TimeStampProcessIDProcessNameSTATELocalIpAddressLocalPortRemoteIpAddressRemotePort
06-28-2017-00-10-44724svchost.exeLISTEN0.0.0.01350.0.0.00
06-28-2017-00-10-444SystemLISTEN0.0.0.04450.0.0.00
06-28-2017-00-10-44400wininit.exeLISTEN0.0.0.0491520.0.0.00
06-28-2017-00-10-44824svchost.exeLISTEN0.0.0.0491530.0.0.00
06-28-2017-00-10-44908svchost.exeLISTEN0.0.0.0491540.0.0.00
06-28-2017-00-10-44508services.exeLISTEN0.0.0.0491550.0.0.00
06-28-2017-00-10-44524lsass.exeLISTEN0.0.0.0491560.0.0.00
06-28-2017-00-10-444SystemLISTEN172.16.251.1321390.0.0.00
06-28-2017-00-15-172188rundll32.exeINITIATING172.16.251.13249247172.16.251.0445
06-28-2017-00-15-192188rundll32.exeINITIATING172.16.251.13249248172.16.251.0139
06-28-2017-00-15-212188rundll32.exeINITIATING172.16.251.13249249172.16.251.1445
06-28-2017-00-15-232188rundll32.exeINITIATING172.16.251.13249250172.16.251.1139
06-28-2017-00-15-252188rundll32.exeINITIATING172.16.251.13249251172.16.251.2445
06-28-2017-00-15-272188rundll32.exeINITIATING172.16.251.13249252172.16.251.2139
06-28-2017-00-15-292188rundll32.exeINITIATING172.16.251.13249253172.16.251.3445
06-28-2017-00-15-314SystemINITIATING172.16.251.13249254172.16.251.254445
06-28-2017-00-15-314SystemINITIATING172.16.251.13249255172.16.251.2445
06-28-2017-00-15-312188rundll32.exeINITIATING172.16.251.13249256172.16.251.3139
06-28-2017-00-15-324SystemINITIATING172.16.251.13249257172.16.251.254445
06-28-2017-00-15-324SystemINITIATING172.16.251.13249258172.16.251.254139
06-28-2017-00-15-324SystemINITIATING172.16.251.13249259172.16.251.2139
06-28-2017-00-15-324SystemINITIATING172.16.251.13249260172.16.251.2445
06-28-2017-00-15-332188rundll32.exeINITIATING172.16.251.13249262172.16.251.4445
06-28-2017-00-15-352188rundll32.exeINITIATING172.16.251.13249263172.16.251.4139
06-28-2017-00-15-372188rundll32.exeINITIATING172.16.251.13249264172.16.251.5445
06-28-2017-00-15-392188rundll32.exeINITIATING172.16.251.13249265172.16.251.5139
06-28-2017-00-15-412188rundll32.exeINITIATING172.16.251.13249266172.16.251.6445
06-28-2017-00-15-412188rundll32.exeINITIATING172.16.251.13249267172.16.251.280
06-28-2017-00-15-442188rundll32.exeINITIATING172.16.251.13249268172.16.251.6139
06-28-2017-00-15-462188rundll32.exeINITIATING172.16.251.13249269172.16.251.7445
06-28-2017-00-15-482188rundll32.exeINITIATING172.16.251.13249270172.16.251.7139
06-28-2017-00-15-492188rundll32.exeINITIATING172.16.251.13249271172.16.251.8445
06-28-2017-00-15-512188rundll32.exeINITIATING172.16.251.13249272172.16.251.8139
06-28-2017-00-15-532188rundll32.exeINITIATING172.16.251.13249274172.16.251.9445
06-28-2017-00-15-552188rundll32.exeINITIATING172.16.251.13249275172.16.251.9139
06-28-2017-00-15-572188rundll32.exeINITIATING172.16.251.13249276172.16.251.10445
06-28-2017-00-15-592188rundll32.exeINITIATING172.16.251.13249277172.16.251.10139
06-28-2017-00-16-002188rundll32.exeINITIATING172.16.251.13249278172.16.251.25480
06-28-2017-00-16-012188rundll32.exeINITIATING172.16.251.13249279172.16.251.11445
06-28-2017-00-16-032188rundll32.exeINITIATING172.16.251.13249280172.16.251.11139
06-28-2017-00-16-052188rundll32.exeINITIATING172.16.251.13249281172.16.251.12445
