Edit tour
Linux
Analysis Report
hmips.elf
Overview
General Information
Sample name: | hmips.elf |
Analysis ID: | 1565728 |
MD5: | a69cdd3bc8364a3fee5292a2cfb6471e |
SHA1: | 3e6693854262b4fe37e2410931498e465d00260e |
SHA256: | 5796400cba0657845a0acb6c3646846f5dceb75bdd8bcbe19a827aeac259986f |
Tags: | elfuser-abuse_ch |
Infos: |
Detection
Score: | 60 |
Range: | 0 - 100 |
Whitelisted: | false |
Signatures
Multi AV Scanner detection for submitted file
Connects to many ports of the same IP (likely port scanning)
Sample reads /proc/mounts (often used for finding a writable filesystem)
Sends malformed DNS queries
Detected TCP or UDP traffic on non-standard ports
Executes the "rm" command used to delete files or directories
Sample has stripped symbol table
Sample listens on a socket
Uses the "uname" system call to query kernel version information (possible evasion)
Classification
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1565728 |
Start date and time: | 2024-11-30 17:07:05 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 4m 28s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultlinuxfilecookbook.jbs |
Analysis system description: | Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11) |
Analysis Mode: | default |
Sample name: | hmips.elf |
Detection: | MAL |
Classification: | mal60.troj.linELF@0/0@45/0 |
- VT rate limit hit for: hmips.elf
Command: | /tmp/hmips.elf |
PID: | 6225 |
Exit Code: | 0 |
Exit Code Info: | |
Killed: | False |
Standard Output: | I just wanna look after my cats, man. |
Standard Error: |
⊘No yara matches
⊘No Suricata rule has matched
Click to jump to signature section
Show All Signature Results
AV Detection |
---|
Source: | ReversingLabs: |
Networking |
---|
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: |
Source: | Socket: | Jump to behavior |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | .symtab present: |
Source: | Classification label: |
Persistence and Installation Behavior |
---|
Source: | File: | Jump to behavior |
Source: | Rm executable: | Jump to behavior | ||
Source: | Rm executable: | Jump to behavior |
Source: | Queries kernel information via 'uname': | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | Path Interception | 1 File Deletion | OS Credential Dumping | 11 Security Software Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | 1 File and Directory Discovery | Remote Desktop Protocol | Data from Removable Media | 1 Non-Standard Port | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 1 Non-Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 2 Application Layer Protocol | Traffic Duplication | Data Destruction |
⊘No configs have been found
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
13% | ReversingLabs | Linux.Trojan.Mirai |
⊘No Antivirus matches
⊘No Antivirus matches
⊘No Antivirus matches
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
catlovingfools.geek. [malformed] | unknown | unknown | true | unknown | |
catlovingfools.geek | unknown | unknown | true | unknown | |
shitrocket.dyn | unknown | unknown | true | unknown | |
hikvision.geek. [malformed] | unknown | unknown | true | unknown | |
shitrocket.dyn. [malformed] | unknown | unknown | true | unknown | |
catvision.dyn. [malformed] | unknown | unknown | true | unknown | |
hikvision.geek | unknown | unknown | true | unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
194.58.66.244 | unknown | Russian Federation | 2118 | RELCOM-ASRelcomGroup19022019RU | false | |
54.171.230.55 | unknown | United States | 16509 | AMAZON-02US | false | |
195.133.53.106 | unknown | Russian Federation | 21453 | FLEX-ASRU | false | |
88.151.195.157 | unknown | Azerbaijan | 15723 | AZERONLINEAZ | false | |
212.192.15.158 | unknown | Russian Federation | 49392 | ASBAXETNRU | true | |
45.147.200.148 | unknown | Russian Federation | 51659 | ASBAXETRU | true | |
45.140.168.235 | unknown | Russian Federation | 51659 | ASBAXETRU | true | |
91.189.91.43 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false | |
45.140.169.21 | unknown | Russian Federation | 51659 | ASBAXETRU | false | |
91.189.91.42 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false | |
194.58.66.131 | unknown | Russian Federation | 2118 | RELCOM-ASRelcomGroup19022019RU | false | |
185.22.155.213 | unknown | Russian Federation | 51659 | ASBAXETRU | false | |
88.151.195.95 | unknown | Azerbaijan | 15723 | AZERONLINEAZ | false | |
38.114.100.142 | unknown | United States | 22926 | AS-WISPERUS | false | |
185.22.155.152 | unknown | Russian Federation | 51659 | ASBAXETRU | true | |
109.202.202.202 | unknown | Switzerland | 13030 | INIT7CH | false | |
31.13.248.13 | unknown | Bulgaria | 34224 | NETERRA-ASBG | false | |
86.107.100.88 | unknown | Romania | 38995 | AMG-ASRO | true |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
54.171.230.55 | Get hash | malicious | Mirai | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai, Gafgyt, Okiru | Browse | |||
Get hash | malicious | Gafgyt, Mirai | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
194.58.66.244 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
195.133.53.106 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
88.151.195.157 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
212.192.15.158 | Get hash | malicious | Unknown | Browse | ||
45.147.200.148 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse |
⊘No context
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
RELCOM-ASRelcomGroup19022019RU | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | GuLoader, Remcos | Browse |
| ||
Get hash | malicious | Quasar | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
AMAZON-02US | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
AZERONLINEAZ | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
