You are on page 1of 136

Active Connections

Proto Local Address


TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030

81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED

[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

TCP

10.1.28.0:49992

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP

10.1.28.0:49993

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T

81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com

T
T

ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http

TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http

[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022

zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw

s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Can not obtain ownership information


TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50017
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50018
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50019
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50020
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT

TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50017
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50018
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50019
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP

10.1.28.0:50020

ep-reverse.nimbus.bitdefender.net:https TIME_WA

TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-186-197-235.us-west-2.compute.amazonaws.c

IT
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50017
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT

TCP

10.1.28.0:50018

ep-reverse.nimbus.bitdefender.net:https TIME_WA

TCP

10.1.28.0:50019

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP

10.1.28.0:50020

ep-reverse.nimbus.bitdefender.net:https TIME_WA

TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-186-197-235.us-west-2.compute.amazonaws.c

IT
T
IT
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http

TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

[wininit.exe]
TCP
0.0.0.0:49169
Honock-PC:0
LISTENING
[lsass.exe]
TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T

TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:13681
Honock-PC:0
LISTENING
[Skype.exe]
TCP
0.0.0.0:49168
Honock-PC:0
LISTENING
[wininit.exe]
TCP
0.0.0.0:49169
Honock-PC:0
LISTENING
[lsass.exe]
TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw

s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0
[wmpnetwk.exe]
TCP
0.0.0.0:902
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:912
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:1688
Honock-PC:0
[KMService.exe]
TCP
0.0.0.0:2869
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:5357
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:10243
Honock-PC:0

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

Can not obtain ownership information


TCP
0.0.0.0:12569
Honock-PC:0
LISTENING
[uTorrent.exe]
TCP
0.0.0.0:13681
Honock-PC:0
LISTENING
[Skype.exe]
TCP
0.0.0.0:49168
Honock-PC:0
LISTENING
[wininit.exe]
TCP
0.0.0.0:49169
Honock-PC:0
LISTENING
[lsass.exe]
TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT

TCP

10.1.28.0:50009

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-249-8-166.ap-northeast-1.compute.amazonaw

T
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0
[wmpnetwk.exe]
TCP
0.0.0.0:902
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:912
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:1688
Honock-PC:0
[KMService.exe]
TCP
0.0.0.0:2869
Honock-PC:0
Can not obtain ownership information

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:5357
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
0.0.0.0:10243
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
0.0.0.0:12569
Honock-PC:0
LISTENING
[uTorrent.exe]
TCP
0.0.0.0:13681
Honock-PC:0
LISTENING
[Skype.exe]
TCP
0.0.0.0:49168
Honock-PC:0
LISTENING
[wininit.exe]
TCP
0.0.0.0:49169
Honock-PC:0
LISTENING
[lsass.exe]
TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c

om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0
[wmpnetwk.exe]
TCP
0.0.0.0:902
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:912
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:1688
Honock-PC:0

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0
[wmpnetwk.exe]
TCP
0.0.0.0:902
Honock-PC:0
[vmware-authd.exe]

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com

:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https

TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http

TIME_WAIT

TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80

Foreign Address
Honock-PC:0

State
LISTENING

[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http

TIME_WAIT
TCP
10.1.28.0:49998

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT
Active Connections

ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Proto Local Address


TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http

TIME_WAIT

TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031

ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

84 TIME_WAIT
Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP

10.1.28.0:49993

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029

81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com

ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT

TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

91.190.218.59:12350

ESTABLISHED

cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

[Skype.exe]
TCP
10.1.28.0:49992

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP

10.1.28.0:49993

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027

81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com

ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http

TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http

[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022

zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw

s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Can not obtain ownership information


TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50017
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50018
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50019
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50020
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT

TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50017
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50018
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50019
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP

10.1.28.0:50020

ep-reverse.nimbus.bitdefender.net:https TIME_WA

TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-186-197-235.us-west-2.compute.amazonaws.c

IT
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50017
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT

TCP

10.1.28.0:50018

ep-reverse.nimbus.bitdefender.net:https TIME_WA

TCP

10.1.28.0:50019

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP

10.1.28.0:50020

ep-reverse.nimbus.bitdefender.net:https TIME_WA

TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-186-197-235.us-west-2.compute.amazonaws.c

IT
T
IT
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http

TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

[wininit.exe]
TCP
0.0.0.0:49169
Honock-PC:0
LISTENING
[lsass.exe]
TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T

TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:13681
Honock-PC:0
LISTENING
[Skype.exe]
TCP
0.0.0.0:49168
Honock-PC:0
LISTENING
[wininit.exe]
TCP
0.0.0.0:49169
Honock-PC:0
LISTENING
[lsass.exe]
TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw

s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0
[wmpnetwk.exe]
TCP
0.0.0.0:902
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:912
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:1688
Honock-PC:0
[KMService.exe]
TCP
0.0.0.0:2869
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:5357
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:10243
Honock-PC:0

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

Can not obtain ownership information


TCP
0.0.0.0:12569
Honock-PC:0
LISTENING
[uTorrent.exe]
TCP
0.0.0.0:13681
Honock-PC:0
LISTENING
[Skype.exe]
TCP
0.0.0.0:49168
Honock-PC:0
LISTENING
[wininit.exe]
TCP
0.0.0.0:49169
Honock-PC:0
LISTENING
[lsass.exe]
TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT

TCP

10.1.28.0:50009

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-249-8-166.ap-northeast-1.compute.amazonaw

T
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0
[wmpnetwk.exe]
TCP
0.0.0.0:902
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:912
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:1688
Honock-PC:0
[KMService.exe]
TCP
0.0.0.0:2869
Honock-PC:0
Can not obtain ownership information

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:5357
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
0.0.0.0:10243
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
0.0.0.0:12569
Honock-PC:0
LISTENING
[uTorrent.exe]
TCP
0.0.0.0:13681
Honock-PC:0
LISTENING
[Skype.exe]
TCP
0.0.0.0:49168
Honock-PC:0
LISTENING
[wininit.exe]
TCP
0.0.0.0:49169
Honock-PC:0
LISTENING
[lsass.exe]
TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c

om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0
[wmpnetwk.exe]
TCP
0.0.0.0:902
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:912
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:1688
Honock-PC:0

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0
[wmpnetwk.exe]
TCP
0.0.0.0:902
Honock-PC:0
[vmware-authd.exe]

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com

:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https

TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http

TIME_WAIT

TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80

Foreign Address
Honock-PC:0

State
LISTENING

[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http

TIME_WAIT
TCP
10.1.28.0:49998

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT
Active Connections

ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Proto Local Address


TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http

TIME_WAIT

TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031

ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

84 TIME_WAIT
Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP

10.1.28.0:49993

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029

81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com

ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT

TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

91.190.218.59:12350

ESTABLISHED

cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

[Skype.exe]
TCP
10.1.28.0:49992

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP

10.1.28.0:49993

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027

81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com

ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http

TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http

[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022

zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw

s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Can not obtain ownership information


TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50017
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50018
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50019
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50020
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT

TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50017
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50018
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50019
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP

10.1.28.0:50020

ep-reverse.nimbus.bitdefender.net:https TIME_WA

TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-186-197-235.us-west-2.compute.amazonaws.c

IT
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50017
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT

TCP

10.1.28.0:50018

ep-reverse.nimbus.bitdefender.net:https TIME_WA

TCP

10.1.28.0:50019

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP

10.1.28.0:50020

ep-reverse.nimbus.bitdefender.net:https TIME_WA

TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-186-197-235.us-west-2.compute.amazonaws.c

IT
T
IT
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http

TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

[wininit.exe]
TCP
0.0.0.0:49169
Honock-PC:0
LISTENING
[lsass.exe]
TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T

TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:13681
Honock-PC:0
LISTENING
[Skype.exe]
TCP
0.0.0.0:49168
Honock-PC:0
LISTENING
[wininit.exe]
TCP
0.0.0.0:49169
Honock-PC:0
LISTENING
[lsass.exe]
TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw

s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0
[wmpnetwk.exe]
TCP
0.0.0.0:902
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:912
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:1688
Honock-PC:0
[KMService.exe]
TCP
0.0.0.0:2869
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:5357
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:10243
Honock-PC:0

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

Can not obtain ownership information


TCP
0.0.0.0:12569
Honock-PC:0
LISTENING
[uTorrent.exe]
TCP
0.0.0.0:13681
Honock-PC:0
LISTENING
[Skype.exe]
TCP
0.0.0.0:49168
Honock-PC:0
LISTENING
[wininit.exe]
TCP
0.0.0.0:49169
Honock-PC:0
LISTENING
[lsass.exe]
TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT

TCP

10.1.28.0:50009

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-249-8-166.ap-northeast-1.compute.amazonaw

T
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0
[wmpnetwk.exe]
TCP
0.0.0.0:902
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:912
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:1688
Honock-PC:0
[KMService.exe]
TCP
0.0.0.0:2869
Honock-PC:0
Can not obtain ownership information