06-28-2017-00-16-072188rundll32.exeINITIATING172.16.251.13249282172.16.251.12139
06-28-2017-00-16-092188rundll32.exeINITIATING172.16.251.13249283172.16.251.13445
06-28-2017-00-16-122188rundll32.exeINITIATING172.16.251.13249284172.16.251.13139
06-28-2017-00-16-142188rundll32.exeINITIATING172.16.251.13249285172.16.251.14445
06-28-2017-00-16-162188rundll32.exeINITIATING172.16.251.13249286172.16.251.14139
06-28-2017-00-16-182188rundll32.exeINITIATING172.16.251.13249287172.16.251.15445
06-28-2017-00-16-202188rundll32.exeINITIATING172.16.251.13249288172.16.251.15139
06-28-2017-00-16-222188rundll32.exeINITIATING172.16.251.13249289172.16.251.16445
06-28-2017-00-16-232188rundll32.exeINITIATING172.16.251.13249290172.16.251.16139
06-28-2017-00-16-252188rundll32.exeINITIATING172.16.251.13249291172.16.251.17445
06-28-2017-00-16-272188rundll32.exeINITIATING172.16.251.13249292172.16.251.17139
06-28-2017-00-16-292188rundll32.exeINITIATING172.16.251.13249293172.16.251.18445
06-28-2017-00-16-312188rundll32.exeINITIATING172.16.251.13249294172.16.251.18139
06-28-2017-00-16-332188rundll32.exeINITIATING172.16.251.13249295172.16.251.19445
06-28-2017-00-16-352188rundll32.exeINITIATING172.16.251.13249296172.16.251.19139
06-28-2017-00-16-372188rundll32.exeINITIATING172.16.251.13249297172.16.251.20445
06-28-2017-00-16-392188rundll32.exeINITIATING172.16.251.13249298172.16.251.20139
06-28-2017-00-16-412188rundll32.exeINITIATING172.16.251.13249299172.16.251.21445
06-28-2017-00-16-43908svchost.exeESTABLISHED172.16.251.1324930013.107.4.5080
06-28-2017-00-16-442188rundll32.exeINITIATING172.16.251.13249301172.16.251.21139
06-28-2017-00-16-45908svchost.exeINITIATING172.16.251.13249302157.55.240.94443
06-28-2017-00-16-46908svchost.exeESTABLISHED172.16.251.13249302157.55.240.94443
06-28-2017-00-16-462188rundll32.exeINITIATING172.16.251.13249303172.16.251.22445
06-28-2017-00-16-482188rundll32.exeINITIATING172.16.251.13249304172.16.251.22139
06-28-2017-00-16-502188rundll32.exeINITIATING172.16.251.13249305172.16.251.23445
06-28-2017-00-16-522188rundll32.exeINITIATING172.16.251.13249306172.16.251.23139
06-28-2017-00-16-542188rundll32.exeINITIATING172.16.251.13249307172.16.251.24445
06-28-2017-00-16-562188rundll32.exeINITIATING172.16.251.13249308172.16.251.24139
06-28-2017-00-16-582188rundll32.exeINITIATING172.16.251.13249309172.16.251.25445
06-28-2017-00-17-002188rundll32.exeINITIATING172.16.251.13249310172.16.251.25139
06-28-2017-00-17-022188rundll32.exeINITIATING172.16.251.13249311172.16.251.26445
06-28-2017-00-17-042188rundll32.exeINITIATING172.16.251.13249312172.16.251.26139
06-28-2017-00-17-062188rundll32.exeINITIATING172.16.251.13249313172.16.251.27445
06-28-2017-00-17-082188rundll32.exeINITIATING172.16.251.13249314172.16.251.27139
06-28-2017-00-17-102188rundll32.exeINITIATING172.16.251.13249315172.16.251.28445
06-28-2017-00-17-122188rundll32.exeINITIATING172.16.251.13249316172.16.251.28139
06-28-2017-00-17-132188rundll32.exeINITIATING172.16.251.13249317172.16.251.29445
06-28-2017-00-17-152188rundll32.exeINITIATING172.16.251.13249318172.16.251.29139
