285910 CEST | 80 | 49811 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:00.279390097 CEST | 49812 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:00.295269966 CEST | 80 | 49812 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:00.295372009 CEST | 49812 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:00.298238039 CEST | 49812 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:00.314100027 CEST | 80 | 49812 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:00.314201117 CEST | 49812 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:00.330084085 CEST | 80 | 49812 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:00.410363913 CEST | 80 | 49812 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:00.410526991 CEST | 49812 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:00.414992094 CEST | 80 | 49812 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:00.415082932 CEST | 49812 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:00.426451921 CEST | 80 | 49812 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:01.642504930 CEST | 49813 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:01.658246994 CEST | 80 | 49813 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:01.659168005 CEST | 49813 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:01.666924000 CEST | 49813 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:01.682801008 CEST | 80 | 49813 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:01.683583975 CEST | 49813 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:01.699321985 CEST | 80 | 49813 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:01.827079058 CEST | 80 | 49813 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:01.827256918 CEST | 49813 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:01.829689026 CEST | 80 | 49813 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:01.830264091 CEST | 49813 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:01.843548059 CEST | 80 | 49813 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:03.057848930 CEST | 49814 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:03.073795080 CEST | 80 | 49814 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:03.073904037 CEST | 49814 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:03.076479912 CEST | 49814 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:03.093050957 CEST | 80 | 49814 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:03.093130112 CEST | 49814 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:03.109030962 CEST | 80 | 49814 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:03.214101076 CEST | 80 | 49814 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:03.214225054 CEST | 49814 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:03.214323044 CEST | 80 | 49814 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:03.214382887 CEST | 49814 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:03.230099916 CEST | 80 | 49814 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:06.150192976 CEST | 49815 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:06.166016102 CEST | 80 | 49815 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:06.166265965 CEST | 49815 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:06.184636116 CEST | 49815 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:06.200299025 CEST | 80 | 49815 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:06.200411081 CEST | 49815 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:06.216032028 CEST | 80 | 49815 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:06.302758932 CEST | 80 | 49815 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:06.303061008 CEST | 80 | 49815 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:06.303184986 CEST | 49815 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:06.367196083 CEST | 49815 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:06.382930040 CEST | 80 | 49815 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:07.511693001 CEST | 49816 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:07.527686119 CEST | 80 | 49816 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:07.527796984 CEST | 49816 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:07.530339003 CEST | 49816 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:07.546386957 CEST | 80 | 49816 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:07.546461105 CEST | 49816 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:07.562447071 CEST | 80 | 49816 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:07.646630049 CEST | 80 | 49816 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:07.646831989 CEST | 49816 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:07.652697086 CEST | 80 | 49816 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:07.652808905 CEST | 49816 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:07.662858009 CEST | 80 | 49816 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:08.702898979 CEST | 49817 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:08.718863964 CEST | 80 | 49817 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:08.718980074 CEST | 49817 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:08.722565889 CEST | 49817 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:08.738461018 CEST | 80 | 49817 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:08.738579988 CEST | 49817 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:08.754503012 CEST | 80 | 49817 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:08.835047960 CEST | 80 | 49817 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:08.835613012 CEST | 49817 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:08.839998007 CEST | 80 | 49817 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:08.840123892 CEST | 49817 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:08.851569891 CEST | 80 | 49817 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:09.890640974 CEST | 49820 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:09.906680107 CEST | 80 | 49820 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:09.906817913 CEST | 49820 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:09.909565926 CEST | 49820 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:09.925491095 CEST | 80 | 49820 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:09.925599098 CEST | 49820 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:09.941586971 CEST | 80 | 49820 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:10.033361912 CEST | 80 | 49820 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:10.033516884 CEST | 49820 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:10.033694983 CEST | 80 | 49820 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:10.033761024 CEST | 49820 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:10.049477100 CEST | 80 | 49820 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:11.100315094 CEST | 49826 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:11.116072893 CEST | 80 | 49826 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:11.116270065 CEST | 49826 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:11.124121904 CEST | 49826 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:11.140005112 CEST | 80 | 49826 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:11.140162945 CEST | 49826 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:11.155889988 CEST | 80 | 49826 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:11.252242088 CEST | 80 | 49826 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:11.252438068 CEST | 49826 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:11.260411978 CEST | 80 | 49826 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:11.260510921 CEST | 49826 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:11.268137932 CEST | 80 | 49826 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:12.328859091 CEST | 49834 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:12.344630957 CEST | 80 | 49834 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:12.344770908 CEST | 49834 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:12.348795891 CEST | 49834 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:12.364546061 CEST | 80 | 49834 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:12.364717007 CEST | 49834 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:12.380440950 CEST | 80 | 49834 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:12.488634109 CEST | 80 | 49834 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:12.489018917 CEST | 49834 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:12.490758896 CEST | 80 | 49834 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:12.492058039 CEST | 49834 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:12.504658937 CEST | 80 | 49834 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:13.636471987 CEST | 49843 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:13.652439117 CEST | 80 | 49843 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:13.653642893 CEST | 49843 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:13.657084942 CEST | 49843 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:13.673026085 CEST | 80 | 49843 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:13.673129082 CEST | 49843 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:13.688971043 CEST | 80 | 49843 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:13.770459890 CEST | 80 | 49843 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:13.771907091 CEST | 49843 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:13.775058985 CEST | 80 | 49843 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:13.775441885 CEST | 49843 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:13.788501978 CEST | 80 | 49843 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:15.117068052 CEST | 49853 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:15.133296967 CEST | 80 | 49853 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:15.133588076 CEST | 49853 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:15.138021946 CEST | 49853 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:15.154012918 CEST | 80 | 49853 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:15.154344082 CEST | 49853 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:15.170353889 CEST | 80 | 49853 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:15.258631945 CEST | 80 | 49853 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:15.258793116 CEST | 49853 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:15.262315989 CEST | 80 | 49853 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:15.262511015 CEST | 49853 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:15.274777889 CEST | 80 | 49853 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:16.639605999 CEST | 49860 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:16.655596972 CEST | 80 | 49860 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:16.655901909 CEST | 49860 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:16.658468008 CEST | 49860 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:16.674443007 CEST | 80 | 49860 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:16.674575090 CEST | 49860 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:16.690541029 CEST | 80 | 49860 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:16.772655964 CEST | 80 | 49860 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:16.772679090 CEST | 80 | 49860 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:16.772775888 CEST | 49860 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:16.772816896 CEST | 49860 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:16.778476000 CEST | 80 | 49860 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:16.778572083 CEST | 49860 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:17.990361929 CEST | 49863 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:18.006529093 CEST | 80 | 49863 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:18.006691933 CEST | 49863 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:18.009855986 CEST | 49863 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:18.025885105 CEST | 80 | 49863 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:18.026037931 CEST | 49863 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:18.042042017 CEST | 80 | 49863 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:18.129460096 CEST | 80 | 49863 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:18.129709005 CEST | 49863 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:18.133486986 CEST | 80 | 49863 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:18.133609056 CEST | 49863 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:18.145648003 CEST | 80 | 49863 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:20.377567053 CEST | 49864 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:20.393802881 CEST | 80 | 49864 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:20.394676924 CEST | 49864 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:20.400475025 CEST | 49864 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:20.416377068 CEST | 80 | 49864 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:20.416629076 CEST | 49864 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:20.432496071 CEST | 80 | 49864 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:20.518090010 CEST | 80 | 49864 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:20.518548965 CEST | 49864 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:20.522037983 CEST | 80 | 49864 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:20.522156000 CEST | 49864 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:20.534503937 CEST | 80 | 49864 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:21.798049927 CEST | 49870 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:21.814004898 CEST | 80 | 49870 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:21.815773964 CEST | 49870 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:21.825018883 CEST | 49870 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:21.840924025 CEST | 80 | 49870 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:21.846321106 CEST | 49870 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:21.862538099 CEST | 80 | 49870 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:21.940284967 CEST | 80 | 49870 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:21.941325903 CEST | 49870 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:21.948467016 CEST | 80 | 49870 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:21.949280977 CEST | 49870 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:21.961464882 CEST | 80 | 49870 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:23.400367022 CEST | 49871 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:23.416105986 CEST | 80 | 49871 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:23.416366100 CEST | 49871 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:23.419826031 CEST | 49871 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:23.435573101 CEST | 80 | 49871 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:23.435642004 CEST | 49871 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:23.451368093 CEST | 80 | 49871 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:23.542494059 CEST | 80 | 49871 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:23.542738914 CEST | 49871 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:23.547996998 CEST | 80 | 49871 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:23.548326969 CEST | 49871 