FLEX-ASRU | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Gafgyt, Mirai | Browse |
| ||
Get hash | malicious | Gafgyt, Mirai | Browse |
|
⊘No context
⊘No context
⊘No created / dropped files found
File type: | |
Entropy (8bit): | 5.306877892459011 |
TrID: |
|
File name: | hmips.elf |
File size: | 72'720 bytes |
MD5: | a69cdd3bc8364a3fee5292a2cfb6471e |
SHA1: | 3e6693854262b4fe37e2410931498e465d00260e |
SHA256: | 5796400cba0657845a0acb6c3646846f5dceb75bdd8bcbe19a827aeac259986f |
SHA512: | 82127b80c7cd428cae4fb0d0995bd3b250d2076aa3ca41afc7a15398ed5c319aaa17c1c3ef6988f1f7a69fb4fabd4086a74219fb81c41b9422c3e5a4e79b611b |
SSDEEP: | 1536:ZjPe8HVWzVWbLW0rggjWO4MCgGGe6IOWetvaub+5Ini:ZjG8OdO4MCSe6Sa+5Z |
TLSH: | FB63C84D6E328FEDF66CC33047B74A31A76923D522E19685E3ACD2141F7028D585FBA8 |
File Content Preview: | .ELF.....................@.`...4.........4. ...(.............@...@...........................E...E.....|..Z8........dt.Q............................<...'..\...!'.......................<...'..8...!... ....'9... ......................<...'......!........'9. |
ELF header | |
---|---|
Class: | |
Data: | |
Version: | |
Machine: | |
Version Number: | |
Type: | |
OS/ABI: | |
ABI Version: | 0 |
Entry Point Address: | |
Flags: | |
ELF Header Size: | 52 |
Program Header Offset: | 52 |
Program Header Size: | 32 |
Number of Program Headers: | 3 |
Section Header Offset: | 72160 |
Section Header Size: | 40 |
Number of Section Headers: | 14 |
Header String Table Index: | 13 |
Name | Type | Address | Offset | Size | EntSize | Flags | Flags Description | Link | Info | Align |
---|---|---|---|---|---|---|---|---|---|---|
NULL | 0x0 | 0x0 | 0x0 | 0x0 | 0x0 | 0 | 0 | 0 | ||
.init | PROGBITS | 0x400094 | 0x94 | 0x8c | 0x0 | 0x6 | AX | 0 | 0 | 4 |
.text | PROGBITS | 0x400120 | 0x120 | 0xed90 | 0x0 | 0x6 | AX | 0 | 0 | 16 |
.fini | PROGBITS | 0x40eeb0 | 0xeeb0 | 0x5c | 0x0 | 0x6 | AX | 0 | 0 | 4 |
.rodata | PROGBITS | 0x40ef10 | 0xef10 | 0x16e0 | 0x0 | 0x2 | A | 0 | 0 | 16 |
.ctors | PROGBITS | 0x451000 | 0x11000 | 0x8 | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.dtors | PROGBITS | 0x451008 | 0x11008 | 0x8 | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.data.rel.ro | PROGBITS | 0x451014 | 0x11014 | 0x4 | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.data | PROGBITS | 0x451020 | 0x11020 | 0x3d8 | 0x0 | 0x3 | WA | 0 | 0 | 16 |
.got | PROGBITS | 0x451400 | 0x11400 | 0x57c | 0x4 | 0x10000003 | WAp | 0 | 0 | 16 |
.sbss | NOBITS | 0x45197c | 0x1197c | 0x1c | 0x0 | 0x10000003 | WAp | 0 | 0 | 4 |
.bss | NOBITS | 0x4519a0 | 0x1197c | 0x5098 | 0x0 | 0x3 | WA | 0 | 0 | 16 |
.mdebug.abi32 | PROGBITS | 0xc06 | 0x1197c | 0x0 | 0x0 | 0x0 | 0 | 0 | 1 | |
.shstrtab | STRTAB | 0x0 | 0x1197c | 0x64 | 0x0 | 0x0 | 0 | 0 | 1 |
Type | Offset | Virtual Address | Physical Address | File Size | Memory Size | Entropy | Flags | Flags Description | Align | Prog Interpreter | Section Mappings |
---|---|---|---|---|---|---|---|---|---|---|---|
LOAD | 0x0 | 0x400000 | 0x400000 | 0x105f0 | 0x105f0 | 5.4885 | 0x5 | R E | 0x10000 | .init .text .fini .rodata | |
LOAD | 0x11000 | 0x451000 | 0x451000 | 0x97c | 0x5a38 | 3.5604 | 0x6 | RW | 0x10000 | .ctors .dtors .data.rel.ro .data .got .sbss .bss | |
GNU_STACK | 0x0 | 0x0 | 0x0 | 0x0 | 0x0 | 0.0000 | 0x7 | RWE | 0x4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Nov 30, 2024 17:07:48.444603920 CET | 50964 | 24302 | 192.168.2.23 | 194.58.66.131 |
Nov 30, 2024 17:07:48.564974070 CET | 24302 | 50964 | 194.58.66.131 | 192.168.2.23 |
Nov 30, 2024 17:07:48.565160036 CET | 50964 | 24302 | 192.168.2.23 | 194.58.66.131 |
Nov 30, 2024 17:07:48.565249920 CET | 50964 | 24302 | 192.168.2.23 | 194.58.66.131 |
Nov 30, 2024 17:07:48.565706968 CET | 54810 | 24302 | 192.168.2.23 | 195.133.53.106 |
Nov 30, 2024 17:07:48.690993071 CET | 24302 | 50964 | 194.58.66.131 | 192.168.2.23 |
Nov 30, 2024 17:07:48.691258907 CET | 50964 | 24302 | 192.168.2.23 | 194.58.66.131 |
Nov 30, 2024 17:07:48.691361904 CET | 24302 | 54810 | 195.133.53.106 | 192.168.2.23 |
Nov 30, 2024 17:07:48.691507101 CET | 54810 | 24302 | 192.168.2.23 | 195.133.53.106 |
Nov 30, 2024 17:07:48.691714048 CET | 54810 | 24302 | 192.168.2.23 | 195.133.53.106 |
Nov 30, 2024 17:07:48.802704096 CET | 443 | 33606 | 54.171.230.55 | 192.168.2.23 |
Nov 30, 2024 17:07:48.802944899 CET | 33606 | 443 | 192.168.2.23 | 54.171.230.55 |
Nov 30, 2024 17:07:48.811652899 CET | 24302 | 50964 | 194.58.66.131 | 192.168.2.23 |
Nov 30, 2024 17:07:48.812172890 CET | 24302 | 54810 | 195.133.53.106 | 192.168.2.23 |
Nov 30, 2024 17:07:48.812284946 CET | 54810 | 24302 | 192.168.2.23 | 195.133.53.106 |
Nov 30, 2024 17:07:48.924211025 CET | 443 | 33606 | 54.171.230.55 | 192.168.2.23 |
Nov 30, 2024 17:07:48.933453083 CET | 24302 | 54810 | 195.133.53.106 | 192.168.2.23 |
Nov 30, 2024 17:07:49.476085901 CET | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Nov 30, 2024 17:07:50.156898975 CET | 24302 | 50964 | 194.58.66.131 | 192.168.2.23 |
Nov 30, 2024 17:07:50.157186031 CET | 50964 | 24302 | 192.168.2.23 | 194.58.66.131 |
Nov 30, 2024 17:07:50.157381058 CET | 50964 | 24302 | 192.168.2.23 | 194.58.66.131 |
Nov 30, 2024 17:07:50.719657898 CET | 24302 | 54810 | 195.133.53.106 | 192.168.2.23 |
Nov 30, 2024 17:07:50.719841957 CET | 54810 | 24302 | 192.168.2.23 | 195.133.53.106 |
Nov 30, 2024 17:07:50.720004082 CET | 54810 | 24302 | 192.168.2.23 | 195.133.53.106 |
Nov 30, 2024 17:07:54.851340055 CET | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Nov 30, 2024 17:07:55.667444944 CET | 39006 | 15771 | 192.168.2.23 | 31.13.248.13 |
Nov 30, 2024 17:07:55.787420988 CET | 15771 | 39006 | 31.13.248.13 | 192.168.2.23 |
Nov 30, 2024 17:07:55.787520885 CET | 39006 | 15771 | 192.168.2.23 | 31.13.248.13 |