06-28-2017-00-17-172188rundll32.exeINITIATING172.16.251.13249319172.16.251.30445
06-28-2017-00-17-192188rundll32.exeINITIATING172.16.251.13249320172.16.251.30139
06-28-2017-00-17-212188rundll32.exeINITIATING172.16.251.13249321172.16.251.31445
06-28-2017-00-17-232188rundll32.exeINITIATING172.16.251.13249322172.16.251.31139
06-28-2017-00-17-252188rundll32.exeINITIATING172.16.251.13249323172.16.251.32445
06-28-2017-00-17-272188rundll32.exeINITIATING172.16.251.13249324172.16.251.32139
06-28-2017-00-17-292188rundll32.exeINITIATING172.16.251.13249325172.16.251.33445
06-28-2017-00-17-312188rundll32.exeINITIATING172.16.251.13249326172.16.251.33139
06-28-2017-00-17-332188rundll32.exeINITIATING172.16.251.13249327172.16.251.34445
06-28-2017-00-17-362188rundll32.exeINITIATING172.16.251.13249328172.16.251.34139
06-28-2017-00-17-382188rundll32.exeINITIATING172.16.251.13249329172.16.251.35445
06-28-2017-00-17-402188rundll32.exeINITIATING172.16.251.13249330172.16.251.35139
06-28-2017-00-17-422188rundll32.exeINITIATING172.16.251.13249331172.16.251.36445
06-28-2017-00-17-442188rundll32.exeINITIATING172.16.251.13249332172.16.251.36139
06-28-2017-00-17-462188rundll32.exeINITIATING172.16.251.13249333172.16.251.37445
06-28-2017-00-17-482188rundll32.exeINITIATING172.16.251.13249334172.16.251.37139
06-28-2017-00-17-502188rundll32.exeINITIATING172.16.251.13249335172.16.251.38445
06-28-2017-00-17-522188rundll32.exeINITIATING172.16.251.13249336172.16.251.38139
06-28-2017-00-17-542188rundll32.exeINITIATING172.16.251.13249337172.16.251.39445
06-28-2017-00-17-562188rundll32.exeINITIATING172.16.251.13249338172.16.251.39139
06-28-2017-00-17-582188rundll32.exeINITIATING172.16.251.13249339172.16.251.40445
06-28-2017-00-18-002188rundll32.exeINITIATING172.16.251.13249340172.16.251.40139
06-28-2017-00-18-022188rundll32.exeINITIATING172.16.251.13249341172.16.251.41445
06-28-2017-00-18-042188rundll32.exeINITIATING172.16.251.13249342172.16.251.41139
06-28-2017-00-18-062188rundll32.exeINITIATING172.16.251.13249343172.16.251.42445
06-28-2017-00-18-082188rundll32.exeINITIATING172.16.251.13249344172.16.251.42139
06-28-2017-00-18-112188rundll32.exeINITIATING172.16.251.13249345172.16.251.43445
06-28-2017-00-18-122188rundll32.exeINITIATING172.16.251.13249346172.16.251.43139
06-28-2017-00-18-142188rundll32.exeINITIATING172.16.251.13249347172.16.251.44445
06-28-2017-00-18-162188rundll32.exeINITIATING172.16.251.13249348172.16.251.44139
06-28-2017-00-18-182188rundll32.exeINITIATING172.16.251.13249349172.16.251.45445
06-28-2017-00-18-202188rundll32.exeINITIATING172.16.251.13249350172.16.251.45139
06-28-2017-00-18-222188rundll32.exeINITIATING172.16.251.13249351172.16.251.46445
06-28-2017-00-18-242188rundll32.exeINITIATING172.16.251.13249352172.16.251.46139
06-28-2017-00-18-262188rundll32.exeINITIATING172.16.251.13249353172.16.251.47445
06-28-2017-00-18-282188rundll32.exeINITIATING172.16.251.13249354172.16.251.47139
06-28-2017-00-18-302188rundll32.exeINITIATING172.16.251.13249355172.16.251.48445
06-28-2017-00-18-314SystemINITIATING172.16.251.13249356172.16.251.1445
06-28-2017-00-18-322188rundll32.exeINITIATING172.16.251.13249357172.16.251.48139