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:23.558412075 CEST | 80 | 49871 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:27.448055983 CEST | 49872 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:27.464031935 CEST | 80 | 49872 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:27.464251041 CEST | 49872 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:27.468224049 CEST | 49872 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:27.484173059 CEST | 80 | 49872 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:27.484252930 CEST | 49872 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:27.500216961 CEST | 80 | 49872 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:27.586599112 CEST | 80 | 49872 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:27.586764097 CEST | 49872 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:27.587049961 CEST | 80 | 49872 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:27.587133884 CEST | 49872 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:27.602746964 CEST | 80 | 49872 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:29.626770020 CEST | 49873 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:29.642803907 CEST | 80 | 49873 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:29.642931938 CEST | 49873 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:29.646629095 CEST | 49873 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:29.662648916 CEST | 80 | 49873 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:29.666580915 CEST | 49873 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:29.682674885 CEST | 80 | 49873 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:29.765604973 CEST | 80 | 49873 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:29.765788078 CEST | 49873 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:29.769172907 CEST | 80 | 49873 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:29.769994974 CEST | 49873 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:29.781760931 CEST | 80 | 49873 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:31.714684963 CEST | 49875 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:31.730560064 CEST | 80 | 49875 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:31.730705976 CEST | 49875 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:31.734477043 CEST | 49875 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:31.750348091 CEST | 80 | 49875 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:31.750525951 CEST | 49875 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:31.766422033 CEST | 80 | 49875 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:31.847372055 CEST | 80 | 49875 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:31.847683907 CEST | 80 | 49875 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:31.847693920 CEST | 49875 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:31.847745895 CEST | 49875 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:31.851635933 CEST | 80 | 49875 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:31.851728916 CEST | 49875 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:31.863682032 CEST | 80 | 49875 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:31.863837004 CEST | 49875 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:32.986711979 CEST | 49876 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:33.002589941 CEST | 80 | 49876 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:33.002734900 CEST | 49876 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:33.006582975 CEST | 49876 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:33.022450924 CEST | 80 | 49876 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:33.022634983 CEST | 49876 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:33.038882971 CEST | 80 | 49876 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:33.126630068 CEST | 80 | 49876 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:33.126775026 CEST | 49876 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:33.130740881 CEST | 80 | 49876 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:33.130825043 CEST | 49876 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:33.142595053 CEST | 80 | 49876 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:35.245383978 CEST | 49878 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:35.261614084 CEST | 80 | 49878 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:35.261780977 CEST | 49878 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:35.265240908 CEST | 49878 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:35.281306982 CEST | 80 | 49878 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:35.281400919 CEST | 49878 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:35.297293901 CEST | 80 | 49878 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:35.384254932 CEST | 80 | 49878 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:35.384377003 CEST | 49878 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:35.388781071 CEST | 80 | 49878 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:35.388883114 CEST | 49878 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:35.400322914 CEST | 80 | 49878 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:36.949542999 CEST | 49883 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:36.965558052 CEST | 80 | 49883 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:36.965774059 CEST | 49883 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:36.968308926 CEST | 49883 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:36.984260082 CEST | 80 | 49883 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:36.985647917 CEST | 49883 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:37.001694918 CEST | 80 | 49883 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:37.123816013 CEST | 80 | 49883 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:37.124030113 CEST | 49883 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:37.126174927 CEST | 80 | 49883 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:37.126277924 CEST | 49883 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:37.139894962 CEST | 80 | 49883 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:38.120177031 CEST | 49890 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:38.136213064 CEST | 80 | 49890 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:38.136321068 CEST | 49890 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:38.139185905 CEST | 49890 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:38.155052900 CEST | 80 | 49890 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:38.155143023 CEST | 49890 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:38.171066999 CEST | 80 | 49890 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:38.253525972 CEST | 80 | 49890 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:38.253660917 CEST | 49890 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:38.256649971 CEST | 80 | 49890 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:38.256802082 CEST | 49890 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:38.269532919 CEST | 80 | 49890 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:39.350927114 CEST | 49897 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:39.367136955 CEST | 80 | 49897 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:39.367331982 CEST | 49897 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:39.373198032 CEST | 49897 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:39.390948057 CEST | 80 | 49897 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:39.391185999 CEST | 49897 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:39.407383919 CEST | 80 | 49897 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:39.677830935 CEST | 80 | 49897 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:39.678029060 CEST | 80 | 49897 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:39.678085089 CEST | 49897 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:39.678133011 CEST | 49897 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:39.694377899 CEST | 80 | 49897 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:40.683351040 CEST | 49905 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:40.699875116 CEST | 80 | 49905 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:40.700025082 CEST | 49905 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:40.707680941 CEST | 49905 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:40.723941088 CEST | 80 | 49905 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:40.724066019 CEST | 49905 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:40.740129948 CEST | 80 | 49905 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:40.835604906 CEST | 80 | 49905 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:40.835632086 CEST | 80 | 49905 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:40.835714102 CEST | 49905 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:40.835788012 CEST | 49905 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:40.839976072 CEST | 80 | 49905 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:40.840162039 CEST | 49905 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:41.854887962 CEST | 49910 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:41.870893955 CEST | 80 | 49910 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:41.871057987 CEST | 49910 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:41.873661041 CEST | 49910 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:41.889537096 CEST | 80 | 49910 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:41.889930010 CEST | 49910 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:41.906018019 CEST | 80 | 49910 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:41.995091915 CEST | 80 | 49910 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:41.995223999 CEST | 49910 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:41.998651028 CEST | 80 | 49910 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:41.998733997 CEST | 49910 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:42.011193991 CEST | 80 | 49910 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:43.258410931 CEST | 49911 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:43.274508953 CEST | 80 | 49911 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:43.274727106 CEST | 49911 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:43.281959057 CEST | 49911 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:43.298043966 CEST | 80 | 49911 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:43.298171997 CEST | 49911 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:43.314213037 CEST | 80 | 49911 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:43.452020884 CEST | 80 | 49911 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:43.452076912 CEST | 80 | 49911 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:43.452204943 CEST | 49911 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:43.452266932 CEST | 49911 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:43.468391895 CEST | 80 | 49911 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:44.408468008 CEST | 49912 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:44.424232960 CEST | 80 | 49912 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:44.424417019 CEST | 49912 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:44.429017067 CEST | 49912 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:44.444721937 CEST | 80 | 49912 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:44.444839001 CEST | 49912 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:44.460444927 CEST | 80 | 49912 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:44.601130962 CEST | 80 | 49912 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:44.601349115 CEST | 49912 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:44.605571032 CEST | 80 | 49912 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:44.605688095 CEST | 49912 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:44.616970062 CEST | 80 | 49912 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:45.743004084 CEST | 49913 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:45.758729935 CEST | 80 | 49913 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:45.758924007 CEST | 49913 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:45.763144970 CEST | 49913 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:45.778801918 CEST | 80 | 49913 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:45.779706001 CEST | 49913 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:45.795325994 CEST | 80 | 49913 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:45.873655081 CEST | 80 | 49913 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:45.874172926 CEST | 49913 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:45.878035069 CEST | 80 | 49913 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:45.878284931 CEST | 49913 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:45.889760971 CEST | 80 | 49913 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:46.902745962 CEST | 49914 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:46.918525934 CEST | 80 | 49914 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:46.919964075 CEST | 49914 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:46.923367023 CEST | 49914 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:46.939160109 CEST | 80 | 49914 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:46.939387083 CEST | 49914 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:46.955037117 CEST | 80 | 49914 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:47.043380976 CEST | 80 | 49914 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:47.048134089 CEST | 49914 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:47.049408913 CEST | 80 | 49914 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:47.049566031 CEST | 49914 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:47.063859940 CEST | 80 | 49914 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:48.031189919 CEST | 49915 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:48.046953917 CEST | 80 | 49915 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:48.047080994 CEST | 49915 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:48.049870968 CEST | 49915 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:48.065480947 CEST | 80 | 49915 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:48.065565109 CEST | 49915 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:48.081198931 CEST | 80 | 49915 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:48.166955948 CEST | 80 | 49915 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:48.167104959 CEST | 49915 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:48.170270920 CEST | 80 | 49915 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:48.170492887 CEST | 49915 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:48.182641983 CEST | 80 | 49915 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:49.303356886 CEST | 49916 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:49.319330931 CEST | 80 | 49916 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:49.319526911 CEST | 49916 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:49.324402094 CEST | 49916 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:49.340275049 CEST | 80 | 49916 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:49.340414047 CEST | 49916 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:49.356230974 CEST | 80 | 49916 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:49.441760063 CEST | 80 | 49916 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:49.443169117 CEST | 49916 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:49.445684910 CEST | 80 | 49916 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:49.446990013 CEST | 49916 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:49.459099054 CEST | 80 | 49916 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:51.861828089 CEST | 49918 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:51.877692938 CEST | 80 | 49918 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:51.877835989 CEST | 49918 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:51.880553961 CEST | 49918 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:51.896408081 CEST | 80 | 49918 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:51.899096966 CEST | 49918 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:51.915010929 CEST | 80 | 49918 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:51.998187065 CEST | 80 | 49918 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:52.002515078 CEST | 80 | 49918 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:52.003864050 CEST | 49918 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:52.019984007 CEST | 49918 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:52.035880089 CEST | 80 | 49918 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:55.817760944 CEST | 49921 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:55.833710909 CEST | 80 | 49921 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:55.833877087 CEST | 49921 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:55.836602926 CEST | 49921 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:55.852466106 CEST | 80 | 49921 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:55.852555990 CEST | 49921 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:55.868407965 CEST | 80 | 49921 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:55.948838949 CEST | 80 | 49921 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:55.948973894 CEST | 49921 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:55.952503920 CEST | 80 | 49921 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:55.952573061 CEST | 49921 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:55.965166092 CEST | 80 | 49921 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:56.944969893 CEST | 49923 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:56.960926056 CEST | 80 | 49923 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:56.961122990 CEST | 49923 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:56.968339920 CEST | 49923 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:56.984317064 CEST | 80 | 49923 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:56.984436989 CEST | 49923 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:57.000293016 CEST | 80 | 49923 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:57.081579924 CEST | 80 | 49923 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:57.081828117 CEST | 49923 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:57.085637093 CEST | 80 | 49923 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:57.086219072 CEST | 49923 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:57.097825050 CEST | 80 | 49923 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:58.051038027 CEST | 49924 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:58.066994905 CEST | 80 | 49924 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:58.067226887 CEST | 49924 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:58.074973106 CEST | 49924 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:58.090754986 CEST | 80 | 49924 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:58.090995073 CEST | 49924 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:58.106772900 CEST | 80 | 49924 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:58.188767910 CEST | 80 | 49924 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:58.188993931 CEST | 49924 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:58.193236113 CEST | 80 | 49924 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:58.193358898 CEST | 49924 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:29:58.204651117 CEST | 80 | 49924 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:29:59.207833052 CEST | 49925 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:59.223686934 CEST | 80 | 49925 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:59.223786116 CEST | 49925 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:59.226830959 CEST | 49925 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:59.242496014 CEST | 80 | 49925 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:59.242714882 CEST | 49925 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:59.258414984 CEST | 80 | 49925 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:59.347254038 CEST | 80 | 49925 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:59.347356081 CEST | 80 | 49925 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:29:59.347457886 CEST | 49925 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:59.347510099 CEST | 49925 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:29:59.363177061 CEST | 80 | 49925 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:00.288477898 CEST | 49926 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:00.304276943 CEST | 80 | 49926 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:00.307995081 CEST | 49926 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:00.311328888 CEST | 49926 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:00.327159882 CEST | 80 | 49926 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:00.327512026 CEST | 49926 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:00.343250990 CEST | 80 | 49926 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:00.468617916 CEST | 80 | 49926 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:00.468893051 CEST | 49926 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:00.469223022 CEST | 80 | 49926 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:00.469321012 CEST | 49926 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:00.474549055 CEST | 80 | 49926 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:00.474725962 CEST | 49926 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:00.484589100 CEST | 80 | 49926 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:00.484755993 CEST | 49926 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:01.395076990 CEST | 49927 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:01.411005020 CEST | 80 | 49927 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:01.411178112 CEST | 49927 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:01.416466951 CEST | 49927 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:01.432380915 CEST | 80 | 49927 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:01.432476044 CEST | 49927 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:01.448304892 CEST | 80 | 49927 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:01.529956102 CEST | 80 | 49927 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:01.530198097 CEST | 49927 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:01.535075903 CEST | 80 | 49927 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:01.535212994 CEST | 49927 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:01.546093941 CEST | 80 | 49927 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:02.527234077 CEST | 49928 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:02.543230057 CEST | 80 | 49928 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:02.543421030 CEST | 49928 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:02.546683073 CEST | 49928 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:02.562567949 CEST | 80 | 49928 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:02.562702894 CEST | 49928 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:02.578538895 CEST | 80 | 49928 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:02.660093069 CEST | 80 | 49928 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:02.660407066 CEST | 49928 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:02.663590908 CEST | 80 | 49928 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:02.663686991 CEST | 49928 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:02.676501036 CEST | 80 | 49928 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:03.692305088 CEST | 49929 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:03.708070040 CEST | 80 | 49929 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:03.708323002 CEST | 49929 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:03.716522932 CEST | 49929 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:03.732199907 CEST | 80 | 49929 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:03.732362986 CEST | 49929 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:03.747980118 CEST | 80 | 49929 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:03.830050945 CEST | 80 | 49929 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:03.830297947 CEST | 49929 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:03.832726955 CEST | 80 | 49929 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:03.834834099 CEST | 49929 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:03.845978975 CEST | 80 | 49929 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:04.857999086 CEST | 49930 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:04.873780966 CEST | 80 | 49930 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:04.873914003 CEST | 49930 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:04.877321005 CEST | 49930 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:04.893142939 CEST | 80 | 49930 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:04.893264055 CEST | 49930 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:04.908987045 CEST | 80 | 49930 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:04.995676041 CEST | 80 | 49930 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:04.996942043 CEST | 49930 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:05.002358913 CEST | 80 | 49930 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:05.002521038 CEST | 49930 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:05.012949944 CEST | 80 | 49930 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:05.936584949 CEST | 49931 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:05.952409983 CEST | 80 | 49931 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:05.952688932 CEST | 49931 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:05.956295967 CEST | 49931 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:05.972806931 CEST | 80 | 49931 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:05.974153042 CEST | 49931 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:05.990535021 CEST | 80 | 49931 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:06.071351051 CEST | 80 | 49931 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:06.071573973 CEST | 49931 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:06.076244116 CEST | 80 | 49931 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:06.076431990 CEST | 49931 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:06.087330103 CEST | 80 | 49931 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:07.121259928 CEST | 49932 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:07.137213945 CEST | 80 | 49932 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:07.137419939 CEST | 49932 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:07.140644073 CEST | 49932 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:07.156822920 CEST | 80 | 49932 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:07.157073021 CEST | 49932 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:07.172857046 CEST | 80 | 49932 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:07.263822079 CEST | 80 | 49932 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:07.264017105 CEST | 49932 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:07.267726898 CEST | 80 | 49932 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:07.267899990 CEST | 49932 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:07.280625105 CEST | 80 | 49932 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:08.417220116 CEST | 49933 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:08.433211088 CEST | 80 | 49933 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:08.433330059 CEST | 49933 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:08.437280893 CEST | 49933 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:08.453160048 CEST | 80 | 49933 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:08.453376055 CEST | 49933 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:08.469238997 CEST | 80 | 49933 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:08.602293968 CEST | 80 | 49933 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:08.602432013 CEST | 49933 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:08.609962940 CEST | 80 | 49933 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:08.610054016 CEST | 49933 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:08.618267059 CEST | 80 | 49933 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:09.672461987 CEST | 49934 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:09.688498020 CEST | 80 | 49934 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:09.688723087 CEST | 49934 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:09.692348003 CEST | 49934 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:09.708491087 CEST | 80 | 49934 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:09.708596945 CEST | 49934 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:09.725363016 CEST | 80 | 49934 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:09.817987919 CEST | 80 | 49934 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:09.818270922 CEST | 49934 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:09.824237108 CEST | 80 | 49934 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:09.825880051 CEST | 49934 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:09.834178925 CEST | 80 | 49934 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:11.111516953 CEST | 49935 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:11.128560066 CEST | 80 | 49935 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:11.128685951 CEST | 49935 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:11.132683992 CEST | 49935 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:11.148691893 CEST | 80 | 49935 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:11.148772955 CEST | 49935 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:11.164693117 CEST | 80 | 49935 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:11.253345966 CEST | 80 | 49935 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:11.253588915 CEST | 49935 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:11.260863066 CEST | 80 | 49935 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:11.261008024 CEST | 49935 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:11.269543886 CEST | 80 | 49935 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:13.047015905 CEST | 49936 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:13.062793016 CEST | 80 | 49936 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:13.062900066 CEST | 49936 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:13.066123962 CEST | 49936 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:13.081862926 CEST | 80 | 49936 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:13.081940889 CEST | 49936 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:13.097646952 CEST | 80 | 49936 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:13.193157911 CEST | 80 | 49936 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:13.195264101 CEST | 80 | 49936 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:13.198723078 CEST | 49936 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:13.230622053 CEST | 49936 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:13.246449947 CEST | 80 | 49936 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:15.316350937 CEST | 49937 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:15.332472086 CEST | 80 | 49937 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:15.332616091 CEST | 49937 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:15.336416006 CEST | 49937 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:15.352440119 CEST | 80 | 49937 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:15.352566957 CEST | 49937 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:15.368554115 CEST | 80 | 49937 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:15.454026937 CEST | 80 | 49937 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:15.454349041 CEST | 49937 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:15.456326962 CEST | 80 | 49937 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:15.456449032 CEST | 49937 | 80 | 192.168.2.6 | 104.21.62.32 |
