883036402 | 2024-05-06T11:31:10.489421
135 /
tcp
Microsoft RPC Endpoint Mapper
d95afe70-a6d5-4259-822e-2c84da1ddb0d
version: v1.0
protocol: [MS-RSP]: Remote Shutdown Protocol
provider: wininit.exe
ncacn_ip_tcp: 114.232.0.230:49152
ncalrpc: WindowsShutdown
ncacn_np: \\MS-20180227BJAY\PIPE\InitShutdown
ncalrpc: WMsgKRpc04CCC0
76f226c3-ec14-4325-8a99-6a46348418af
version: v1.0
provider: winlogon.exe
ncalrpc: WindowsShutdown
ncacn_np: \\MS-20180227BJAY\PIPE\InitShutdown
ncalrpc: WMsgKRpc04CCC0
ncalrpc: WMsgKRpc04CFC1
c9ac6db5-82b7-4e55-ae8a-e464ed7b4277
version: v1.0
annotation: Impl friendly name
provider: sysntfy.dll
ncalrpc: LRPC-8f28582479411a04f9
ncalrpc: IUserProfile2
ncalrpc: LRPC-7bb9047dda7ea2723f
12e65dd8-887f-41ef-91bf-8d816c42c2e7
version: v1.0
annotation: Secure Desktop LRPC interface
provider: winlogon.exe
ncalrpc: WMsgKRpc04CFC1
3c4728c5-f0ab-448b-bda1-6ce01eb0a6d6
version: v1.0
annotation: DHCPv6 Client LRPC Endpoint
provider: dhcpcsvc6.dll
ncalrpc: dhcpcsvc6
ncalrpc: dhcpcsvc
ncacn_ip_tcp: 114.232.0.230:49153
ncacn_np: \\MS-20180227BJAY\pipe\eventlog
ncalrpc: eventlog
3c4728c5-f0ab-448b-bda1-6ce01eb0a6d5
version: v1.0
annotation: DHCP Client LRPC Endpoint
provider: dhcpcsvc.dll
ncalrpc: dhcpcsvc
ncacn_ip_tcp: 114.232.0.230:49153
ncacn_np: \\MS-20180227BJAY\pipe\eventlog
ncalrpc: eventlog
f6beaff7-1e19-4fbb-9f8f-b89e2018337c
version: v1.0
annotation: Event log TCPIP
protocol: [MS-EVEN6]: EventLog Remoting Protocol
provider: wevtsvc.dll
ncacn_ip_tcp: 114.232.0.230:49153
ncacn_np: \\MS-20180227BJAY\pipe\eventlog
ncalrpc: eventlog
86d35949-83c9-4044-b424-db363231fd0c
version: v1.0
protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol
provider: schedsvc.dll
ncacn_ip_tcp: 114.232.0.230:49154
ncacn_np: \\MS-20180227BJAY\PIPE\atsvc
ncalrpc: OLE7D3D67FC756C496399FB8BCC5D6F
ncalrpc: IUserProfile2
378e52b0-c0a9-11cf-822d-00aa0051e40f
version: v1.0
protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol
provider: taskcomp.dll
ncacn_np: \\MS-20180227BJAY\PIPE\atsvc
ncalrpc: OLE7D3D67FC756C496399FB8BCC5D6F
ncalrpc: IUserProfile2
1ff70682-0a51-30e8-076d-740be8cee98b
version: v1.0
protocol: [MS-TSCH]: Task Scheduler Service Remoting Protocol
provider: taskcomp.dll
ncacn_np: \\MS-20180227BJAY\PIPE\atsvc
ncalrpc: OLE7D3D67FC756C496399FB8BCC5D6F
ncalrpc: IUserProfile2
0a74ef1c-41a4-4e06-83ae-dc74fb1cdd53
version: v1.0
provider: schedsvc.dll
ncalrpc: OLE7D3D67FC756C496399FB8BCC5D6F
ncalrpc: IUserProfile2
2eb08e3e-639f-4fba-97b1-14f878961076
version: v1.0
provider: gpsvc.dll
ncalrpc: LRPC-7bb9047dda7ea2723f
7ea70bcf-48af-4f6a-8968-6a440754d5fa
version: v1.0
annotation: NSI server endpoint
provider: nsisvc.dll
ncalrpc: LRPC-a307ac4c1d094f079b
367abb81-9844-35f1-ad32-98f038001003
version: v2.0
protocol: [MS-SCMR]: Service Control Manager Remote Protocol
provider: services.exe
ncacn_ip_tcp: 114.232.0.230:49155
12345778-1234-abcd-ef00-0123456789ac
version: v1.0
protocol: [MS-SAMR]: Security Account Manager (SAM) Remote Protocol
provider: samsrv.dll
ncacn_ip_tcp: 114.232.0.230:49156
ncalrpc: samss lpc
ncacn_np: \\MS-20180227BJAY\PIPE\protected_storage
ncalrpc: protected_storage
ncalrpc: lsasspirpc
ncalrpc: lsapolicylookup
ncalrpc: LSARPC_ENDPOINT
ncalrpc: securityevent
ncalrpc: audit
ncalrpc: LRPC-69ce9a5a5d9f2101df
ncacn_np: \\MS-20180227BJAY\pipe\lsass
2f5f6521-cb55-1059-b446-00df0bce31db
version: v1.0
annotation: Unimodem LRPC Endpoint
ncalrpc: unimdmsvc
ncalrpc: tapsrvlpc
ncacn_np: \\MS-20180227BJAY\pipe\tapsrv
ncalrpc: DNSResolver
1578597157 | 2024-05-07T17:05:20.376265
6881 /
udp
DHT Nodes
97.13.112.135 17061
166.212.215.134 6967
96.47.168.255 46446
226.171.119.167 59972
26.225.118.145 26387
151.217.74.166 42194
95.96.177.19 23163
102.23.103.183 53358
86.226.96.166 31646
65.16.17.18 33672
56.206.13.155 10289
95.245.164.249 25091
218.91.199.41 6883
7.165.14.143 45077
137.197.252.146 62617
189.238.76.132 25215
24.90.185.149 23435
199.75.37.224 55831
210.128.67.64 27325
191.119.8.83 59512
203.250.104.221 48563
122.50.92.92 8275
55.100.155.187 31219
31.56.224.131 58714
221.188.80.185 65203
187.38.60.244 20802
34.78.201.158 41137
31.234.87.23 18963
20.205.130.92 10870
166.57.121.235 46069
101.106.43.4 11488
231.131.98.78 6616
44.104.145.80 22203
249.150.125.1 15888