Nov 30, 2024 17:07:55.787731886 CET | 39006 | 15771 | 192.168.2.23 | 31.13.248.13 |
Nov 30, 2024 17:07:55.911478043 CET | 15771 | 39006 | 31.13.248.13 | 192.168.2.23 |
Nov 30, 2024 17:07:55.911653042 CET | 39006 | 15771 | 192.168.2.23 | 31.13.248.13 |
Nov 30, 2024 17:07:56.036529064 CET | 15771 | 39006 | 31.13.248.13 | 192.168.2.23 |
Nov 30, 2024 17:07:56.235460043 CET | 44046 | 15771 | 192.168.2.23 | 38.114.100.142 |
Nov 30, 2024 17:07:56.355365992 CET | 15771 | 44046 | 38.114.100.142 | 192.168.2.23 |
Nov 30, 2024 17:07:56.355515003 CET | 44046 | 15771 | 192.168.2.23 | 38.114.100.142 |
Nov 30, 2024 17:07:56.355515003 CET | 44046 | 15771 | 192.168.2.23 | 38.114.100.142 |
Nov 30, 2024 17:07:56.475559950 CET | 15771 | 44046 | 38.114.100.142 | 192.168.2.23 |
Nov 30, 2024 17:07:56.475692034 CET | 44046 | 15771 | 192.168.2.23 | 38.114.100.142 |
Nov 30, 2024 17:07:56.596007109 CET | 15771 | 44046 | 38.114.100.142 | 192.168.2.23 |
Nov 30, 2024 17:07:56.643059015 CET | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Nov 30, 2024 17:07:57.484997988 CET | 15771 | 39006 | 31.13.248.13 | 192.168.2.23 |
Nov 30, 2024 17:07:57.485117912 CET | 39006 | 15771 | 192.168.2.23 | 31.13.248.13 |
Nov 30, 2024 17:07:57.485152960 CET | 39006 | 15771 | 192.168.2.23 | 31.13.248.13 |
Nov 30, 2024 17:07:57.652493000 CET | 15771 | 44046 | 38.114.100.142 | 192.168.2.23 |
Nov 30, 2024 17:07:57.652590036 CET | 44046 | 15771 | 192.168.2.23 | 38.114.100.142 |
Nov 30, 2024 17:07:57.652611017 CET | 44046 | 15771 | 192.168.2.23 | 38.114.100.142 |
Nov 30, 2024 17:08:03.039419889 CET | 58004 | 8620 | 192.168.2.23 | 185.22.155.152 |
Nov 30, 2024 17:08:03.159709930 CET | 8620 | 58004 | 185.22.155.152 | 192.168.2.23 |
Nov 30, 2024 17:08:03.159878016 CET | 58004 | 8620 | 192.168.2.23 | 185.22.155.152 |
Nov 30, 2024 17:08:03.159914017 CET | 58004 | 8620 | 192.168.2.23 | 185.22.155.152 |
Nov 30, 2024 17:08:03.207021952 CET | 57860 | 8620 | 192.168.2.23 | 86.107.100.88 |
Nov 30, 2024 17:08:03.282154083 CET | 8620 | 58004 | 185.22.155.152 | 192.168.2.23 |
Nov 30, 2024 17:08:03.282377005 CET | 58004 | 8620 | 192.168.2.23 | 185.22.155.152 |
Nov 30, 2024 17:08:03.328591108 CET | 8620 | 57860 | 86.107.100.88 | 192.168.2.23 |
Nov 30, 2024 17:08:03.328926086 CET | 57860 | 8620 | 192.168.2.23 | 86.107.100.88 |
Nov 30, 2024 17:08:03.328995943 CET | 57860 | 8620 | 192.168.2.23 | 86.107.100.88 |
Nov 30, 2024 17:08:03.402407885 CET | 8620 | 58004 | 185.22.155.152 | 192.168.2.23 |
Nov 30, 2024 17:08:03.450151920 CET | 8620 | 57860 | 86.107.100.88 | 192.168.2.23 |
Nov 30, 2024 17:08:03.450391054 CET | 57860 | 8620 | 192.168.2.23 | 86.107.100.88 |
Nov 30, 2024 17:08:03.573271036 CET | 8620 | 57860 | 86.107.100.88 | 192.168.2.23 |
Nov 30, 2024 17:08:05.100079060 CET | 8620 | 58004 | 185.22.155.152 | 192.168.2.23 |
Nov 30, 2024 17:08:05.100311995 CET | 58004 | 8620 | 192.168.2.23 | 185.22.155.152 |
Nov 30, 2024 17:08:05.100500107 CET | 58004 | 8620 | 192.168.2.23 | 185.22.155.152 |
Nov 30, 2024 17:08:05.547730923 CET | 8620 | 57860 | 86.107.100.88 | 192.168.2.23 |
Nov 30, 2024 17:08:05.547971010 CET | 57860 | 8620 | 192.168.2.23 | 86.107.100.88 |
Nov 30, 2024 17:08:05.547971010 CET | 57860 | 8620 | 192.168.2.23 | 86.107.100.88 |
Nov 30, 2024 17:08:10.209183931 CET | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Nov 30, 2024 17:08:11.167875051 CET | 44176 | 6166 | 192.168.2.23 | 45.140.169.21 |
Nov 30, 2024 17:08:11.287811041 CET | 6166 | 44176 | 45.140.169.21 | 192.168.2.23 |
Nov 30, 2024 17:08:11.288104057 CET | 44176 | 6166 | 192.168.2.23 | 45.140.169.21 |
Nov 30, 2024 17:08:11.288104057 CET | 44176 | 6166 | 192.168.2.23 | 45.140.169.21 |
Nov 30, 2024 17:08:11.408248901 CET | 6166 | 44176 | 45.140.169.21 | 192.168.2.23 |
Nov 30, 2024 17:08:11.408457994 CET | 44176 | 6166 | 192.168.2.23 | 45.140.169.21 |
Nov 30, 2024 17:08:11.528357029 CET | 6166 | 44176 | 45.140.169.21 | 192.168.2.23 |
Nov 30, 2024 17:08:12.974056005 CET | 6166 | 44176 | 45.140.169.21 | 192.168.2.23 |
Nov 30, 2024 17:08:12.974278927 CET | 44176 | 6166 | 192.168.2.23 | 45.140.169.21 |
Nov 30, 2024 17:08:12.974278927 CET | 44176 | 6166 | 192.168.2.23 | 45.140.169.21 |
Nov 30, 2024 17:08:16.376501083 CET | 48122 | 6166 | 192.168.2.23 | 88.151.195.157 |
Nov 30, 2024 17:08:16.498897076 CET | 6166 | 48122 | 88.151.195.157 | 192.168.2.23 |
Nov 30, 2024 17:08:16.499087095 CET | 48122 | 6166 | 192.168.2.23 | 88.151.195.157 |
Nov 30, 2024 17:08:16.499087095 CET | 48122 | 6166 | 192.168.2.23 | 88.151.195.157 |
Nov 30, 2024 17:08:16.626065016 CET | 6166 | 48122 | 88.151.195.157 | 192.168.2.23 |
Nov 30, 2024 17:08:16.626223087 CET | 48122 | 6166 | 192.168.2.23 | 88.151.195.157 |
Nov 30, 2024 17:08:16.749979019 CET | 6166 | 48122 | 88.151.195.157 | 192.168.2.23 |
Nov 30, 2024 17:08:18.178755999 CET | 6166 | 48122 | 88.151.195.157 | 192.168.2.23 |
Nov 30, 2024 17:08:18.178982973 CET | 48122 | 6166 | 192.168.2.23 | 88.151.195.157 |
Nov 30, 2024 17:08:18.179198980 CET | 48122 | 6166 | 192.168.2.23 | 88.151.195.157 |
Nov 30, 2024 17:08:18.225222111 CET | 35656 | 16487 | 192.168.2.23 | 45.147.200.148 |
Nov 30, 2024 17:08:18.348299980 CET | 16487 | 35656 | 45.147.200.148 | 192.168.2.23 |
Nov 30, 2024 17:08:18.348465919 CET | 35656 | 16487 | 192.168.2.23 | 45.147.200.148 |
Nov 30, 2024 17:08:18.348465919 CET | 35656 | 16487 | 192.168.2.23 | 45.147.200.148 |
Nov 30, 2024 17:08:18.468657970 CET | 16487 | 35656 | 45.147.200.148 | 192.168.2.23 |
Nov 30, 2024 17:08:18.468801975 CET | 35656 | 16487 | 192.168.2.23 | 45.147.200.148 |
Nov 30, 2024 17:08:18.595227003 CET | 16487 | 35656 | 45.147.200.148 | 192.168.2.23 |
Nov 30, 2024 17:08:20.066804886 CET | 16487 | 35656 | 45.147.200.148 | 192.168.2.23 |
Nov 30, 2024 17:08:20.067126989 CET | 35656 | 16487 | 192.168.2.23 | 45.147.200.148 |