Oct 14, 2021 08:30:15.472640038 CEST | 80 | 49937 | 104.21.62.32 | 192.168.2.6 |
Oct 14, 2021 08:30:16.661818027 CEST | 49938 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:16.677809000 CEST | 80 | 49938 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:16.678704977 CEST | 49938 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:16.682401896 CEST | 49938 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:16.698379040 CEST | 80 | 49938 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:16.698534966 CEST | 49938 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:16.717287064 CEST | 80 | 49938 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:16.810215950 CEST | 80 | 49938 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:16.810472965 CEST | 49938 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:16.816035986 CEST | 80 | 49938 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:16.816134930 CEST | 49938 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:16.826240063 CEST | 80 | 49938 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:18.292490959 CEST | 49939 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:18.308475971 CEST | 80 | 49939 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:18.308703899 CEST | 49939 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:18.312437057 CEST | 49939 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:18.328185081 CEST | 80 | 49939 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:18.328321934 CEST | 49939 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:18.344182968 CEST | 80 | 49939 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:18.426697016 CEST | 80 | 49939 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:18.427007914 CEST | 49939 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:18.430502892 CEST | 80 | 49939 | 172.67.219.104 | 192.168.2.6 |
Oct 14, 2021 08:30:18.430712938 CEST | 49939 | 80 | 192.168.2.6 | 172.67.219.104 |
Oct 14, 2021 08:30:18.443008900 CEST | 80 | 49939 | 172.67.219.104 | 192.168.2.6 |
UDP Packets |
---|
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Oct 14, 2021 08:28:18.981506109 CEST | 60342 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:19.010951996 CEST | 53 | 60342 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:20.304617882 CEST | 61346 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:20.325933933 CEST | 53 | 61346 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:21.290359974 CEST | 51774 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:21.317846060 CEST | 53 | 51774 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:22.530085087 CEST | 56023 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:22.570988894 CEST | 53 | 56023 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:23.741621971 CEST | 58384 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:23.760160923 CEST | 53 | 58384 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:24.836807966 CEST | 60261 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:24.865097046 CEST | 53 | 60261 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:25.974273920 CEST | 56061 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:26.003031015 CEST | 53 | 56061 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:27.298286915 CEST | 58336 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:27.316716909 CEST | 53 | 58336 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:30.236521959 CEST | 53781 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:30.266340971 CEST | 53 | 53781 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:31.345115900 CEST | 54064 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:31.363276005 CEST | 53 | 54064 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:32.470803976 CEST | 52811 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:32.486987114 CEST | 53 | 52811 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:33.632031918 CEST | 55299 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:33.648431063 CEST | 53 | 55299 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:34.851088047 CEST | 63745 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:34.869492054 CEST | 53 | 63745 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:35.953857899 CEST | 50055 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:35.970498085 CEST | 53 | 50055 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:37.063189983 CEST | 61374 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:37.092448950 CEST | 53 | 61374 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:38.346430063 CEST | 50339 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:38.365737915 CEST | 53 | 50339 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:39.473190069 CEST | 63307 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:39.491631031 CEST | 53 | 63307 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:41.046897888 CEST | 54982 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:41.065442085 CEST | 53 | 54982 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:42.234715939 CEST | 50010 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:42.252979994 CEST | 53 | 50010 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:43.827435970 CEST | 63718 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:43.845922947 CEST | 53 | 63718 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:45.159775019 CEST | 62116 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:45.178029060 CEST | 53 | 62116 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:48.000888109 CEST | 63816 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:48.019318104 CEST | 53 | 63816 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:49.619648933 CEST | 55014 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:49.638375998 CEST | 53 | 55014 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:50.931046009 CEST | 62208 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:50.949512959 CEST | 53 | 62208 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:52.281750917 CEST | 57574 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:52.300395012 CEST | 53 | 57574 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:53.526912928 CEST | 51818 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:53.543016911 CEST | 53 | 51818 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:54.606945038 CEST | 56628 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:54.625006914 CEST | 53 | 56628 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:56.038455963 CEST | 60778 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:56.054569006 CEST | 53 | 60778 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:57.478297949 CEST | 54683 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:57.496562958 CEST | 53 | 54683 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:28:58.838350058 CEST | 59329 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:28:58.857067108 CEST | 53 | 59329 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:00.261539936 CEST | 64021 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:00.278069973 CEST | 53 | 64021 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:01.621984959 CEST | 56129 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:01.640744925 CEST | 53 | 56129 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:03.038508892 CEST | 58177 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:03.056396961 CEST | 53 | 58177 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:06.114991903 CEST | 50700 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:06.133622885 CEST | 53 | 50700 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:07.492008924 CEST | 54069 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:07.510478020 CEST | 53 | 54069 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:08.682867050 CEST | 61178 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:08.701395035 CEST | 53 | 61178 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:09.870501995 CEST | 50243 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:09.889010906 CEST | 53 | 50243 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:11.079993010 CEST | 55066 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:11.098392010 CEST | 53 | 55066 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:12.308362961 CEST | 58454 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:12.326812029 CEST | 53 | 58454 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:13.616075993 CEST | 57691 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:13.634321928 CEST | 53 | 57691 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:15.094715118 CEST | 59489 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:15.112957954 CEST | 53 | 59489 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:16.619941950 CEST | 64022 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:16.638273001 CEST | 53 | 64022 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:17.969158888 CEST | 60023 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:17.987740993 CEST | 53 | 60023 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:20.357798100 CEST | 57193 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:20.374650002 CEST | 53 | 57193 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:21.776597023 CEST | 64413 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:21.795156002 CEST | 53 | 64413 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:23.380697966 CEST | 60429 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:23.396900892 CEST | 53 | 60429 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:27.428143978 CEST | 60345 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:27.445975065 CEST | 53 | 60345 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:29.608062983 CEST | 58730 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:29.624861002 CEST | 53 | 58730 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:31.696376085 CEST | 53830 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:31.713087082 CEST | 53 | 53830 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:32.966362000 CEST | 57226 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:32.984905005 CEST | 53 | 57226 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:35.225338936 CEST | 57880 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:35.243751049 CEST | 53 | 57880 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:36.929517031 CEST | 60850 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:36.947783947 CEST | 53 | 60850 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:38.099759102 CEST | 55830 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:38.117574930 CEST | 53 | 55830 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:39.331229925 CEST | 55145 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:39.349596024 CEST | 53 | 55145 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:40.663470984 CEST | 64091 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:40.681256056 CEST | 53 | 64091 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:41.832782984 CEST | 55728 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:41.851002932 CEST | 53 | 55728 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:43.238637924 CEST | 55694 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:43.256962061 CEST | 53 | 55694 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:44.388569117 CEST | 53926 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:44.406697989 CEST | 53 | 53926 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:45.724782944 CEST | 65531 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:45.741152048 CEST | 53 | 65531 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:46.881611109 CEST | 65437 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:46.900079012 CEST | 53 | 65437 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:48.011307001 CEST | 54590 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:48.029814005 CEST | 53 | 54590 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:49.280458927 CEST | 51318 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:49.299062967 CEST | 53 | 51318 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:51.840734005 CEST | 58474 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:51.858999968 CEST | 53 | 58474 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:55.796895981 CEST | 59092 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:55.815201998 CEST | 53 | 59092 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:56.924676895 CEST | 57483 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:56.942806959 CEST | 53 | 57483 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:58.030971050 CEST | 53830 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:58.047533989 CEST | 53 | 53830 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:29:59.187026978 CEST | 49809 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:29:59.205523968 CEST | 53 | 49809 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:00.267366886 CEST | 52814 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:00.285648108 CEST | 53 | 52814 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:01.374663115 CEST | 51069 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:01.393187046 CEST | 53 | 51069 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:02.507575035 CEST | 56526 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:02.525789976 CEST | 53 | 56526 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:03.656306028 CEST | 50512 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:03.674351931 CEST | 53 | 50512 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:04.837879896 CEST | 51679 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:04.856111050 CEST | 53 | 51679 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:05.918864965 CEST | 56071 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:05.935167074 CEST | 53 | 56071 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:07.100869894 CEST | 58950 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:07.119254112 CEST | 53 | 58950 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:08.397211075 CEST | 57035 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:08.415246964 CEST | 53 | 57035 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:09.653837919 CEST | 54122 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:09.670599937 CEST | 53 | 54122 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:11.092576981 CEST | 56759 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:11.109034061 CEST | 53 | 56759 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:12.873286009 CEST | 59220 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:12.891690969 CEST | 53 | 59220 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:15.296228886 CEST | 62211 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:15.314672947 CEST | 53 | 62211 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:16.637487888 CEST | 62033 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:16.658160925 CEST | 53 | 62033 | 8.8.8.8 | 192.168.2.6 |