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:5357
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
0.0.0.0:10243
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
0.0.0.0:12569
Honock-PC:0
LISTENING
[uTorrent.exe]
TCP
0.0.0.0:13681
Honock-PC:0
LISTENING
[Skype.exe]
TCP
0.0.0.0:49168
Honock-PC:0
LISTENING
[wininit.exe]
TCP
0.0.0.0:49169
Honock-PC:0
LISTENING
[lsass.exe]
TCP
0.0.0.0:49172
Honock-PC:0
LISTENING
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Honock-PC:0
LISTENING
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
Honock-PC:0
LISTENING
[services.exe]
TCP
0.0.0.0:49350
Honock-PC:0
LISTENING
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c

om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0
[wmpnetwk.exe]
TCP
0.0.0.0:902
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:912
Honock-PC:0
[vmware-authd.exe]
TCP
0.0.0.0:1688
Honock-PC:0

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0
[wmpnetwk.exe]
TCP
0.0.0.0:902
Honock-PC:0
[vmware-authd.exe]

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com

:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
Foreign Address
TCP
0.0.0.0:80
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:135
Honock-PC:0
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
Honock-PC:0
[Skype.exe]
TCP
0.0.0.0:445
Honock-PC:0
Can not obtain ownership information
TCP
0.0.0.0:554
Honock-PC:0

State
LISTENING
LISTENING
LISTENING
LISTENING
LISTENING

[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https

TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http

TIME_WAIT

TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80

Foreign Address
Honock-PC:0

State
LISTENING

[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http

TIME_WAIT
TCP
10.1.28.0:49998

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT
Active Connections

ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Proto Local Address


TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http

TIME_WAIT

TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031

ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

84 TIME_WAIT
Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP

10.1.28.0:49993

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029

81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com

ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT

TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

91.190.218.59:12350

ESTABLISHED

cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

[Skype.exe]
TCP
10.1.28.0:49992

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP

10.1.28.0:49993

ep-reverse.nimbus.bitdefender.net:http TIME_WAI

TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027

81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com

ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http
zeropitarr.ru:https

ESTABLISHED

TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http

TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Can not obtain ownership
TCP
10.1.28.0:49960
ESTABLISHED

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Honock-PC:0
LISTENING
information
ec2-54-235-115-69.compute-1.amazonaws.com:http

[firefox.exe]
TCP
10.1.28.0:49963
[tor.exe]
TCP
10.1.28.0:49967
TIME_WAIT
TCP
10.1.28.0:49973
[Skype.exe]
TCP
10.1.28.0:49992
T
TCP
10.1.28.0:49993
T
TCP
10.1.28.0:49995
TCP
10.1.28.0:49996
:http TIME_WAIT
TCP
10.1.28.0:49997
TIME_WAIT
TCP
10.1.28.0:49998
T
TCP
10.1.28.0:49999
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
TCP
10.1.28.0:50001
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
TIME_WAIT
TCP
10.1.28.0:50003
:http TIME_WAIT
TCP
10.1.28.0:50004
T
TCP
10.1.28.0:50005
TCP
10.1.28.0:50006
TCP
10.1.28.0:50007
om:http TIME_WAIT
TCP
10.1.28.0:50008
TIME_WAIT
TCP
10.1.28.0:50009
T
TCP
10.1.28.0:50010
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
T
TCP
10.1.28.0:50013
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
T
TCP
10.1.28.0:50015
TCP
10.1.28.0:50016
TIME_WAIT
TCP
10.1.28.0:50017
IT
TCP
10.1.28.0:50018
IT
TCP
10.1.28.0:50019
T
TCP
10.1.28.0:50020
IT
TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022

zeropitarr.ru:https

ESTABLISHED

ec2-54-235-115-69.compute-1.amazonaws.com:http
157.55.235.169:33033

ESTABLISHED

ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ec2-54-164-113-148.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
81.161.59.64:http
TIME_WAIT
db3msgr6010716.gateway.messenger.live.com:https
ec2-54-164-113-148.compute-1.amazonaws.com:http
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.64:http
TIME_WAIT
81.161.59.79:http
TIME_WAIT
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
ep-reverse.nimbus.bitdefender.net:https TIME_WA
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw

s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350
PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

Can not obtain ownership information


TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50017
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50018
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50019
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50020
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT

TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-186-197-235.us-west-2.compute.amazonaws.c
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