Nov 30, 2024 17:08:20.067126989 CET | 35656 | 16487 | 192.168.2.23 | 45.147.200.148 |
Nov 30, 2024 17:08:20.447798014 CET | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Nov 30, 2024 17:08:23.669425011 CET | 36750 | 21127 | 192.168.2.23 | 88.151.195.95 |
Nov 30, 2024 17:08:23.789411068 CET | 21127 | 36750 | 88.151.195.95 | 192.168.2.23 |
Nov 30, 2024 17:08:23.789580107 CET | 36750 | 21127 | 192.168.2.23 | 88.151.195.95 |
Nov 30, 2024 17:08:23.789580107 CET | 36750 | 21127 | 192.168.2.23 | 88.151.195.95 |
Nov 30, 2024 17:08:23.909555912 CET | 21127 | 36750 | 88.151.195.95 | 192.168.2.23 |
Nov 30, 2024 17:08:23.909734011 CET | 36750 | 21127 | 192.168.2.23 | 88.151.195.95 |
Nov 30, 2024 17:08:24.031685114 CET | 21127 | 36750 | 88.151.195.95 | 192.168.2.23 |
Nov 30, 2024 17:08:25.488576889 CET | 21127 | 36750 | 88.151.195.95 | 192.168.2.23 |
Nov 30, 2024 17:08:25.488779068 CET | 36750 | 21127 | 192.168.2.23 | 88.151.195.95 |
Nov 30, 2024 17:08:25.488779068 CET | 36750 | 21127 | 192.168.2.23 | 88.151.195.95 |
Nov 30, 2024 17:08:25.810712099 CET | 37992 | 2362 | 192.168.2.23 | 185.22.155.152 |
Nov 30, 2024 17:08:25.930655003 CET | 2362 | 37992 | 185.22.155.152 | 192.168.2.23 |
Nov 30, 2024 17:08:25.930843115 CET | 37992 | 2362 | 192.168.2.23 | 185.22.155.152 |
Nov 30, 2024 17:08:25.930843115 CET | 37992 | 2362 | 192.168.2.23 | 185.22.155.152 |
Nov 30, 2024 17:08:26.050951958 CET | 2362 | 37992 | 185.22.155.152 | 192.168.2.23 |
Nov 30, 2024 17:08:26.051208973 CET | 37992 | 2362 | 192.168.2.23 | 185.22.155.152 |
Nov 30, 2024 17:08:26.175127983 CET | 2362 | 37992 | 185.22.155.152 | 192.168.2.23 |
Nov 30, 2024 17:08:26.590971947 CET | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Nov 30, 2024 17:08:27.751645088 CET | 2362 | 37992 | 185.22.155.152 | 192.168.2.23 |
Nov 30, 2024 17:08:27.751934052 CET | 37992 | 2362 | 192.168.2.23 | 185.22.155.152 |
Nov 30, 2024 17:08:27.751934052 CET | 37992 | 2362 | 192.168.2.23 | 185.22.155.152 |
Nov 30, 2024 17:08:30.755947113 CET | 54044 | 14169 | 192.168.2.23 | 185.22.155.213 |
Nov 30, 2024 17:08:30.881165981 CET | 14169 | 54044 | 185.22.155.213 | 192.168.2.23 |
Nov 30, 2024 17:08:30.881325006 CET | 54044 | 14169 | 192.168.2.23 | 185.22.155.213 |
Nov 30, 2024 17:08:30.881325006 CET | 54044 | 14169 | 192.168.2.23 | 185.22.155.213 |
Nov 30, 2024 17:08:31.001390934 CET | 14169 | 54044 | 185.22.155.213 | 192.168.2.23 |
Nov 30, 2024 17:08:31.001529932 CET | 54044 | 14169 | 192.168.2.23 | 185.22.155.213 |
Nov 30, 2024 17:08:31.122203112 CET | 14169 | 54044 | 185.22.155.213 | 192.168.2.23 |
Nov 30, 2024 17:08:32.628724098 CET | 14169 | 54044 | 185.22.155.213 | 192.168.2.23 |
Nov 30, 2024 17:08:32.628967047 CET | 54044 | 14169 | 192.168.2.23 | 185.22.155.213 |
Nov 30, 2024 17:08:32.628967047 CET | 54044 | 14169 | 192.168.2.23 | 185.22.155.213 |
Nov 30, 2024 17:08:33.160216093 CET | 59168 | 4635 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:33.287097931 CET | 4635 | 59168 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:08:33.287270069 CET | 59168 | 4635 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:33.287270069 CET | 59168 | 4635 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:33.407206059 CET | 4635 | 59168 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:08:33.407360077 CET | 59168 | 4635 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:33.528187990 CET | 4635 | 59168 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:08:35.171571970 CET | 4635 | 59168 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:08:35.171674013 CET | 59168 | 4635 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:35.171767950 CET | 59168 | 4635 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:38.274457932 CET | 47996 | 18904 | 192.168.2.23 | 88.151.195.95 |
Nov 30, 2024 17:08:38.394416094 CET | 18904 | 47996 | 88.151.195.95 | 192.168.2.23 |
Nov 30, 2024 17:08:38.394550085 CET | 47996 | 18904 | 192.168.2.23 | 88.151.195.95 |
Nov 30, 2024 17:08:38.394562960 CET | 47996 | 18904 | 192.168.2.23 | 88.151.195.95 |
Nov 30, 2024 17:08:38.517189026 CET | 18904 | 47996 | 88.151.195.95 | 192.168.2.23 |
Nov 30, 2024 17:08:38.517430067 CET | 47996 | 18904 | 192.168.2.23 | 88.151.195.95 |
Nov 30, 2024 17:08:38.644226074 CET | 18904 | 47996 | 88.151.195.95 | 192.168.2.23 |
Nov 30, 2024 17:08:40.164841890 CET | 18904 | 47996 | 88.151.195.95 | 192.168.2.23 |
Nov 30, 2024 17:08:40.164957047 CET | 47996 | 18904 | 192.168.2.23 | 88.151.195.95 |
Nov 30, 2024 17:08:40.165096045 CET | 47996 | 18904 | 192.168.2.23 | 88.151.195.95 |
Nov 30, 2024 17:08:40.475860119 CET | 38506 | 4174 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:08:40.595808983 CET | 4174 | 38506 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:08:40.595889091 CET | 38506 | 4174 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:08:40.595911026 CET | 38506 | 4174 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:08:40.715857983 CET | 4174 | 38506 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:08:40.716101885 CET | 38506 | 4174 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:08:40.836004972 CET | 4174 | 38506 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:08:42.242490053 CET | 4174 | 38506 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:08:42.242810011 CET | 38506 | 4174 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:08:42.242846012 CET | 38506 | 4174 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:08:45.475898981 CET | 47110 | 23857 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:08:45.595889091 CET | 23857 | 47110 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:08:45.596121073 CET | 47110 | 23857 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:08:45.596285105 CET | 47110 | 23857 