Oct 14, 2021 08:30:18.273524046 CEST | 61244 | 53 | 192.168.2.6 | 8.8.8.8 |
Oct 14, 2021 08:30:18.291595936 CEST | 53 | 61244 | 8.8.8.8 | 192.168.2.6 |
DNS Queries |
---|
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class |
---|---|---|---|---|---|---|---|
Oct 14, 2021 08:28:18.981506109 CEST | 192.168.2.6 | 8.8.8.8 | 0x9641 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:20.304617882 CEST | 192.168.2.6 | 8.8.8.8 | 0xcfd3 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:21.290359974 CEST | 192.168.2.6 | 8.8.8.8 | 0x66b6 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:22.530085087 CEST | 192.168.2.6 | 8.8.8.8 | 0x7b38 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:23.741621971 CEST | 192.168.2.6 | 8.8.8.8 | 0x65d8 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:24.836807966 CEST | 192.168.2.6 | 8.8.8.8 | 0xc6ba | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:25.974273920 CEST | 192.168.2.6 | 8.8.8.8 | 0xa520 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:27.298286915 CEST | 192.168.2.6 | 8.8.8.8 | 0x111e | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:30.236521959 CEST | 192.168.2.6 | 8.8.8.8 | 0x868 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:31.345115900 CEST | 192.168.2.6 | 8.8.8.8 | 0xe6ee | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:32.470803976 CEST | 192.168.2.6 | 8.8.8.8 | 0x3d76 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:33.632031918 CEST | 192.168.2.6 | 8.8.8.8 | 0x69a5 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:34.851088047 CEST | 192.168.2.6 | 8.8.8.8 | 0x38b | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:35.953857899 CEST | 192.168.2.6 | 8.8.8.8 | 0xc4a | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:37.063189983 CEST | 192.168.2.6 | 8.8.8.8 | 0x7d39 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:38.346430063 CEST | 192.168.2.6 | 8.8.8.8 | 0xe711 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:39.473190069 CEST | 192.168.2.6 | 8.8.8.8 | 0x25ef | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:41.046897888 CEST | 192.168.2.6 | 8.8.8.8 | 0x4f40 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:42.234715939 CEST | 192.168.2.6 | 8.8.8.8 | 0x6b50 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:43.827435970 CEST | 192.168.2.6 | 8.8.8.8 | 0xcc8c | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:45.159775019 CEST | 192.168.2.6 | 8.8.8.8 | 0xae8b | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:48.000888109 CEST | 192.168.2.6 | 8.8.8.8 | 0xd0fe | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:49.619648933 CEST | 192.168.2.6 | 8.8.8.8 | 0x1cfe | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:50.931046009 CEST | 192.168.2.6 | 8.8.8.8 | 0x2f14 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:52.281750917 CEST | 192.168.2.6 | 8.8.8.8 | 0x9b51 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:53.526912928 CEST | 192.168.2.6 | 8.8.8.8 | 0x9b5c | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:54.606945038 CEST | 192.168.2.6 | 8.8.8.8 | 0xfaf | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:56.038455963 CEST | 192.168.2.6 | 8.8.8.8 | 0xc5d7 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:57.478297949 CEST | 192.168.2.6 | 8.8.8.8 | 0x7539 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:28:58.838350058 CEST | 192.168.2.6 | 8.8.8.8 | 0xcc85 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:00.261539936 CEST | 192.168.2.6 | 8.8.8.8 | 0xca48 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:01.621984959 CEST | 192.168.2.6 | 8.8.8.8 | 0x41fe | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:03.038508892 CEST | 192.168.2.6 | 8.8.8.8 | 0x76cb | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:06.114991903 CEST | 192.168.2.6 | 8.8.8.8 | 0xe495 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:07.492008924 CEST | 192.168.2.6 | 8.8.8.8 | 0xc716 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:08.682867050 CEST | 192.168.2.6 | 8.8.8.8 | 0x56ca | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:09.870501995 CEST | 192.168.2.6 | 8.8.8.8 | 0xad00 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:11.079993010 CEST | 192.168.2.6 | 8.8.8.8 | 0xfca0 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:12.308362961 CEST | 192.168.2.6 | 8.8.8.8 | 0xce7c | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:13.616075993 CEST | 192.168.2.6 | 8.8.8.8 | 0xb217 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:15.094715118 CEST | 192.168.2.6 | 8.8.8.8 | 0x1e24 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:16.619941950 CEST | 192.168.2.6 | 8.8.8.8 | 0xce2a | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:17.969158888 CEST | 192.168.2.6 | 8.8.8.8 | 0xf846 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:20.357798100 CEST | 192.168.2.6 | 8.8.8.8 | 0xfa06 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:21.776597023 CEST | 192.168.2.6 | 8.8.8.8 | 0xc8c9 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:23.380697966 CEST | 192.168.2.6 | 8.8.8.8 | 0x4036 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:27.428143978 CEST | 192.168.2.6 | 8.8.8.8 | 0x9f87 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:29.608062983 CEST | 192.168.2.6 | 8.8.8.8 | 0xf256 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:31.696376085 CEST | 192.168.2.6 | 8.8.8.8 | 0xb97a | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:32.966362000 CEST | 192.168.2.6 | 8.8.8.8 | 0xe4c9 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:35.225338936 CEST | 192.168.2.6 | 8.8.8.8 | 0x3787 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:36.929517031 CEST | 192.168.2.6 | 8.8.8.8 | 0x493 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:38.099759102 CEST | 192.168.2.6 | 8.8.8.8 | 0x3e93 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:39.331229925 CEST | 192.168.2.6 | 8.8.8.8 | 0x6c70 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:40.663470984 CEST | 192.168.2.6 | 8.8.8.8 | 0x37c8 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:41.832782984 CEST | 192.168.2.6 | 8.8.8.8 | 0x82b7 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:43.238637924 CEST | 192.168.2.6 | 8.8.8.8 | 0xed11 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:44.388569117 CEST | 192.168.2.6 | 8.8.8.8 | 0xcc0d | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:45.724782944 CEST | 192.168.2.6 | 8.8.8.8 | 0x5ccf | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:46.881611109 CEST | 192.168.2.6 | 8.8.8.8 | 0x83f | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:48.011307001 CEST | 192.168.2.6 | 8.8.8.8 | 0x69c5 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:49.280458927 CEST | 192.168.2.6 | 8.8.8.8 | 0x6449 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:51.840734005 CEST | 192.168.2.6 | 8.8.8.8 | 0x6899 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:55.796895981 CEST | 192.168.2.6 | 8.8.8.8 | 0xdfe6 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:56.924676895 CEST | 192.168.2.6 | 8.8.8.8 | 0xdd17 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:58.030971050 CEST | 192.168.2.6 | 8.8.8.8 | 0xb23 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:29:59.187026978 CEST | 192.168.2.6 | 8.8.8.8 | 0x4332 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:00.267366886 CEST | 192.168.2.6 | 8.8.8.8 | 0x4e | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:01.374663115 CEST | 192.168.2.6 | 8.8.8.8 | 0xbb96 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:02.507575035 CEST | 192.168.2.6 | 8.8.8.8 | 0x9297 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:03.656306028 CEST | 192.168.2.6 | 8.8.8.8 | 0x202f | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:04.837879896 CEST | 192.168.2.6 | 8.8.8.8 | 0x89b0 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:05.918864965 CEST | 192.168.2.6 | 8.8.8.8 | 0xe22d | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:07.100869894 CEST | 192.168.2.6 | 8.8.8.8 | 0x1524 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:08.397211075 CEST | 192.168.2.6 | 8.8.8.8 | 0x1ae7 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:09.653837919 CEST | 192.168.2.6 | 8.8.8.8 | 0xbc15 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:11.092576981 CEST | 192.168.2.6 | 8.8.8.8 | 0xdd1 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:12.873286009 CEST | 192.168.2.6 | 8.8.8.8 | 0x11e2 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:15.296228886 CEST | 192.168.2.6 | 8.8.8.8 | 0x9cc | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:16.637487888 CEST | 192.168.2.6 | 8.8.8.8 | 0x2770 | Standard query (0) | A (IP address) | IN (0x0001) | |
Oct 14, 2021 08:30:18.273524046 CEST | 192.168.2.6 | 8.8.8.8 | 0x6e34 | Standard query (0) | A (IP address) | IN (0x0001) |
DNS Answers |
---|
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class |
---|---|---|---|---|---|---|---|---|---|
Oct 14, 2021 08:28:19.010951996 CEST | 8.8.8.8 | 192.168.2.6 | 0x9641 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:19.010951996 CEST | 8.8.8.8 | 192.168.2.6 | 0x9641 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:20.325933933 CEST | 8.8.8.8 | 192.168.2.6 | 0xcfd3 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:20.325933933 CEST | 8.8.8.8 | 192.168.2.6 | 0xcfd3 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:21.317846060 CEST | 8.8.8.8 | 192.168.2.6 | 0x66b6 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:21.317846060 CEST | 8.8.8.8 | 192.168.2.6 | 0x66b6 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:22.570988894 CEST | 8.8.8.8 | 192.168.2.6 | 0x7b38 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:22.570988894 CEST | 8.8.8.8 | 192.168.2.6 | 0x7b38 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:23.760160923 CEST | 8.8.8.8 | 192.168.2.6 | 0x65d8 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:23.760160923 CEST | 8.8.8.8 | 192.168.2.6 | 0x65d8 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:24.865097046 CEST | 8.8.8.8 | 192.168.2.6 | 0xc6ba | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:24.865097046 CEST | 8.8.8.8 | 192.168.2.6 | 0xc6ba | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:26.003031015 CEST | 8.8.8.8 | 192.168.2.6 | 0xa520 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:26.003031015 CEST | 8.8.8.8 | 192.168.2.6 | 0xa520 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:27.316716909 CEST | 8.8.8.8 | 192.168.2.6 | 0x111e | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:27.316716909 CEST | 8.8.8.8 | 192.168.2.6 | 0x111e | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:30.266340971 CEST | 8.8.8.8 | 192.168.2.6 | 0x868 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:30.266340971 CEST | 8.8.8.8 | 192.168.2.6 | 0x868 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:31.363276005 CEST | 8.8.8.8 | 192.168.2.6 | 0xe6ee | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:31.363276005 CEST | 8.8.8.8 | 192.168.2.6 | 0xe6ee | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:32.486987114 CEST | 8.8.8.8 | 192.168.2.6 | 0x3d76 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:32.486987114 CEST | 8.8.8.8 | 192.168.2.6 | 0x3d76 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:33.648431063 CEST | 8.8.8.8 | 192.168.2.6 | 0x69a5 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:33.648431063 CEST | 8.8.8.8 | 192.168.2.6 | 0x69a5 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:34.869492054 CEST | 8.8.8.8 | 192.168.2.6 | 0x38b | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:34.869492054 CEST | 8.8.8.8 | 192.168.2.6 | 0x38b | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:35.970498085 CEST | 8.8.8.8 | 192.168.2.6 | 0xc4a | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:35.970498085 CEST | 8.8.8.8 | 192.168.2.6 | 0xc4a | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:37.092448950 CEST | 8.8.8.8 | 192.168.2.6 | 0x7d39 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:37.092448950 CEST | 8.8.8.8 | 192.168.2.6 | 0x7d39 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:38.365737915 CEST | 8.8.8.8 | 192.168.2.6 | 0xe711 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:38.365737915 CEST | 8.8.8.8 | 192.168.2.6 | 0xe711 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:39.491631031 CEST | 8.8.8.8 | 192.168.2.6 | 0x25ef | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:39.491631031 CEST | 8.8.8.8 | 192.168.2.6 | 0x25ef | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:41.065442085 CEST | 8.8.8.8 | 192.168.2.6 | 0x4f40 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:41.065442085 CEST | 8.8.8.8 | 192.168.2.6 | 0x4f40 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:42.252979994 CEST | 8.8.8.8 | 192.168.2.6 | 0x6b50 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:42.252979994 CEST | 8.8.8.8 | 192.168.2.6 | 0x6b50 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:43.845922947 CEST | 8.8.8.8 | 192.168.2.6 | 0xcc8c | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:43.845922947 CEST | 8.8.8.8 | 192.168.2.6 | 0xcc8c | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:45.178029060 CEST | 8.8.8.8 | 192.168.2.6 | 0xae8b | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:45.178029060 CEST | 8.8.8.8 | 192.168.2.6 | 0xae8b | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:48.019318104 CEST | 8.8.8.8 | 192.168.2.6 | 0xd0fe | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:48.019318104 CEST | 8.8.8.8 | 192.168.2.6 | 0xd0fe | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:49.638375998 CEST | 8.8.8.8 | 192.168.2.6 | 0x1cfe | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:49.638375998 CEST | 8.8.8.8 | 192.168.2.6 | 0x1cfe | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:50.949512959 CEST | 8.8.8.8 | 192.168.2.6 | 0x2f14 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:50.949512959 CEST | 8.8.8.8 | 192.168.2.6 | 0x2f14 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:52.300395012 CEST | 8.8.8.8 | 192.168.2.6 | 0x9b51 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:52.300395012 CEST | 8.8.8.8 | 192.168.2.6 | 0x9b51 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:53.543016911 CEST | 8.8.8.8 | 192.168.2.6 | 0x9b5c | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:53.543016911 CEST | 8.8.8.8 | 192.168.2.6 | 0x9b5c | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:54.625006914 CEST | 8.8.8.8 | 192.168.2.6 | 0xfaf | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:54.625006914 CEST | 8.8.8.8 | 192.168.2.6 | 0xfaf | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:56.054569006 CEST | 8.8.8.8 | 192.168.2.6 | 0xc5d7 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:56.054569006 CEST | 8.8.8.8 | 192.168.2.6 | 0xc5d7 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:57.496562958 CEST | 8.8.8.8 | 192.168.2.6 | 0x7539 