06-28-2017-00-18-324SystemINITIATING172.16.251.13249358172.16.251.1139
06-28-2017-00-18-324SystemINITIATING172.16.251.13249359172.16.251.1445
06-28-2017-00-18-342188rundll32.exeINITIATING172.16.251.13249361172.16.251.49445
06-28-2017-00-18-342188rundll32.exeINITIATING172.16.251.13249362172.16.251.180
06-28-2017-00-18-362188rundll32.exeINITIATING172.16.251.13249363172.16.251.49139
06-28-2017-00-18-382188rundll32.exeINITIATING172.16.251.13249364172.16.251.50445
06-28-2017-00-18-402188rundll32.exeINITIATING172.16.251.13249365172.16.251.50139
06-28-2017-00-18-422188rundll32.exeINITIATING172.16.251.13249366172.16.251.51445
06-28-2017-00-18-442188rundll32.exeINITIATING172.16.251.13249367172.16.251.51139
06-28-2017-00-18-462188rundll32.exeINITIATING172.16.251.13249368172.16.251.52445
06-28-2017-00-18-482188rundll32.exeINITIATING172.16.251.13249369172.16.251.52139
06-28-2017-00-18-512188rundll32.exeINITIATING172.16.251.13249370172.16.251.53445
06-28-2017-00-18-532188rundll32.exeINITIATING172.16.251.13249371172.16.251.53139
06-28-2017-00-18-552188rundll32.exeINITIATING172.16.251.13249372172.16.251.54445
06-28-2017-00-18-572188rundll32.exeINITIATING172.16.251.13249373172.16.251.54139
06-28-2017-00-18-592188rundll32.exeINITIATING172.16.251.13249374172.16.251.55445
06-28-2017-00-19-012188rundll32.exeINITIATING172.16.251.13249375172.16.251.55139
06-28-2017-00-19-032188rundll32.exeINITIATING172.16.251.13249376172.16.251.56445
06-28-2017-00-19-052188rundll32.exeINITIATING172.16.251.13249377172.16.251.56139
06-28-2017-00-19-072188rundll32.exeINITIATING172.16.251.13249378172.16.251.57445
06-28-2017-00-19-092188rundll32.exeINITIATING172.16.251.13249379172.16.251.57139
06-28-2017-00-19-112188rundll32.exeINITIATING172.16.251.13249380172.16.251.58445
06-28-2017-00-19-132188rundll32.exeINITIATING172.16.251.13249381172.16.251.58139
06-28-2017-00-19-152188rundll32.exeINITIATING172.16.251.13249382172.16.251.59445
06-28-2017-00-19-162188rundll32.exeINITIATING172.16.251.13249383172.16.251.59139
06-28-2017-00-19-182188rundll32.exeINITIATING172.16.251.13249384172.16.251.60445
06-28-2017-00-19-202188rundll32.exeINITIATING172.16.251.13249385172.16.251.60139
06-28-2017-00-19-222188rundll32.exeINITIATING172.16.251.13249386172.16.251.61445
06-28-2017-00-19-242188rundll32.exeINITIATING172.16.251.13249387172.16.251.61139
06-28-2017-00-19-262188rundll32.exeINITIATING172.16.251.13249388172.16.251.62445
06-28-2017-00-19-282188rundll32.exeINITIATING172.16.251.13249389172.16.251.62139
06-28-2017-00-19-302188rundll32.exeINITIATING172.16.251.13249390172.16.251.63445
06-28-2017-00-19-322188rundll32.exeINITIATING172.16.251.13249391172.16.251.63139
06-28-2017-00-19-342188rundll32.exeINITIATING172.16.251.13249392172.16.251.64445
06-28-2017-00-19-362188rundll32.exeINITIATING172.16.251.13249393172.16.251.64139
06-28-2017-00-19-382188rundll32.exeINITIATING172.16.251.13249394172.16.251.65445
06-28-2017-00-19-402188rundll32.exeINITIATING172.16.251.13249395172.16.251.65139
06-28-2017-00-19-422188rundll32.exeINITIATING172.16.251.13249396172.16.251.66445