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:08:45.716810942 CET | 23857 | 47110 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:08:45.717125893 CET | 47110 | 23857 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:08:45.837126017 CET | 23857 | 47110 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:08:47.253575087 CET | 23857 | 47110 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:08:47.253653049 CET | 47110 | 23857 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:08:47.253746986 CET | 47110 | 23857 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:08:47.501296043 CET | 38090 | 16296 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:47.622117996 CET | 16296 | 38090 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:08:47.622236967 CET | 38090 | 16296 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:47.622400999 CET | 38090 | 16296 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:47.746865988 CET | 16296 | 38090 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:08:47.747083902 CET | 38090 | 16296 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:47.868757010 CET | 16296 | 38090 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:08:49.516370058 CET | 16296 | 38090 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:08:49.516854048 CET | 38090 | 16296 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:49.516854048 CET | 38090 | 16296 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:51.163472891 CET | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Nov 30, 2024 17:08:53.024013996 CET | 50504 | 8578 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:53.144083023 CET | 8578 | 50504 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:08:53.144233942 CET | 50504 | 8578 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:53.144337893 CET | 50504 | 8578 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:53.264301062 CET | 8578 | 50504 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:08:53.264409065 CET | 50504 | 8578 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:53.384536028 CET | 8578 | 50504 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:08:55.024777889 CET | 54022 | 7792 | 192.168.2.23 | 31.13.248.13 |
Nov 30, 2024 17:08:55.063688040 CET | 8578 | 50504 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:08:55.063925982 CET | 50504 | 8578 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:55.063993931 CET | 50504 | 8578 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:08:55.151779890 CET | 7792 | 54022 | 31.13.248.13 | 192.168.2.23 |
Nov 30, 2024 17:08:55.152012110 CET | 54022 | 7792 | 192.168.2.23 | 31.13.248.13 |
Nov 30, 2024 17:08:55.152231932 CET | 54022 | 7792 | 192.168.2.23 | 31.13.248.13 |
Nov 30, 2024 17:08:55.272140026 CET | 7792 | 54022 | 31.13.248.13 | 192.168.2.23 |
Nov 30, 2024 17:08:55.272253036 CET | 54022 | 7792 | 192.168.2.23 | 31.13.248.13 |
Nov 30, 2024 17:08:55.392287016 CET | 7792 | 54022 | 31.13.248.13 | 192.168.2.23 |
Nov 30, 2024 17:08:56.796535969 CET | 7792 | 54022 | 31.13.248.13 | 192.168.2.23 |
Nov 30, 2024 17:08:56.796760082 CET | 54022 | 7792 | 192.168.2.23 | 31.13.248.13 |
Nov 30, 2024 17:08:56.796777010 CET | 54022 | 7792 | 192.168.2.23 | 31.13.248.13 |
Nov 30, 2024 17:09:02.049370050 CET | 47030 | 3316 | 192.168.2.23 | 45.147.200.148 |
Nov 30, 2024 17:09:02.172123909 CET | 3316 | 47030 | 45.147.200.148 | 192.168.2.23 |
Nov 30, 2024 17:09:02.172249079 CET | 47030 | 3316 | 192.168.2.23 | 45.147.200.148 |
Nov 30, 2024 17:09:02.172271967 CET | 47030 | 3316 | 192.168.2.23 | 45.147.200.148 |
Nov 30, 2024 17:09:02.293277025 CET | 3316 | 47030 | 45.147.200.148 | 192.168.2.23 |
Nov 30, 2024 17:09:02.293520927 CET | 47030 | 3316 | 192.168.2.23 | 45.147.200.148 |
Nov 30, 2024 17:09:02.417821884 CET | 3316 | 47030 | 45.147.200.148 | 192.168.2.23 |
Nov 30, 2024 17:09:03.857587099 CET | 3316 | 47030 | 45.147.200.148 | 192.168.2.23 |
Nov 30, 2024 17:09:03.857882023 CET | 47030 | 3316 | 192.168.2.23 | 45.147.200.148 |
Nov 30, 2024 17:09:03.858095884 CET | 47030 | 3316 | 192.168.2.23 | 45.147.200.148 |
Nov 30, 2024 17:09:05.887526035 CET | 50510 | 8578 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:09:06.008315086 CET | 8578 | 50510 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:09:06.008390903 CET | 50510 | 8578 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:09:06.008632898 CET | 50510 | 8578 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:09:06.129798889 CET | 8578 | 50510 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:09:06.129926920 CET | 50510 | 8578 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:09:06.249825954 CET | 8578 | 50510 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:09:09.126476049 CET | 55024 | 20404 | 192.168.2.23 | 86.107.100.88 |
Nov 30, 2024 17:09:09.252114058 CET | 20404 | 55024 | 86.107.100.88 | 192.168.2.23 |
Nov 30, 2024 17:09:09.252412081 CET | 55024 | 20404 | 192.168.2.23 | 86.107.100.88 |
Nov 30, 2024 17:09:09.252485037 CET | 55024 | 20404 | 192.168.2.23 | 86.107.100.88 |
Nov 30, 2024 17:09:09.372415066 CET | 20404 | 55024 | 86.107.100.88 | 192.168.2.23 |
Nov 30, 2024 17:09:09.372656107 CET | 55024 | 20404 | 192.168.2.23 | 86.107.100.88 |
Nov 30, 2024 17:09:09.493225098 CET | 20404 | 55024 | 86.107.100.88 | 192.168.2.23 |
Nov 30, 2024 17:09:11.328993082 CET | 20404 | 55024 | 86.107.100.88 | 192.168.2.23 |
Nov 30, 2024 17:09:11.329266071 CET | 55024 | 20404 | 192.168.2.23 | 86.107.100.88 |
Nov 30, 2024 17:09:11.329391003 CET | 55024 | 20404 | 192.168.2.23 | 86.107.100.88 |
Nov 30, 2024 17:09:11.640748978 CET | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Nov 30, 2024 17:09:16.017539024 CET | 50510 | 8578 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:09:16.141737938 CET | 8578 | 50510 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:09:16.759700060 CET | 8578 | 50510 | 212.192.15.158 | 192.168.2.23 |