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:57.496562958 CEST | 8.8.8.8 | 192.168.2.6 | 0x7539 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:58.857067108 CEST | 8.8.8.8 | 192.168.2.6 | 0xcc85 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:28:58.857067108 CEST | 8.8.8.8 | 192.168.2.6 | 0xcc85 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:00.278069973 CEST | 8.8.8.8 | 192.168.2.6 | 0xca48 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:00.278069973 CEST | 8.8.8.8 | 192.168.2.6 | 0xca48 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:01.640744925 CEST | 8.8.8.8 | 192.168.2.6 | 0x41fe | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:01.640744925 CEST | 8.8.8.8 | 192.168.2.6 | 0x41fe | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:03.056396961 CEST | 8.8.8.8 | 192.168.2.6 | 0x76cb | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:03.056396961 CEST | 8.8.8.8 | 192.168.2.6 | 0x76cb | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:06.133622885 CEST | 8.8.8.8 | 192.168.2.6 | 0xe495 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:06.133622885 CEST | 8.8.8.8 | 192.168.2.6 | 0xe495 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:07.510478020 CEST | 8.8.8.8 | 192.168.2.6 | 0xc716 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:07.510478020 CEST | 8.8.8.8 | 192.168.2.6 | 0xc716 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:08.701395035 CEST | 8.8.8.8 | 192.168.2.6 | 0x56ca | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:08.701395035 CEST | 8.8.8.8 | 192.168.2.6 | 0x56ca | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:09.889010906 CEST | 8.8.8.8 | 192.168.2.6 | 0xad00 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:09.889010906 CEST | 8.8.8.8 | 192.168.2.6 | 0xad00 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:11.098392010 CEST | 8.8.8.8 | 192.168.2.6 | 0xfca0 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:11.098392010 CEST | 8.8.8.8 | 192.168.2.6 | 0xfca0 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:12.326812029 CEST | 8.8.8.8 | 192.168.2.6 | 0xce7c | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:12.326812029 CEST | 8.8.8.8 | 192.168.2.6 | 0xce7c | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:13.634321928 CEST | 8.8.8.8 | 192.168.2.6 | 0xb217 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:13.634321928 CEST | 8.8.8.8 | 192.168.2.6 | 0xb217 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:15.112957954 CEST | 8.8.8.8 | 192.168.2.6 | 0x1e24 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:15.112957954 CEST | 8.8.8.8 | 192.168.2.6 | 0x1e24 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:16.638273001 CEST | 8.8.8.8 | 192.168.2.6 | 0xce2a | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:16.638273001 CEST | 8.8.8.8 | 192.168.2.6 | 0xce2a | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:17.987740993 CEST | 8.8.8.8 | 192.168.2.6 | 0xf846 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:17.987740993 CEST | 8.8.8.8 | 192.168.2.6 | 0xf846 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:20.374650002 CEST | 8.8.8.8 | 192.168.2.6 | 0xfa06 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:20.374650002 CEST | 8.8.8.8 | 192.168.2.6 | 0xfa06 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:21.795156002 CEST | 8.8.8.8 | 192.168.2.6 | 0xc8c9 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:21.795156002 CEST | 8.8.8.8 | 192.168.2.6 | 0xc8c9 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:23.396900892 CEST | 8.8.8.8 | 192.168.2.6 | 0x4036 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:23.396900892 CEST | 8.8.8.8 | 192.168.2.6 | 0x4036 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:27.445975065 CEST | 8.8.8.8 | 192.168.2.6 | 0x9f87 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:27.445975065 CEST | 8.8.8.8 | 192.168.2.6 | 0x9f87 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:29.624861002 CEST | 8.8.8.8 | 192.168.2.6 | 0xf256 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:29.624861002 CEST | 8.8.8.8 | 192.168.2.6 | 0xf256 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:31.713087082 CEST | 8.8.8.8 | 192.168.2.6 | 0xb97a | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:31.713087082 CEST | 8.8.8.8 | 192.168.2.6 | 0xb97a | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:32.984905005 CEST | 8.8.8.8 | 192.168.2.6 | 0xe4c9 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:32.984905005 CEST | 8.8.8.8 | 192.168.2.6 | 0xe4c9 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:35.243751049 CEST | 8.8.8.8 | 192.168.2.6 | 0x3787 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:35.243751049 CEST | 8.8.8.8 | 192.168.2.6 | 0x3787 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:36.947783947 CEST | 8.8.8.8 | 192.168.2.6 | 0x493 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:36.947783947 CEST | 8.8.8.8 | 192.168.2.6 | 0x493 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:38.117574930 CEST | 8.8.8.8 | 192.168.2.6 | 0x3e93 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:38.117574930 CEST | 8.8.8.8 | 192.168.2.6 | 0x3e93 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:39.349596024 CEST | 8.8.8.8 | 192.168.2.6 | 0x6c70 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:39.349596024 CEST | 8.8.8.8 | 192.168.2.6 | 0x6c70 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:40.681256056 CEST | 8.8.8.8 | 192.168.2.6 | 0x37c8 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:40.681256056 CEST | 8.8.8.8 | 192.168.2.6 | 0x37c8 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:41.851002932 CEST | 8.8.8.8 | 192.168.2.6 | 0x82b7 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:41.851002932 CEST | 8.8.8.8 | 192.168.2.6 | 0x82b7 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:43.256962061 CEST | 8.8.8.8 | 192.168.2.6 | 0xed11 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:43.256962061 CEST | 8.8.8.8 | 192.168.2.6 | 0xed11 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:44.406697989 CEST | 8.8.8.8 | 192.168.2.6 | 0xcc0d | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:44.406697989 CEST | 8.8.8.8 | 192.168.2.6 | 0xcc0d | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:45.741152048 CEST | 8.8.8.8 | 192.168.2.6 | 0x5ccf | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:45.741152048 CEST | 8.8.8.8 | 192.168.2.6 | 0x5ccf | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:46.900079012 CEST | 8.8.8.8 | 192.168.2.6 | 0x83f | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:46.900079012 CEST | 8.8.8.8 | 192.168.2.6 | 0x83f | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:48.029814005 CEST | 8.8.8.8 | 192.168.2.6 | 0x69c5 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:48.029814005 CEST | 8.8.8.8 | 192.168.2.6 | 0x69c5 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:49.299062967 CEST | 8.8.8.8 | 192.168.2.6 | 0x6449 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:49.299062967 CEST | 8.8.8.8 | 192.168.2.6 | 0x6449 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:51.858999968 CEST | 8.8.8.8 | 192.168.2.6 | 0x6899 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:51.858999968 CEST | 8.8.8.8 | 192.168.2.6 | 0x6899 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:55.815201998 CEST | 8.8.8.8 | 192.168.2.6 | 0xdfe6 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:55.815201998 CEST | 8.8.8.8 | 192.168.2.6 | 0xdfe6 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:56.942806959 CEST | 8.8.8.8 | 192.168.2.6 | 0xdd17 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:56.942806959 CEST | 8.8.8.8 | 192.168.2.6 | 0xdd17 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:58.047533989 CEST | 8.8.8.8 | 192.168.2.6 | 0xb23 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:58.047533989 CEST | 8.8.8.8 | 192.168.2.6 | 0xb23 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:59.205523968 CEST | 8.8.8.8 | 192.168.2.6 | 0x4332 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:29:59.205523968 CEST | 8.8.8.8 | 192.168.2.6 | 0x4332 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:00.285648108 CEST | 8.8.8.8 | 192.168.2.6 | 0x4e | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:00.285648108 CEST | 8.8.8.8 | 192.168.2.6 | 0x4e | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:01.393187046 CEST | 8.8.8.8 | 192.168.2.6 | 0xbb96 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:01.393187046 CEST | 8.8.8.8 | 192.168.2.6 | 0xbb96 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:02.525789976 CEST | 8.8.8.8 | 192.168.2.6 | 0x9297 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:02.525789976 CEST | 8.8.8.8 | 192.168.2.6 | 0x9297 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:03.674351931 CEST | 8.8.8.8 | 192.168.2.6 | 0x202f | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:03.674351931 CEST | 8.8.8.8 | 192.168.2.6 | 0x202f | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:04.856111050 CEST | 8.8.8.8 | 192.168.2.6 | 0x89b0 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:04.856111050 CEST | 8.8.8.8 | 192.168.2.6 | 0x89b0 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:05.935167074 CEST | 8.8.8.8 | 192.168.2.6 | 0xe22d | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:05.935167074 CEST | 8.8.8.8 | 192.168.2.6 | 0xe22d | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:07.119254112 CEST | 8.8.8.8 | 192.168.2.6 | 0x1524 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:07.119254112 CEST | 8.8.8.8 | 192.168.2.6 | 0x1524 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:08.415246964 CEST | 8.8.8.8 | 192.168.2.6 | 0x1ae7 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:08.415246964 CEST | 8.8.8.8 | 192.168.2.6 | 0x1ae7 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:09.670599937 CEST | 8.8.8.8 | 192.168.2.6 | 0xbc15 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:09.670599937 CEST | 8.8.8.8 | 192.168.2.6 | 0xbc15 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:11.109034061 CEST | 8.8.8.8 | 192.168.2.6 | 0xdd1 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:11.109034061 CEST | 8.8.8.8 | 192.168.2.6 | 0xdd1 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:12.891690969 CEST | 8.8.8.8 | 192.168.2.6 | 0x11e2 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:12.891690969 CEST | 8.8.8.8 | 192.168.2.6 | 0x11e2 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:15.314672947 CEST | 8.8.8.8 | 192.168.2.6 | 0x9cc | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:15.314672947 CEST | 8.8.8.8 | 192.168.2.6 | 0x9cc | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:16.658160925 CEST | 8.8.8.8 | 192.168.2.6 | 0x2770 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:16.658160925 CEST | 8.8.8.8 | 192.168.2.6 | 0x2770 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:18.291595936 CEST | 8.8.8.8 | 192.168.2.6 | 0x6e34 | No error (0) | 172.67.219.104 | A (IP address) | IN (0x0001) | ||
Oct 14, 2021 08:30:18.291595936 CEST | 8.8.8.8 | 192.168.2.6 | 0x6e34 | No error (0) | 104.21.62.32 | A (IP address) | IN (0x0001) |
HTTP Request Dependency Graph |
---|
|
HTTP Packets |
---|
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
0 | 192.168.2.6 | 49779 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:19.047157049 CEST | 1054 | OUT | |
Oct 14, 2021 08:28:19.063373089 CEST | 1054 | OUT | |
Oct 14, 2021 08:28:19.209945917 CEST | 1055 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
1 | 192.168.2.6 | 49780 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:20.347126961 CEST | 1056 | OUT | |
Oct 14, 2021 08:28:20.363467932 CEST | 1056 | OUT | |
Oct 14, 2021 08:28:20.460792065 CEST | 1057 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
10 | 192.168.2.6 | 49789 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:32.511259079 CEST | 1074 | OUT | |
Oct 14, 2021 08:28:32.527611971 CEST | 1074 | OUT | |
Oct 14, 2021 08:28:32.680007935 CEST | 1075 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
11 | 192.168.2.6 | 49790 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:33.672461987 CEST | 1076 | OUT | |
Oct 14, 2021 08:28:33.689187050 CEST | 1076 | OUT | |
Oct 14, 2021 08:28:33.830368042 CEST | 1077 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
12 | 192.168.2.6 | 49791 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:34.890356064 CEST | 1078 | OUT | |
Oct 14, 2021 08:28:34.906606913 CEST | 1078 | OUT | |
Oct 14, 2021 08:28:35.044509888 CEST | 1079 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
13 | 192.168.2.6 | 49792 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:35.993002892 CEST | 1080 | OUT | |
Oct 14, 2021 08:28:36.008896112 CEST | 1080 | OUT | |
Oct 14, 2021 08:28:36.144937992 CEST | 1081 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
14 | 192.168.2.6 | 49793 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:37.119939089 CEST | 1082 | OUT | |
Oct 14, 2021 08:28:37.136126995 CEST | 1082 | OUT | |
Oct 14, 2021 08:28:37.232311010 CEST | 1083 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
15 | 192.168.2.6 | 49794 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:38.386394024 CEST | 1084 | OUT | |
Oct 14, 2021 08:28:38.402403116 CEST | 1084 | OUT | |
Oct 14, 2021 08:28:38.540837049 CEST | 1085 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
16 | 192.168.2.6 | 49795 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:39.512557030 CEST | 1086 | OUT | |
Oct 14, 2021 08:28:39.528501034 CEST | 1086 | OUT | |
Oct 14, 2021 08:28:39.669177055 CEST | 1088 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
17 | 192.168.2.6 | 49798 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:41.105942011 CEST | 1107 | OUT | |
Oct 14, 2021 08:28:41.121790886 CEST | 1107 | OUT | |
Oct 14, 2021 08:28:41.219671965 CEST | 1108 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
18 | 192.168.2.6 | 49799 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:42.274934053 CEST | 1109 | OUT | |
Oct 14, 2021 08:28:42.290678978 CEST | 1109 | OUT | |
Oct 14, 2021 08:28:42.387685061 CEST | 1110 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
19 | 192.168.2.6 | 49800 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:43.873245001 CEST | 1111 | OUT | |
Oct 14, 2021 08:28:43.889446020 CEST | 1111 | OUT | |
Oct 14, 2021 08:28:43.996604919 CEST | 1112 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
2 | 192.168.2.6 | 49781 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:21.339482069 CEST | 1058 | OUT | |
Oct 14, 2021 08:28:21.355484962 CEST | 1058 | OUT | |
Oct 14, 2021 08:28:21.535239935 CEST | 1059 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
20 | 192.168.2.6 | 49801 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:45.343358994 CEST | 1113 | OUT | |
Oct 14, 2021 08:28:45.361588955 CEST | 1113 | OUT | |
Oct 14, 2021 08:28:45.464049101 CEST | 1114 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
21 | 192.168.2.6 | 49802 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:48.039638042 CEST | 1115 | OUT | |
Oct 14, 2021 08:28:48.055685043 CEST | 1115 | OUT | |
Oct 14, 2021 08:28:48.163419962 CEST | 1116 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
22 | 192.168.2.6 | 49803 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:49.659260988 CEST | 1117 | OUT | |
Oct 14, 2021 08:28:49.675806999 CEST | 1117 | OUT | |
Oct 14, 2021 08:28:49.774518013 CEST | 1118 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
23 | 192.168.2.6 | 49804 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:50.976326942 CEST | 1119 | OUT | |
Oct 14, 2021 08:28:50.992428064 CEST | 1119 | OUT | |
Oct 14, 2021 08:28:51.090559006 CEST | 1120 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
24 | 192.168.2.6 | 49805 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:52.327367067 CEST | 1121 | OUT | |