06-28-2017-00-19-442188rundll32.exeINITIATING172.16.251.13249397172.16.251.66139
06-28-2017-00-19-462188rundll32.exeINITIATING172.16.251.13249398172.16.251.67445
06-28-2017-00-19-482188rundll32.exeINITIATING172.16.251.13249399172.16.251.67139
06-28-2017-00-19-502188rundll32.exeINITIATING172.16.251.13249400172.16.251.68445
06-28-2017-00-19-522188rundll32.exeINITIATING172.16.251.13249401172.16.251.68139
06-28-2017-00-19-552188rundll32.exeINITIATING172.16.251.13249402172.16.251.69445
06-28-2017-00-20-012188rundll32.exeINITIATING172.16.251.13249405172.16.251.70139
06-28-2017-00-20-032188rundll32.exeINITIATING172.16.251.13249406172.16.251.71445
06-28-2017-00-20-052188rundll32.exeINITIATING172.16.251.13249407172.16.251.71139
06-28-2017-00-20-072188rundll32.exeINITIATING172.16.251.13249408172.16.251.72445
06-28-2017-00-20-092188rundll32.exeINITIATING172.16.251.13249409172.16.251.72139
06-28-2017-00-20-112188rundll32.exeINITIATING172.16.251.13249410172.16.251.73445
06-28-2017-00-20-132188rundll32.exeINITIATING172.16.251.13249411172.16.251.73139
06-28-2017-00-20-152188rundll32.exeINITIATING172.16.251.13249412172.16.251.74445
06-28-2017-00-20-152860explorer.exeESTABLISHED172.16.251.132494132.21.231.9880
06-28-2017-00-20-172188rundll32.exeINITIATING172.16.251.13249414172.16.251.74139
06-28-2017-00-20-192188rundll32.exeINITIATING172.16.251.13249415172.16.251.75445
06-28-2017-00-20-212188rundll32.exeINITIATING172.16.251.13249416172.16.251.75139
06-28-2017-00-20-232188rundll32.exeINITIATING172.16.251.13249417172.16.251.76445
06-28-2017-00-20-252188rundll32.exeINITIATING172.16.251.13249418172.16.251.76139
06-28-2017-00-20-272188rundll32.exeINITIATING172.16.251.13249419172.16.251.77445
06-28-2017-00-20-292188rundll32.exeINITIATING172.16.251.13249420172.16.251.77139
06-28-2017-00-20-312188rundll32.exeINITIATING172.16.251.13249421172.16.251.78445
06-28-2017-00-20-332188rundll32.exeINITIATING172.16.251.13249422172.16.251.78139
06-28-2017-00-20-352188rundll32.exeINITIATING172.16.251.13249423172.16.251.79445
06-28-2017-00-20-372188rundll32.exeINITIATING172.16.251.13249424172.16.251.79139
06-28-2017-00-20-392188rundll32.exeINITIATING172.16.251.13249425172.16.251.80445
06-28-2017-00-20-412188rundll32.exeINITIATING172.16.251.13249426172.16.251.80139
06-28-2017-00-20-432188rundll32.exeINITIATING172.16.251.13249427172.16.251.81445
06-28-2017-00-20-452188rundll32.exeINITIATING172.16.251.13249428172.16.251.81139
06-28-2017-00-20-472188rundll32.exeINITIATING172.16.251.13249429172.16.251.82445
06-28-2017-00-20-492188rundll32.exeINITIATING172.16.251.13249430172.16.251.82139
06-28-2017-00-20-512188rundll32.exeINITIATING172.16.251.13249431172.16.251.83445
06-28-2017-00-20-532188rundll32.exeINITIATING172.16.251.13249432172.16.251.83139
06-28-2017-00-20-562188rundll32.exeINITIATING172.16.251.13249433172.16.251.84445
06-28-2017-00-20-582188rundll32.exeINITIATING172.16.251.13249434172.16.251.84139
06-28-2017-00-20-592188rundll32.exeINITIATING172.16.251.13249435172.16.251.85445
06-28-2017-00-21-012188rundll32.exeINITIATING172.16.251.13249436172.16.251.85139
06-28-2017-00-21-032188rundll32.exeINITIATING172.16.251.13249437172.16.251.86445