Active Connections
Proto Local Address
TCP
0.0.0.0:80
[Skype.exe]
TCP
0.0.0.0:135
RpcSs
[svchost.exe]
TCP
0.0.0.0:443
[Skype.exe]
TCP
0.0.0.0:445
Can not obtain ownership
TCP
0.0.0.0:554
[wmpnetwk.exe]
TCP
0.0.0.0:902
[vmware-authd.exe]
TCP
0.0.0.0:912
[vmware-authd.exe]
TCP
0.0.0.0:1688
[KMService.exe]
TCP
0.0.0.0:2869
Can not obtain ownership
TCP
0.0.0.0:5357
Can not obtain ownership
TCP
0.0.0.0:10243
Can not obtain ownership
TCP
0.0.0.0:12569
[uTorrent.exe]
TCP
0.0.0.0:13681
[Skype.exe]
TCP
0.0.0.0:49168
[wininit.exe]
TCP
0.0.0.0:49169
[lsass.exe]
TCP
0.0.0.0:49172
eventlog
[svchost.exe]
TCP
0.0.0.0:49196
Schedule
[svchost.exe]
TCP
0.0.0.0:49344
[services.exe]
TCP
0.0.0.0:49350

Foreign Address
Honock-PC:0

State
LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0
information
Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

Honock-PC:0

LISTENING

LISTENING

LISTENING
LISTENING
LISTENING

PolicyAgent
[svchost.exe]
TCP
10.1.28.0:139
Honock-PC:0
LISTENING
Can not obtain ownership information
TCP
10.1.28.0:49960
ec2-54-235-115-69.compute-1.amazonaws.com:http
ESTABLISHED
[firefox.exe]
TCP
10.1.28.0:49963
zeropitarr.ru:https
ESTABLISHED
[tor.exe]
TCP
10.1.28.0:49967
ec2-54-235-115-69.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49973
157.55.235.169:33033 ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:49992
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49993
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49995
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:49996
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:49997
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:49998
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:49999
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50000
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50001
db3msgr6010716.gateway.messenger.live.com:https
ESTABLISHED
[Skype.exe]
TCP
10.1.28.0:50002
ec2-54-164-113-148.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50003
ec2-54-191-2-225.us-west-2.compute.amazonaws.com
:http TIME_WAIT
TCP
10.1.28.0:50004
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50005
81.161.59.64:http
TIME_WAIT
TCP
10.1.28.0:50006
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50007
ec2-54-186-197-235.us-west-2.compute.amazonaws.c
om:http TIME_WAIT
TCP
10.1.28.0:50008
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50009
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50010
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
s.com:http TIME_WAIT
TCP
10.1.28.0:50012
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50013
ec2-54-178-192-40.ap-northeast-1.compute.amazona
ws.com:http TIME_WAIT
TCP
10.1.28.0:50014
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
T
TCP
10.1.28.0:50015
81.161.59.79:http
TIME_WAIT
TCP
10.1.28.0:50016
ec2-54-210-29-211.compute-1.amazonaws.com:http
TIME_WAIT
TCP
10.1.28.0:50017
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50018
ep-reverse.nimbus.bitdefender.net:https TIME_WA
IT
TCP
10.1.28.0:50019
ep-reverse.nimbus.bitdefender.net:http TIME_WAI

T
TCP

10.1.28.0:50020

ep-reverse.nimbus.bitdefender.net:https TIME_WA

TCP
10.1.28.0:50021
om:http TIME_WAIT
TCP
10.1.28.0:50022
s.com:http TIME_WAIT
TCP
10.1.28.0:50023
TCP
10.1.28.0:50024
TIME_WAIT
TCP
10.1.28.0:50025
TCP
10.1.28.0:50027
T
TCP
10.1.28.0:50028
TCP
10.1.28.0:50029
TCP
10.1.28.0:50030
[Skype.exe]
TCP
10.1.28.0:50031
84 TIME_WAIT

ec2-54-186-197-235.us-west-2.compute.amazonaws.c

IT
ec2-54-249-8-166.ap-northeast-1.compute.amazonaw
81.161.59.79:http
TIME_WAIT
ec2-54-210-29-211.compute-1.amazonaws.com:http
81.161.59.64:http
TIME_WAIT
ep-reverse.nimbus.bitdefender.net:http TIME_WAI
81.161.59.80:http
TIME_WAIT
62-151-88-148.express.ya.com:55916 TIME_WAIT
91.190.218.59:12350
ESTABLISHED
cpc2-swin14-2-0-cust384.3-1.cable.virginm.net:26

You might also like