Oct 14, 2021 08:28:52.343465090 CEST | 1121 | OUT | |
Oct 14, 2021 08:28:52.449971914 CEST | 1122 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
25 | 192.168.2.6 | 49806 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:53.563440084 CEST | 1123 | OUT | |
Oct 14, 2021 08:28:53.579511881 CEST | 1123 | OUT | |
Oct 14, 2021 08:28:53.674302101 CEST | 1124 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
26 | 192.168.2.6 | 49807 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:54.645978928 CEST | 1125 | OUT | |
Oct 14, 2021 08:28:54.661925077 CEST | 1125 | OUT | |
Oct 14, 2021 08:28:54.761792898 CEST | 1126 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
27 | 192.168.2.6 | 49808 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:56.080095053 CEST | 1127 | OUT | |
Oct 14, 2021 08:28:56.096412897 CEST | 1128 | OUT | |
Oct 14, 2021 08:28:56.196356058 CEST | 1128 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
28 | 192.168.2.6 | 49810 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:57.516459942 CEST | 1131 | OUT | |
Oct 14, 2021 08:28:57.532377005 CEST | 1131 | OUT | |
Oct 14, 2021 08:28:57.630285978 CEST | 1132 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
29 | 192.168.2.6 | 49811 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:58.883204937 CEST | 1133 | OUT | |
Oct 14, 2021 08:28:58.899343967 CEST | 1133 | OUT | |
Oct 14, 2021 08:28:59.036413908 CEST | 1134 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
3 | 192.168.2.6 | 49782 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:22.592927933 CEST | 1060 | OUT | |
Oct 14, 2021 08:28:22.609401941 CEST | 1060 | OUT | |
Oct 14, 2021 08:28:22.751913071 CEST | 1061 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
30 | 192.168.2.6 | 49812 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:00.298238039 CEST | 1135 | OUT | |
Oct 14, 2021 08:29:00.314201117 CEST | 1135 | OUT | |
Oct 14, 2021 08:29:00.410363913 CEST | 1136 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
31 | 192.168.2.6 | 49813 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:01.666924000 CEST | 1137 | OUT | |
Oct 14, 2021 08:29:01.683583975 CEST | 1137 | OUT | |
Oct 14, 2021 08:29:01.827079058 CEST | 1138 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
32 | 192.168.2.6 | 49814 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:03.076479912 CEST | 1139 | OUT | |
Oct 14, 2021 08:29:03.093130112 CEST | 1139 | OUT | |
Oct 14, 2021 08:29:03.214101076 CEST | 1140 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
33 | 192.168.2.6 | 49815 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:06.184636116 CEST | 1141 | OUT | |
Oct 14, 2021 08:29:06.200411081 CEST | 1141 | OUT | |
Oct 14, 2021 08:29:06.302758932 CEST | 1142 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
34 | 192.168.2.6 | 49816 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:07.530339003 CEST | 1143 | OUT | |
Oct 14, 2021 08:29:07.546461105 CEST | 1143 | OUT | |
Oct 14, 2021 08:29:07.646630049 CEST | 1144 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
35 | 192.168.2.6 | 49817 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:08.722565889 CEST | 1145 | OUT | |
Oct 14, 2021 08:29:08.738579988 CEST | 1145 | OUT | |
Oct 14, 2021 08:29:08.835047960 CEST | 1146 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
36 | 192.168.2.6 | 49820 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:09.909565926 CEST | 1225 | OUT | |
Oct 14, 2021 08:29:09.925599098 CEST | 1225 | OUT | |
Oct 14, 2021 08:29:10.033361912 CEST | 1243 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
37 | 192.168.2.6 | 49826 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:11.124121904 CEST | 1373 | OUT | |
Oct 14, 2021 08:29:11.140162945 CEST | 1377 | OUT | |
Oct 14, 2021 08:29:11.252242088 CEST | 1385 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
38 | 192.168.2.6 | 49834 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:12.348795891 CEST | 1557 | OUT | |
Oct 14, 2021 08:29:12.364717007 CEST | 1559 | OUT | |
Oct 14, 2021 08:29:12.488634109 CEST | 1561 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
39 | 192.168.2.6 | 49843 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:13.657084942 CEST | 1800 | OUT | |
Oct 14, 2021 08:29:13.673129082 CEST | 1801 | OUT | |
Oct 14, 2021 08:29:13.770459890 CEST | 1840 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
4 | 192.168.2.6 | 49783 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:23.792481899 CEST | 1062 | OUT | |
Oct 14, 2021 08:28:23.808618069 CEST | 1062 | OUT | |
Oct 14, 2021 08:28:23.945936918 CEST | 1063 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
40 | 192.168.2.6 | 49853 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:15.138021946 CEST | 2098 | OUT | |
Oct 14, 2021 08:29:15.154344082 CEST | 2099 | OUT | |
Oct 14, 2021 08:29:15.258631945 CEST | 2100 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
41 | 192.168.2.6 | 49860 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:16.658468008 CEST | 2114 | OUT | |
Oct 14, 2021 08:29:16.674575090 CEST | 2114 | OUT | |
Oct 14, 2021 08:29:16.772655964 CEST | 2116 | IN | |
Oct 14, 2021 08:29:16.772679090 CEST | 2116 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
42 | 192.168.2.6 | 49863 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:18.009855986 CEST | 2121 | OUT | |
Oct 14, 2021 08:29:18.026037931 CEST | 2121 | OUT | |
Oct 14, 2021 08:29:18.129460096 CEST | 2122 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
43 | 192.168.2.6 | 49864 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:20.400475025 CEST | 2123 | OUT | |
Oct 14, 2021 08:29:20.416629076 CEST | 2123 | OUT | |
Oct 14, 2021 08:29:20.518090010 CEST | 2124 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
44 | 192.168.2.6 | 49870 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:21.825018883 CEST | 2128 | OUT | |
Oct 14, 2021 08:29:21.846321106 CEST | 2128 | OUT | |
Oct 14, 2021 08:29:21.940284967 CEST | 2129 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
45 | 192.168.2.6 | 49871 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:23.419826031 CEST | 3440 | OUT | |
Oct 14, 2021 08:29:23.435642004 CEST | 3513 | OUT | |
Oct 14, 2021 08:29:23.542494059 CEST | 3948 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
46 | 192.168.2.6 | 49872 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:27.468224049 CEST | 7347 | OUT | |
Oct 14, 2021 08:29:27.484252930 CEST | 7347 | OUT | |
Oct 14, 2021 08:29:27.586599112 CEST | 7348 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
47 | 192.168.2.6 | 49873 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:29.646629095 CEST | 7349 | OUT | |
Oct 14, 2021 08:29:29.666580915 CEST | 7349 | OUT | |
Oct 14, 2021 08:29:29.765604973 CEST | 7350 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
48 | 192.168.2.6 | 49875 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:31.734477043 CEST | 7352 | OUT | |
Oct 14, 2021 08:29:31.750525951 CEST | 7352 | OUT | |
Oct 14, 2021 08:29:31.847372055 CEST | 7353 | IN | |
Oct 14, 2021 08:29:31.847683907 CEST | 7353 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
49 | 192.168.2.6 | 49876 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:33.006582975 CEST | 7811 | OUT | |
Oct 14, 2021 08:29:33.022634983 CEST | 7811 | OUT | |
Oct 14, 2021 08:29:33.126630068 CEST | 7812 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
5 | 192.168.2.6 | 49784 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:24.885116100 CEST | 1064 | OUT | |
Oct 14, 2021 08:28:24.901196003 CEST | 1064 | OUT | |
Oct 14, 2021 08:28:25.039886951 CEST | 1065 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
50 | 192.168.2.6 | 49878 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:35.265240908 CEST | 7813 | OUT | |
Oct 14, 2021 08:29:35.281400919 CEST | 7813 | OUT | |
Oct 14, 2021 08:29:35.384254932 CEST | 7814 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
51 | 192.168.2.6 | 49883 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:36.968308926 CEST | 7820 | OUT | |
Oct 14, 2021 08:29:36.985647917 CEST | 7820 | OUT | |
Oct 14, 2021 08:29:37.123816013 CEST | 7823 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
52 | 192.168.2.6 | 49890 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:38.139185905 CEST | 7840 | OUT | |
Oct 14, 2021 08:29:38.155143023 CEST | 7842 | OUT | |
Oct 14, 2021 08:29:38.253525972 CEST | 7844 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
53 | 192.168.2.6 | 49897 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:39.373198032 CEST | 7857 | OUT | |
Oct 14, 2021 08:29:39.391185999 CEST | 7858 | OUT | |
Oct 14, 2021 08:29:39.677830935 CEST | 7861 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
54 | 192.168.2.6 | 49905 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:40.707680941 CEST | 7874 | OUT | |
Oct 14, 2021 08:29:40.724066019 CEST | 7874 | OUT | |
Oct 14, 2021 08:29:40.835604906 CEST | 7876 | IN | |
Oct 14, 2021 08:29:40.835632086 CEST | 7876 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
55 | 192.168.2.6 | 49910 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:41.873661041 CEST | 7887 | OUT | |
Oct 14, 2021 08:29:41.889930010 CEST | 7887 | OUT | |
Oct 14, 2021 08:29:41.995091915 CEST | 7889 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
56 | 192.168.2.6 | 49911 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:43.281959057 CEST | 7889 | OUT | |
Oct 14, 2021 08:29:43.298171997 CEST | 7890 | OUT | |
Oct 14, 2021 08:29:43.452020884 CEST | 7891 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
57 | 192.168.2.6 | 49912 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:44.429017067 CEST | 7891 | OUT | |
Oct 14, 2021 08:29:44.444839001 CEST | 7892 | OUT | |
Oct 14, 2021 08:29:44.601130962 CEST | 7893 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
58 | 192.168.2.6 | 49913 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:45.763144970 CEST | 7894 | OUT | |
Oct 14, 2021 08:29:45.779706001 CEST | 7894 | OUT | |
Oct 14, 2021 08:29:45.873655081 CEST | 7895 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
59 | 192.168.2.6 | 49914 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:46.923367023 CEST | 7896 | OUT | |
Oct 14, 2021 08:29:46.939387083 CEST | 7896 | OUT | |
Oct 14, 2021 08:29:47.043380976 CEST | 7897 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
6 | 192.168.2.6 | 49785 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:26.025161982 CEST | 1066 | OUT | |
Oct 14, 2021 08:28:26.041390896 CEST | 1066 | OUT | |
Oct 14, 2021 08:28:26.179322958 CEST | 1067 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
60 | 192.168.2.6 | 49915 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:48.049870968 CEST | 7898 | OUT | |
Oct 14, 2021 08:29:48.065565109 CEST | 7898 | OUT | |
Oct 14, 2021 08:29:48.166955948 CEST | 7899 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
61 | 192.168.2.6 | 49916 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:49.324402094 CEST | 7900 | OUT | |
Oct 14, 2021 08:29:49.340414047 CEST | 7900 | OUT | |
Oct 14, 2021 08:29:49.441760063 CEST | 7901 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
62 | 192.168.2.6 | 49918 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:51.880553961 CEST | 7910 | OUT | |
Oct 14, 2021 08:29:51.899096966 CEST | 7910 | OUT | |
Oct 14, 2021 08:29:51.998187065 CEST | 7911 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
63 | 192.168.2.6 | 49921 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:55.836602926 CEST | 7917 | OUT | |
Oct 14, 2021 08:29:55.852555990 CEST | 7917 | OUT | |
Oct 14, 2021 08:29:55.948838949 CEST | 7923 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
64 | 192.168.2.6 | 49923 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:56.968339920 CEST | 7926 | OUT | |
Oct 14, 2021 08:29:56.984436989 CEST | 7927 | OUT | |
Oct 14, 2021 08:29:57.081579924 CEST | 7927 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
65 | 192.168.2.6 | 49924 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:58.074973106 CEST | 7928 | OUT | |
Oct 14, 2021 08:29:58.090995073 CEST | 7929 | OUT | |
Oct 14, 2021 08:29:58.188767910 CEST | 7929 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
66 | 192.168.2.6 | 49925 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:29:59.226830959 CEST | 7930 | OUT | |
Oct 14, 2021 08:29:59.242714882 CEST | 7931 | OUT | |
Oct 14, 2021 08:29:59.347254038 CEST | 7932 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
67 | 192.168.2.6 | 49926 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:00.311328888 CEST | 7932 | OUT | |
Oct 14, 2021 08:30:00.327512026 CEST | 7933 | OUT | |
Oct 14, 2021 08:30:00.468617916 CEST | 7933 | IN | |
Oct 14, 2021 08:30:00.469223022 CEST | 7934 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
68 | 192.168.2.6 | 49927 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:01.416466951 CEST | 7935 | OUT | |
Oct 14, 2021 08:30:01.432476044 CEST | 7935 | OUT | |
Oct 14, 2021 08:30:01.529956102 CEST | 7936 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
69 | 192.168.2.6 | 49928 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:02.546683073 CEST | 7937 | OUT | |
Oct 14, 2021 08:30:02.562702894 CEST | 7937 | OUT | |
Oct 14, 2021 08:30:02.660093069 CEST | 7938 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
7 | 192.168.2.6 | 49786 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:27.340971947 CEST | 1068 | OUT | |
Oct 14, 2021 08:28:27.357132912 CEST | 1068 | OUT | |
Oct 14, 2021 08:28:27.495248079 CEST | 1069 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
70 | 192.168.2.6 | 49929 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:03.716522932 CEST | 7939 | OUT | |
Oct 14, 2021 08:30:03.732362986 CEST | 7939 | OUT | |
Oct 14, 2021 08:30:03.830050945 CEST | 7940 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
71 | 192.168.2.6 | 49930 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:04.877321005 CEST | 7941 | OUT | |
Oct 14, 2021 08:30:04.893264055 CEST | 7941 | OUT | |
Oct 14, 2021 08:30:04.995676041 CEST | 7942 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
72 | 192.168.2.6 | 49931 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:05.956295967 CEST | 7943 | OUT | |
Oct 14, 2021 08:30:05.974153042 CEST | 7943 | OUT | |
Oct 14, 2021 08:30:06.071351051 CEST | 7944 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
73 | 192.168.2.6 | 49932 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:07.140644073 CEST | 7945 | OUT | |
Oct 14, 2021 08:30:07.157073021 CEST | 7945 | OUT | |
Oct 14, 2021 08:30:07.263822079 CEST | 7946 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
74 | 192.168.2.6 | 49933 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:08.437280893 CEST | 7947 | OUT | |
Oct 14, 2021 08:30:08.453376055 CEST | 7947 | OUT | |
Oct 14, 2021 08:30:08.602293968 CEST | 7948 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
75 | 192.168.2.6 | 49934 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:09.692348003 CEST | 7949 | OUT | |
Oct 14, 2021 08:30:09.708596945 CEST | 7949 | OUT | |
Oct 14, 2021 08:30:09.817987919 CEST | 7950 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
76 | 192.168.2.6 | 49935 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:11.132683992 CEST | 7951 | OUT | |
Oct 14, 2021 08:30:11.148772955 CEST | 7951 | OUT | |
Oct 14, 2021 08:30:11.253345966 CEST | 7952 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
77 | 192.168.2.6 | 49936 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:13.066123962 CEST | 7953 | OUT | |
Oct 14, 2021 08:30:13.081940889 CEST | 7953 | OUT | |
Oct 14, 2021 08:30:13.193157911 CEST | 7954 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
78 | 192.168.2.6 | 49937 | 104.21.62.32 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:15.336416006 CEST | 7955 | OUT | |