Nov 30, 2024 17:09:16.759918928 CET | 50510 | 8578 | 192.168.2.23 | 212.192.15.158 |
Nov 30, 2024 17:09:16.885552883 CET | 41716 | 13417 | 192.168.2.23 | 194.58.66.244 |
Nov 30, 2024 17:09:17.006308079 CET | 13417 | 41716 | 194.58.66.244 | 192.168.2.23 |
Nov 30, 2024 17:09:17.006369114 CET | 41716 | 13417 | 192.168.2.23 | 194.58.66.244 |
Nov 30, 2024 17:09:17.006383896 CET | 41716 | 13417 | 192.168.2.23 | 194.58.66.244 |
Nov 30, 2024 17:09:17.126261950 CET | 13417 | 41716 | 194.58.66.244 | 192.168.2.23 |
Nov 30, 2024 17:09:17.126346111 CET | 41716 | 13417 | 192.168.2.23 | 194.58.66.244 |
Nov 30, 2024 17:09:17.246239901 CET | 13417 | 41716 | 194.58.66.244 | 192.168.2.23 |
Nov 30, 2024 17:09:18.640151024 CET | 13417 | 41716 | 194.58.66.244 | 192.168.2.23 |
Nov 30, 2024 17:09:18.640276909 CET | 41716 | 13417 | 192.168.2.23 | 194.58.66.244 |
Nov 30, 2024 17:09:18.640311956 CET | 41716 | 13417 | 192.168.2.23 | 194.58.66.244 |
Nov 30, 2024 17:09:23.922431946 CET | 40876 | 1314 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:09:24.049257994 CET | 1314 | 40876 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:09:24.049316883 CET | 40876 | 1314 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:09:24.049338102 CET | 40876 | 1314 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:09:24.173691034 CET | 1314 | 40876 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:09:24.173738956 CET | 40876 | 1314 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:09:24.293625116 CET | 1314 | 40876 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:09:34.055532932 CET | 40876 | 1314 | 192.168.2.23 | 45.140.168.235 |
Nov 30, 2024 17:09:34.176083088 CET | 1314 | 40876 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:09:34.645437956 CET | 1314 | 40876 | 45.140.168.235 | 192.168.2.23 |
Nov 30, 2024 17:09:34.645616055 CET | 40876 | 1314 | 192.168.2.23 | 45.140.168.235 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Nov 30, 2024 17:07:48.205975056 CET | 55611 | 53 | 192.168.2.23 | 213.202.211.221 |
Nov 30, 2024 17:07:48.331846952 CET | 45018 | 53 | 192.168.2.23 | 213.202.211.221 |
Nov 30, 2024 17:07:48.443722963 CET | 53 | 55611 | 213.202.211.221 | 192.168.2.23 |
Nov 30, 2024 17:07:48.564640999 CET | 53 | 45018 | 213.202.211.221 | 192.168.2.23 |
Nov 30, 2024 17:07:55.158910036 CET | 42125 | 53 | 192.168.2.23 | 185.181.61.24 |
Nov 30, 2024 17:07:55.420135021 CET | 53 | 42125 | 185.181.61.24 | 192.168.2.23 |
Nov 30, 2024 17:07:55.421238899 CET | 40527 | 53 | 192.168.2.23 | 152.53.15.127 |
Nov 30, 2024 17:07:55.666790962 CET | 53 | 40527 | 152.53.15.127 | 192.168.2.23 |
Nov 30, 2024 17:07:55.721607924 CET | 50127 | 53 | 192.168.2.23 | 185.181.61.24 |
Nov 30, 2024 17:07:55.985451937 CET | 53 | 50127 | 185.181.61.24 | 192.168.2.23 |
Nov 30, 2024 17:07:55.986766100 CET | 49159 | 53 | 192.168.2.23 | 152.53.15.127 |
Nov 30, 2024 17:07:56.234721899 CET | 53 | 49159 | 152.53.15.127 | 192.168.2.23 |
Nov 30, 2024 17:08:02.487356901 CET | 37868 | 53 | 192.168.2.23 | 81.169.136.222 |
Nov 30, 2024 17:08:02.654839039 CET | 57074 | 53 | 192.168.2.23 | 81.169.136.222 |
Nov 30, 2024 17:08:02.728209972 CET | 53 | 37868 | 81.169.136.222 | 192.168.2.23 |
Nov 30, 2024 17:08:02.730046988 CET | 44222 | 53 | 192.168.2.23 | 168.235.111.72 |
Nov 30, 2024 17:08:02.893553019 CET | 53 | 57074 | 81.169.136.222 | 192.168.2.23 |
Nov 30, 2024 17:08:02.895329952 CET | 50580 | 53 | 192.168.2.23 | 168.235.111.72 |
Nov 30, 2024 17:08:03.038801908 CET | 53 | 44222 | 168.235.111.72 | 192.168.2.23 |
Nov 30, 2024 17:08:03.205743074 CET | 53 | 50580 | 168.235.111.72 | 192.168.2.23 |
Nov 30, 2024 17:08:10.102272034 CET | 49366 | 53 | 192.168.2.23 | 80.152.203.134 |
Nov 30, 2024 17:08:10.359653950 CET | 53 | 49366 | 80.152.203.134 | 192.168.2.23 |
Nov 30, 2024 17:08:10.360838890 CET | 45924 | 53 | 192.168.2.23 | 109.91.184.21 |
Nov 30, 2024 17:08:10.549845934 CET | 46009 | 53 | 192.168.2.23 | 80.152.203.134 |
Nov 30, 2024 17:08:10.636806011 CET | 53 | 45924 | 109.91.184.21 | 192.168.2.23 |
Nov 30, 2024 17:08:10.637945890 CET | 46616 | 53 | 192.168.2.23 | 152.53.15.127 |
Nov 30, 2024 17:08:10.879436970 CET | 53 | 46616 | 152.53.15.127 | 192.168.2.23 |
Nov 30, 2024 17:08:10.880880117 CET | 41603 | 53 | 192.168.2.23 | 80.152.203.134 |
Nov 30, 2024 17:08:11.167131901 CET | 53 | 41603 | 80.152.203.134 | 192.168.2.23 |
Nov 30, 2024 17:08:15.553653002 CET | 48476 | 53 | 192.168.2.23 | 109.91.184.21 |
Nov 30, 2024 17:08:15.824167013 CET | 53 | 48476 | 109.91.184.21 | 192.168.2.23 |
Nov 30, 2024 17:08:15.824997902 CET | 54430 | 53 | 192.168.2.23 | 152.53.15.127 |
Nov 30, 2024 17:08:16.075016022 CET | 53 | 54430 | 152.53.15.127 | 192.168.2.23 |
Nov 30, 2024 17:08:16.076097012 CET | 41261 | 53 | 192.168.2.23 | 80.152.203.134 |
Nov 30, 2024 17:08:16.375890017 CET | 53 | 41261 | 80.152.203.134 | 192.168.2.23 |
Nov 30, 2024 17:08:17.976227045 CET | 49492 | 53 | 192.168.2.23 | 152.53.15.127 |
Nov 30, 2024 17:08:18.224692106 CET | 53 | 49492 | 152.53.15.127 | 192.168.2.23 |
Nov 30, 2024 17:08:23.180211067 CET | 38690 | 53 | 192.168.2.23 | 152.53.15.127 |
Nov 30, 2024 17:08:23.427063942 CET | 53 | 38690 | 152.53.15.127 | 192.168.2.23 |
Nov 30, 2024 17:08:23.427936077 CET | 39415 | 53 | 192.168.2.23 | 81.169.136.222 |
Nov 30, 2024 17:08:23.668930054 CET | 53 | 39415 | 81.169.136.222 | 192.168.2.23 |
Nov 30, 2024 17:08:25.068442106 CET | 38939 | 53 | 192.168.2.23 | 81.169.136.222 |
Nov 30, 2024 17:08:25.308032990 CET | 53 | 38939 | 81.169.136.222 | 192.168.2.23 |
Nov 30, 2024 17:08:25.309093952 CET | 57045 | 53 | 192.168.2.23 | 185.181.61.24 |
Nov 30, 2024 17:08:25.566200972 CET | 53 | 57045 | 185.181.61.24 | 192.168.2.23 |
Nov 30, 2024 17:08:25.567193985 CET | 34812 | 53 | 192.168.2.23 | 194.36.144.87 |
Nov 30, 2024 17:08:25.810122967 CET | 53 | 34812 | 194.36.144.87 | 192.168.2.23 |
Nov 30, 2024 17:08:30.489727020 CET | 58330 | 53 | 192.168.2.23 | 185.181.61.24 |
Nov 30, 2024 17:08:30.755467892 CET | 53 | 58330 | 185.181.61.24 | 192.168.2.23 |
Nov 30, 2024 17:08:32.753623009 CET | 54488 | 53 | 192.168.2.23 | 168.138.12.137 |
Nov 30, 2024 17:08:33.159110069 CET | 53 | 54488 | 168.138.12.137 | 192.168.2.23 |
Nov 30, 2024 17:08:37.630394936 CET | 34904 | 53 | 192.168.2.23 | 213.202.211.221 |
Nov 30, 2024 17:08:37.862598896 CET | 53 | 34904 | 213.202.211.221 | 192.168.2.23 |
Nov 30, 2024 17:08:37.863560915 CET | 34050 | 53 | 192.168.2.23 | 168.138.12.137 |
Nov 30, 2024 17:08:38.273677111 CET | 53 | 34050 | 168.138.12.137 | 192.168.2.23 |
Nov 30, 2024 17:08:40.173043013 CET | 53824 | 53 | 192.168.2.23 | 168.235.111.72 |
Nov 30, 2024 17:08:40.475157022 CET | 53 | 53824 | 168.235.111.72 | 192.168.2.23 |
Nov 30, 2024 17:08:45.167047977 CET | 57515 | 53 | 192.168.2.23 | 168.235.111.72 |
Nov 30, 2024 17:08:45.474922895 CET | 53 | 57515 | 168.235.111.72 | 192.168.2.23 |
Nov 30, 2024 17:08:47.244801044 CET | 45268 | 53 | 192.168.2.23 | 152.53.15.127 |
Nov 30, 2024 17:08:47.500509024 CET | 53 | 45268 | 152.53.15.127 | 192.168.2.23 |
Nov 30, 2024 17:08:52.254914999 CET | 35463 | 53 | 192.168.2.23 | 152.53.15.127 |
Nov 30, 2024 17:08:52.501620054 CET | 53 | 35463 | 152.53.15.127 | 192.168.2.23 |
Nov 30, 2024 17:08:52.502937078 CET | 58406 | 53 | 192.168.2.23 | 152.53.15.127 |
Nov 30, 2024 17:08:52.757786036 CET | 53 | 58406 | 152.53.15.127 | 192.168.2.23 |
Nov 30, 2024 17:08:52.759130955 CET | 48227 | 53 | 192.168.2.23 | 185.181.61.24 |
Nov 30, 2024 17:08:53.023102045 CET | 53 | 48227 | 185.181.61.24 | 192.168.2.23 |
Nov 30, 2024 17:08:54.519171953 CET | 33938 | 53 | 192.168.2.23 | 194.36.144.87 |
Nov 30, 2024 17:08:54.765800953 CET | 53 | 33938 | 194.36.144.87 | 192.168.2.23 |
Nov 30, 2024 17:08:54.767664909 CET | 46334 | 53 | 192.168.2.23 | 80.152.203.134 |
Nov 30, 2024 17:08:55.023653984 CET | 53 | 46334 | 80.152.203.134 | 192.168.2.23 |
Nov 30, 2024 17:09:00.065745115 CET | 44276 | 53 | 192.168.2.23 | 202.61.197.122 |
Nov 30, 2024 17:09:00.309792995 CET | 53 | 44276 | 202.61.197.122 | 192.168.2.23 |
Nov 30, 2024 17:09:00.311187983 CET | 44871 | 53 | 192.168.2.23 | 109.91.184.21 |
Nov 30, 2024 17:09:00.613759995 CET | 53 | 44871 | 109.91.184.21 | 192.168.2.23 |
Nov 30, 2024 17:09:00.615048885 CET | 44573 | 53 | 192.168.2.23 | 109.91.184.21 |
Nov 30, 2024 17:09:01.799272060 CET | 37755 | 53 | 192.168.2.23 | 194.36.144.87 |
Nov 30, 2024 17:09:02.048347950 CET | 53 | 37755 | 194.36.144.87 | 192.168.2.23 |
Nov 30, 2024 17:09:05.620733023 CET | 36349 | 53 | 192.168.2.23 | 185.181.61.24 |
Nov 30, 2024 17:09:05.886563063 CET | 53 | 36349 | 185.181.61.24 | 192.168.2.23 |
Nov 30, 2024 17:09:08.860661983 CET | 48281 | 53 | 192.168.2.23 | 109.91.184.21 |
Nov 30, 2024 17:09:09.125374079 CET | 53 | 48281 | 109.91.184.21 | 192.168.2.23 |
Nov 30, 2024 17:09:16.331507921 CET | 49001 | 53 | 192.168.2.23 | 81.169.136.222 |
Nov 30, 2024 17:09:16.571327925 CET | 53 | 49001 | 81.169.136.222 | 192.168.2.23 |
Nov 30, 2024 17:09:16.572113037 CET | 53571 | 53 | 192.168.2.23 | 168.235.111.72 |
Nov 30, 2024 17:09:16.885023117 CET | 53 | 53571 | 168.235.111.72 | 192.168.2.23 |
Nov 30, 2024 17:09:23.641329050 CET | 58581 | 53 | 192.168.2.23 | 109.91.184.21 |
Nov 30, 2024 17:09:23.922044992 CET | 53 | 58581 | 109.91.184.21 | 192.168.2.23 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Nov 30, 2024 17:07:48.205975056 CET | 192.168.2.23 | 213.202.211.221 | 0xa63b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:07:48.331846952 CET | 192.168.2.23 | 213.202.211.221 | 0xa63b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:07:55.158910036 CET | 192.168.2.23 | 185.181.61.24 | 0x9ed3 | Standard query (0) | 256 | 347 | false | |
Nov 30, 2024 17:07:55.421238899 CET | 192.168.2.23 | 152.53.15.127 | 0x1a3b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:07:55.721607924 CET | 192.168.2.23 | 185.181.61.24 | 0x9ed3 | Standard query (0) | 256 | 347 | false | |
Nov 30, 2024 17:07:55.986766100 CET | 192.168.2.23 | 152.53.15.127 | 0x1a3b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:02.487356901 CET | 192.168.2.23 | 81.169.136.222 | 0xa5b9 | Standard query (0) | 256 | 354 | false | |
Nov 30, 2024 17:08:02.654839039 CET | 192.168.2.23 | 81.169.136.222 | 0xa5b9 | Standard query (0) | 256 | 354 | false | |
Nov 30, 2024 17:08:02.730046988 CET | 192.168.2.23 | 168.235.111.72 | 0x1846 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:02.895329952 CET | 192.168.2.23 | 168.235.111.72 | 0x1846 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:10.102272034 CET | 192.168.2.23 | 80.152.203.134 | 0xf6f4 | Standard query (0) | 256 | 362 | false | |
Nov 30, 2024 17:08:10.360838890 CET | 192.168.2.23 | 109.91.184.21 | 0x5c7e | Standard query (0) | 256 | 362 | false | |
Nov 30, 2024 17:08:10.549845934 CET | 192.168.2.23 | 80.152.203.134 | 0xf6f4 | Standard query (0) | 256 | 362 | false | |
Nov 30, 2024 17:08:10.637945890 CET | 192.168.2.23 | 152.53.15.127 | 0x9352 | Standard query (0) | 256 | 362 | false | |
Nov 30, 2024 17:08:10.880880117 CET | 192.168.2.23 | 80.152.203.134 | 0x4458 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:15.553653002 CET | 192.168.2.23 | 109.91.184.21 | 0x5c7e | Standard query (0) | 256 | 367 | false | |
Nov 30, 2024 17:08:15.824997902 CET | 192.168.2.23 | 152.53.15.127 | 0x9352 | Standard query (0) | 256 | 368 | false | |