Oct 14, 2021 08:30:15.352566957 CEST | 7955 | OUT | |
Oct 14, 2021 08:30:15.454026937 CEST | 7956 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
79 | 192.168.2.6 | 49938 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:16.682401896 CEST | 7957 | OUT | |
Oct 14, 2021 08:30:16.698534966 CEST | 7957 | OUT | |
Oct 14, 2021 08:30:16.810215950 CEST | 7958 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
8 | 192.168.2.6 | 49787 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:30.289741993 CEST | 1070 | OUT | |
Oct 14, 2021 08:28:30.307250023 CEST | 1070 | OUT | |
Oct 14, 2021 08:28:30.451376915 CEST | 1071 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
80 | 192.168.2.6 | 49939 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:30:18.312437057 CEST | 7959 | OUT | |
Oct 14, 2021 08:30:18.328321934 CEST | 7959 | OUT | |
Oct 14, 2021 08:30:18.426697016 CEST | 7960 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
9 | 192.168.2.6 | 49788 | 172.67.219.104 | 80 | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
Oct 14, 2021 08:28:31.397798061 CEST | 1072 | OUT | |
Oct 14, 2021 08:28:31.413613081 CEST | 1072 | OUT | |
Oct 14, 2021 08:28:31.565464973 CEST | 1073 | IN |
Code Manipulations |
---|
Statistics |
---|
CPU Usage |
---|
Click to jump to process
Memory Usage |
---|
Click to jump to process
High Level Behavior Distribution |
---|
back
Click to dive into process behavior distribution
Behavior |
---|
Click to jump to process
System Behavior |
---|
General |
---|
Start time: | 08:28:10 |
Start date: | 14/10/2021 |
Path: | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x400000 |
File size: | 283552 bytes |
MD5 hash: | 70D177ABC7455C709AE9710630B9EA49 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Reputation: | low |
General |
---|
Start time: | 08:28:12 |
Start date: | 14/10/2021 |
Path: | C:\Users\user\Desktop\aZOmps0Ug8.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x400000 |
File size: | 283552 bytes |
MD5 hash: | 70D177ABC7455C709AE9710630B9EA49 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Reputation: | low |
Disassembly |
---|
Code Analysis |
---|
Executed Functions |
---|
Function 004030FB, Relevance: 80.8, APIs: 26, Strings: 20, Instructions: 315stringfilecomCOMMON
C-Code - Quality: 78% |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004054BD, Relevance: 21.2, APIs: 9, Strings: 3, Instructions: 156filestringCOMMON
C-Code - Quality: 98% |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 98% |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 16% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00405E93, Relevance: 3.0, APIs: 2, Instructions: 14fileCOMMON
C-Code - Quality: 100% |
|
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00403981, Relevance: 58.1, APIs: 32, Strings: 1, Instructions: 345windowstringCOMMON
C-Code - Quality: 84% |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004035EB, Relevance: 47.5, APIs: 13, Strings: 14, Instructions: 215stringregistryCOMMON
C-Code - Quality: 96% |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 80% |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00401751, Relevance: 15.9, APIs: 5, Strings: 4, Instructions: 147stringtimeCOMMON
C-Code - Quality: 60% |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00402E8E, Relevance: 12.4, APIs: 6, Strings: 1, Instructions: 166fileCOMMON
C-Code - Quality: 94% |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 100% |
|
APIs |
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 1001AFE4, Relevance: 10.7, APIs: 5, Strings: 1, Instructions: 237processthreadCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 91% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00405EBA, Relevance: 10.5, APIs: 3, Strings: 3, Instructions: 36libraryCOMMON
C-Code - Quality: 100% |
|
APIs |
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 100% |
|
APIs |
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 1001A7DD, Relevance: 7.7, APIs: 5, Instructions: 186fileCOMMON
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 60% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 87% |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00406609, Relevance: 5.2, APIs: 4, Instructions: 236COMMON
C-Code - Quality: 99% |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0040680A, Relevance: 5.2, APIs: 4, Instructions: 208COMMON
C-Code - Quality: 98% |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00406520, Relevance: 5.2, APIs: 4, Instructions: 205COMMON
C-Code - Quality: 98% |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00406025, Relevance: 5.2, APIs: 4, Instructions: 198COMMON
C-Code - Quality: 98% |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00406473, Relevance: 5.2, APIs: 4, Instructions: 180COMMON
C-Code - Quality: 98% |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00406591, Relevance: 5.2, APIs: 4, Instructions: 170COMMON
C-Code - Quality: 98% |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004064DD, Relevance: 5.2, APIs: 4, Instructions: 168COMMON
C-Code - Quality: 98% |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00401389, Relevance: 3.0, APIs: 2, Instructions: 43windowCOMMON
C-Code - Quality: 69% |
|
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 100% |
|
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0040586F, Relevance: 3.0, APIs: 2, Instructions: 16fileCOMMON
C-Code - Quality: 68% |
|
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00405850, Relevance: 3.0, APIs: 2, Instructions: 9COMMON
C-Code - Quality: 100% |
|
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004053C3, Relevance: 3.0, APIs: 2, Instructions: 9COMMON
C-Code - Quality: 100% |
|
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00403081, Relevance: 1.5, APIs: 1, Instructions: 22fileCOMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004030B3, Relevance: 1.5, APIs: 1, Instructions: 6COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 10008882, Relevance: 1.5, APIs: 1, Instructions: 6COMMON
C-Code - Quality: 25% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Non-executed Functions |
---|
Function 00404FC2, Relevance: 65.0, APIs: 36, Strings: 1, Instructions: 278windowclipboardmemoryCOMMON
C-Code - Quality: 96% |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004047D3, Relevance: 63.5, APIs: 33, Strings: 3, Instructions: 478windowmemoryCOMMONCrypto
C-Code - Quality: 98% |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00404292, Relevance: 23.0, APIs: 10, Strings: 3, Instructions: 273stringCOMMON
C-Code - Quality: 78% |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00402053, Relevance: 5.4, APIs: 2, Strings: 1, Instructions: 134comCOMMON
C-Code - Quality: 74% |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 10009B60, Relevance: 3.0, APIs: 2, Instructions: 8COMMON
C-Code - Quality: 100% |
|
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00402671, Relevance: 1.5, APIs: 1, Instructions: 29fileCOMMON
C-Code - Quality: 39% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 100098C2, Relevance: 1.3, APIs: 1, Instructions: 7memoryCOMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 100066F2, Relevance: .3, Instructions: 345COMMONCrypto
C-Code - Quality: 100% |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 10006B27, Relevance: .3, Instructions: 341COMMONCrypto
C-Code - Quality: 100% |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 100062BD, Relevance: .3, Instructions: 331COMMONCrypto
C-Code - Quality: 100% |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 10005EA5, Relevance: .3, Instructions: 323COMMONCrypto
C-Code - Quality: 100% |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 1001A9FA, Relevance: .2, Instructions: 221COMMON
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 1001AA09, Relevance: .2, Instructions: 213COMMON
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 1001A616, Relevance: .1, Instructions: 61COMMON
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 1001A706, Relevance: .0, Instructions: 26COMMON
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 1001A744, Relevance: .0, Instructions: 23COMMON
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 1001A6C7, Relevance: .0, Instructions: 7COMMON
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00403F9C, Relevance: 40.5, APIs: 20, Strings: 3, Instructions: 204windowstringCOMMON
C-Code - Quality: 93% |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 90% |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004058E6, Relevance: 24.6, APIs: 11, Strings: 3, Instructions: 144filememoryCOMMON
C-Code - Quality: 93% |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00405BBA, Relevance: 19.4, APIs: 8, Strings: 3, Instructions: 197stringCOMMON
C-Code - Quality: 74% |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 100% |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00403EBB, Relevance: 12.1, APIs: 8, Instructions: 61COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 86% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00404753, Relevance: 10.5, APIs: 5, Strings: 1, Instructions: 48windowCOMMON
C-Code - Quality: 100% |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00402B6E, Relevance: 10.5, APIs: 5, Strings: 1, Instructions: 40timeCOMMON
C-Code - Quality: 100% |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00402336, Relevance: 8.8, APIs: 4, Strings: 1, Instructions: 71registrystringCOMMON
C-Code - Quality: 85% |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 84% |
|
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 1000D06A, Relevance: 7.6, APIs: 5, Instructions: 67COMMON
C-Code - Quality: 96% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00401CDE, Relevance: 7.5, APIs: 5, Instructions: 39windowCOMMON
C-Code - Quality: 100% |
|
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00404649, Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 84stringCOMMON
C-Code - Quality: 77% |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 37% |
|
APIs |
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00401BCA, Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 76windowtimeCOMMON
C-Code - Quality: 51% |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 100% |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 10008671, Relevance: 7.0, APIs: 2, Strings: 2, Instructions: 20libraryloaderCOMMON
C-Code - Quality: 16% |
|
APIs |
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0040568B, Relevance: 7.0, APIs: 3, Strings: 1, Instructions: 16stringCOMMON
C-Code - Quality: 100% |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 1000E2CE, Relevance: 6.1, APIs: 4, Instructions: 97COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 1001065B, Relevance: 6.0, APIs: 4, Instructions: 48COMMON
C-Code - Quality: 100% |
|
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00401D38, Relevance: 6.0, APIs: 4, Instructions: 34COMMON
C-Code - Quality: 67% |
|
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00402BF1, Relevance: 6.0, APIs: 4, Instructions: 33COMMON
C-Code - Quality: 100% |
|
APIs |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00404DD4, Relevance: 5.3, APIs: 2, Strings: 1, Instructions: 58windowCOMMON
C-Code - Quality: 100% |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004024F1, Relevance: 5.3, APIs: 2, Strings: 1, Instructions: 34filestringCOMMON
C-Code - Quality: 100% |
|
APIs |
Strings |
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004053F8, Relevance: 5.3, APIs: 2, Strings: 1, Instructions: 24processCOMMON
C-Code - Quality: 100% |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 100% |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004056D2, Relevance: 5.3, APIs: 2, Strings: 1, Instructions: 16stringCOMMON
C-Code - Quality: 100% |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004057E4, Relevance: 5.0, APIs: 4, Instructions: 30stringCOMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Executed Functions |
---|
Function 00403D74, Relevance: 14.2, APIs: 4, Strings: 4, Instructions: 200fileCOMMON
C-Code - Quality: 85% |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 78% |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00406069, Relevance: 1.5, APIs: 1, Instructions: 12COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00404ED4, Relevance: 1.5, APIs: 1, Instructions: 9networkCOMMON
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 75% |
|
APIs |
Strings |
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 37% |
|
APIs |
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004040BB, Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 129filememoryCOMMON
C-Code - Quality: 74% |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00413866, Relevance: 4.6, APIs: 3, Instructions: 147synchronizationCOMMON
C-Code - Quality: 79% |
|
APIs |
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004042CF, Relevance: 4.6, APIs: 3, Instructions: 60fileCOMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00412D31, Relevance: 3.7, APIs: 1, Strings: 1, Instructions: 178threadCOMMON
C-Code - Quality: 34% |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 100% |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 100% |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00402C03, Relevance: 3.5, APIs: 1, Strings: 1, Instructions: 13libraryloaderCOMMON
C-Code - Quality: 100% |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 93% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00402B7C, Relevance: 3.0, APIs: 2, Instructions: 20memoryCOMMON
C-Code - Quality: 100% |
|
APIs |
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00402BAB, Relevance: 3.0, APIs: 2, Instructions: 11memoryCOMMON
C-Code - Quality: 100% |
|
APIs |
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004060BD, Relevance: 1.6, APIs: 1, Instructions: 53COMMON
C-Code - Quality: 40% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00403C62, Relevance: 1.5, APIs: 1, Instructions: 24COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0040642C, Relevance: 1.5, APIs: 1, Instructions: 18COMMON
C-Code - Quality: 37% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 37% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00403BD0, Relevance: 1.5, APIs: 1, Instructions: 14COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 0040427D, Relevance: 1.5, APIs: 1, Instructions: 13COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00403C40, Relevance: 1.5, APIs: 1, Instructions: 12COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00403C08, Relevance: 1.5, APIs: 1, Instructions: 12fileCOMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00403BEF, Relevance: 1.5, APIs: 1, Instructions: 12COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00403BB7, Relevance: 1.5, APIs: 1, Instructions: 12COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00403B64, Relevance: 1.5, APIs: 1, Instructions: 11COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00404DE5, Relevance: 1.5, APIs: 1, Instructions: 6COMMON
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00403F9E, Relevance: 1.3, APIs: 1, Instructions: 16COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00406472, Relevance: 1.3, APIs: 1, Instructions: 12sleepCOMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 004058EA, Relevance: 1.3, APIs: 1, Instructions: 12COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Function 00405924, Relevance: 1.3, APIs: 1, Instructions: 12COMMON
C-Code - Quality: 100% |
|
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
Non-executed Functions |
---|
Function 0040D069, Relevance: 12.6, Strings: 10, Instructions: 138COMMON
C-Code - Quality: 88% |
|
Strings |
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |
APIs |
|
Memory Dump Source |
|
|
Yara matches |
Similarity |
|
Uniqueness |
Uniqueness Score: -1.00% |