Nov 30, 2024 17:08:16.076097012 CET | 192.168.2.23 | 80.152.203.134 | 0x4458 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:17.976227045 CET | 192.168.2.23 | 152.53.15.127 | 0xee65 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:23.180211067 CET | 192.168.2.23 | 152.53.15.127 | 0xee65 | Standard query (0) | 256 | 375 | false | |
Nov 30, 2024 17:08:23.427936077 CET | 192.168.2.23 | 81.169.136.222 | 0x2f23 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:25.068442106 CET | 192.168.2.23 | 81.169.136.222 | 0x50dd | Standard query (0) | 256 | 377 | false | |
Nov 30, 2024 17:08:25.309093952 CET | 192.168.2.23 | 185.181.61.24 | 0xca02 | Standard query (0) | 256 | 377 | false | |
Nov 30, 2024 17:08:25.567193985 CET | 192.168.2.23 | 194.36.144.87 | 0xe054 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:30.489727020 CET | 192.168.2.23 | 185.181.61.24 | 0xca02 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:32.753623009 CET | 192.168.2.23 | 168.138.12.137 | 0x821 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:37.630394936 CET | 192.168.2.23 | 213.202.211.221 | 0xff98 | Standard query (0) | 256 | 389 | false | |
Nov 30, 2024 17:08:37.863560915 CET | 192.168.2.23 | 168.138.12.137 | 0x821 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:40.173043013 CET | 192.168.2.23 | 168.235.111.72 | 0xd8e8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:45.167047977 CET | 192.168.2.23 | 168.235.111.72 | 0xd8e8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:47.244801044 CET | 192.168.2.23 | 152.53.15.127 | 0x4e60 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:52.254914999 CET | 192.168.2.23 | 152.53.15.127 | 0x4e60 | Standard query (0) | 256 | 404 | false | |
Nov 30, 2024 17:08:52.502937078 CET | 192.168.2.23 | 152.53.15.127 | 0xa349 | Standard query (0) | 256 | 404 | false | |
Nov 30, 2024 17:08:52.759130955 CET | 192.168.2.23 | 185.181.61.24 | 0x6dd8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:08:54.519171953 CET | 192.168.2.23 | 194.36.144.87 | 0x534f | Standard query (0) | 256 | 406 | false | |
Nov 30, 2024 17:08:54.767664909 CET | 192.168.2.23 | 80.152.203.134 | 0x65df | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:09:00.065745115 CET | 192.168.2.23 | 202.61.197.122 | 0x450f | Standard query (0) | 256 | 412 | false | |
Nov 30, 2024 17:09:00.311187983 CET | 192.168.2.23 | 109.91.184.21 | 0x92ec | Standard query (0) | 256 | 412 | false | |
Nov 30, 2024 17:09:00.615048885 CET | 192.168.2.23 | 109.91.184.21 | 0x4a9c | Standard query (0) | 256 | 413 | false | |
Nov 30, 2024 17:09:01.799272060 CET | 192.168.2.23 | 194.36.144.87 | 0x68b5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:09:05.620733023 CET | 192.168.2.23 | 185.181.61.24 | 0xe4c4 | Standard query (0) | 256 | 417 | false | |
Nov 30, 2024 17:09:08.860661983 CET | 192.168.2.23 | 109.91.184.21 | 0x4a9c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:09:16.331507921 CET | 192.168.2.23 | 81.169.136.222 | 0x2fd7 | Standard query (0) | 256 | 428 | false | |
Nov 30, 2024 17:09:16.572113037 CET | 192.168.2.23 | 168.235.111.72 | 0xe9e3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 30, 2024 17:09:23.641329050 CET | 192.168.2.23 | 109.91.184.21 | 0x81e1 | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Nov 30, 2024 17:08:10.359653950 CET | 80.152.203.134 | 192.168.2.23 | 0xf6f4 | Format error (1) | none | none | 256 | 362 | false | |
Nov 30, 2024 17:08:10.636806011 CET | 109.91.184.21 | 192.168.2.23 | 0x5c7e | Not Implemented (4) | none | none | 256 | 362 | false | |
Nov 30, 2024 17:08:10.879436970 CET | 152.53.15.127 | 192.168.2.23 | 0x9352 | Format error (1) | none | none | 256 | 362 | false | |
Nov 30, 2024 17:08:15.824167013 CET | 109.91.184.21 | 192.168.2.23 | 0x5c7e | Not Implemented (4) | none | none | 256 | 367 | false | |
Nov 30, 2024 17:08:16.075016022 CET | 152.53.15.127 | 192.168.2.23 | 0x9352 | Format error (1) | none | none | 256 | 368 | false | |
Nov 30, 2024 17:08:23.427063942 CET | 152.53.15.127 | 192.168.2.23 | 0xee65 | Format error (1) | none | none | 256 | 375 | false | |
Nov 30, 2024 17:08:52.501620054 CET | 152.53.15.127 | 192.168.2.23 | 0x4e60 | Format error (1) | none | none | 256 | 404 | false | |
Nov 30, 2024 17:08:52.757786036 CET | 152.53.15.127 | 192.168.2.23 | 0xa349 | Format error (1) | none | none | 256 | 404 | false | |
Nov 30, 2024 17:08:54.765800953 CET | 194.36.144.87 | 192.168.2.23 | 0x534f | Format error (1) | none | none | 256 | 406 | false | |
Nov 30, 2024 17:09:00.613759995 CET | 109.91.184.21 | 192.168.2.23 | 0x92ec | Format error (1) | none | none | 256 | 412 | false |
System Behavior
Start time (UTC): | 16:07:47 |
Start date (UTC): | 30/11/2024 |
Path: | /tmp/hmips.elf |
Arguments: | /tmp/hmips.elf |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 16:07:47 |
Start date (UTC): | 30/11/2024 |
Path: | /tmp/hmips.elf |
Arguments: | - |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 16:07:47 |
Start date (UTC): | 30/11/2024 |
Path: | /tmp/hmips.elf |
Arguments: | - |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 16:07:47 |
Start date (UTC): | 30/11/2024 |
Path: | /tmp/hmips.elf |
Arguments: | - |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 16:07:47 |
Start date (UTC): | 30/11/2024 |
Path: | /usr/bin/dash |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 16:07:47 |
Start date (UTC): | 30/11/2024 |
Path: | /usr/bin/rm |
Arguments: | rm -f /tmp/tmp.wBpWrLnOHs /tmp/tmp.lxpWIfcPe9 /tmp/tmp.dpXOAfBeXb |
File size: | 72056 bytes |
MD5 hash: | aa2b5496fdbfd88e38791ab81f90b95b |
Start time (UTC): | 16:07:47 |
Start date (UTC): | 30/11/2024 |
Path: | /usr/bin/dash |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 16:07:47 |
Start date (UTC): | 30/11/2024 |
Path: | /usr/bin/rm |
Arguments: | rm -f /tmp/tmp.wBpWrLnOHs /tmp/tmp.lxpWIfcPe9 /tmp/tmp.dpXOAfBeXb |
File size: | 72056 bytes |
MD5 hash: | aa2b5496fdbfd88e38791ab81f90b95b |