Loading Joe Sandbox Report ...

Edit tour

Linux Analysis Report
Aqua.dbg.elf

Overview

General Information

Sample name:Aqua.dbg.elf
Analysis ID:1580715
MD5:7e891c97b21f2dfbd8185c6b4c67e62a
SHA1:6955f6d5f11b408aa192a7cec59df872d09f6d1a
SHA256:df35a88ae415b194914dea1e7e7d8978468858a24e88471b1587e7fff9925344
Tags:elfuser-abuse_ch
Infos:

Detection

Score:72
Range:0 - 100
Whitelisted:false

Signatures

Antivirus / Scanner detection for submitted sample
Malicious sample detected (through community Yara rule)
Multi AV Scanner detection for submitted file
Machine Learning detection for sample
Sample deletes itself
Sample has stripped symbol table
Yara signature match

Classification

Joe Sandbox version:41.0.0 Charoite
Analysis ID:1580715
Start date and time:2024-12-25 17:51:57 +01:00
Joe Sandbox product:CloudBasic
Overall analysis duration:0h 6m 46s
Hypervisor based Inspection enabled:false
Report type:full
Cookbook file name:defaultlinuxfilecookbook.jbs
Analysis system description:Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11)
Analysis Mode:default
Sample name:Aqua.dbg.elf
Detection:MAL
Classification:mal72.evad.linELF@0/0@80/0
Command:/tmp/Aqua.dbg.elf
PID:5573
Exit Code:
Exit Code Info:
Killed:True
Standard Output:
about to cum inside a femboy btw
[main] created new process group
[main/ensure] no other instance detected, joining botnet
[main] failed to hide cmdline name, continuing anyway
[main/conn]: attempting to connect to cnc
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[main/conn]: error while connecting to C&C (errno: 111)
[main/conn]: attempting to connect to cnc
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[main/conn]: error while connecting to C&C (errno: 111)
[main/conn]: attempting to connect to cnc
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[main/conn]: error while connecting to C&C (errno: 111)
[main/conn]: attempting to connect to cnc
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[main/conn]: error while connecting to C&C (errno: 111)
[main/conn]: attempting to connect to cnc
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[main/conn]: error while connecting to C&C (errno: 111)
[main/conn]: attempting to connect to cnc
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[main/conn]: error while connecting to C&C (errno: 111)
[main/conn]: attempting to connect to cnc
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
[resolv] Got response from select
Resolved 45.148.10.84 to 0 IPv4 addresses
[main] Failed to resolve CNC address
[resolv] Got response from select
[resolv] Got response from select
Standard Error:
  • system is lnxubuntu20
  • Aqua.dbg.elf (PID: 5573, Parent: 5493, MD5: 7e891c97b21f2dfbd8185c6b4c67e62a) Arguments: /tmp/Aqua.dbg.elf
  • cleanup
SourceRuleDescriptionAuthorStrings
Aqua.dbg.elfLinux_Trojan_Gafgyt_9e9530a7unknownunknown
  • 0x85ec:$a: F6 48 63 FF B8 36 00 00 00 0F 05 48 3D 00 F0 FF FF 48 89 C3
Aqua.dbg.elfLinux_Trojan_Gafgyt_807911a2unknownunknown
  • 0x8ddb:$a: FE 48 39 F3 0F 94 C2 48 83 F9 FF 0F 94 C0 84 D0 74 16 4B 8D
Aqua.dbg.elfLinux_Trojan_Gafgyt_d4227dbfunknownunknown
  • 0x688e:$a: FF 48 81 EC D0 00 00 00 48 8D 84 24 E0 00 00 00 48 89 54 24 30 C7 04 24 18 00
  • 0xa534:$a: FF 48 81 EC D0 00 00 00 48 8D 84 24 E0 00 00 00 48 89 54 24 30 C7 04 24 18 00
Aqua.dbg.elfLinux_Trojan_Gafgyt_d996d335unknownunknown
  • 0xb1ae:$a: D0 EB 0F 40 38 37 75 04 48 89 F8 C3 49 FF C8 48 FF C7 4D 85 C0
Aqua.dbg.elfLinux_Trojan_Gafgyt_620087b9unknownunknown
  • 0x899b:$a: 48 89 D8 48 83 C8 01 EB 04 48 8B 76 10 48 3B 46 08 72 F6 48 8B
Click to see the 5 entries
SourceRuleDescriptionAuthorStrings
5573.1.0000000000400000.000000000040e000.r-x.sdmpLinux_Trojan_Gafgyt_9e9530a7unknownunknown
  • 0x85ec:$a: F6 48 63 FF B8 36 00 00 00 0F 05 48 3D 00 F0 FF FF 48 89 C3
5573.1.0000000000400000.000000000040e000.r-x.sdmpLinux_Trojan_Gafgyt_807911a2unknownunknown
  • 0x8ddb:$a: FE 48 39 F3 0F 94 C2 48 83 F9 FF 0F 94 C0 84 D0 74 16 4B 8D
5573.1.0000000000400000.000000000040e000.r-x.sdmpLinux_Trojan_Gafgyt_d4227dbfunknownunknown
  • 0x688e:$a: FF 48 81 EC D0 00 00 00 48 8D 84 24 E0 00 00 00 48 89 54 24 30 C7 04 24 18 00
  • 0xa534:$a: FF 48 81 EC D0 00 00 00 48 8D 84 24 E0 00 00 00 48 89 54 24 30 C7 04 24 18 00
5573.1.0000000000400000.000000000040e000.r-x.sdmpLinux_Trojan_Gafgyt_d996d335unknownunknown
  • 0xb1ae:$a: D0 EB 0F 40 38 37 75 04 48 89 F8 C3 49 FF C8 48 FF C7 4D 85 C0
5573.1.0000000000400000.000000000040e000.r-x.sdmpLinux_Trojan_Gafgyt_620087b9unknownunknown
  • 0x899b:$a: 48 89 D8 48 83 C8 01 EB 04 48 8B 76 10 48 3B 46 08 72 F6 48 8B
Click to see the 5 entries
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: Aqua.dbg.elfAvira: detected
Source: Aqua.dbg.elfVirustotal: Detection: 34%Perma Link
Source: Aqua.dbg.elfReversingLabs: Detection: 34%
Source: Aqua.dbg.elfJoe Sandbox ML: detected
Source: global trafficDNS traffic detected: DNS query: 45.148.10.84
Source: global trafficDNS traffic detected: DNS query: daisy.ubuntu.com

System Summary

barindex
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_9e9530a7 Author: unknown
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_807911a2 Author: unknown
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_d4227dbf Author: unknown
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_d996d335 Author: unknown
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_620087b9 Author: unknown
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_33b4111a Author: unknown
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_520deeb8 Author: unknown
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_449937aa Author: unknown
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_01e4a728 Author: unknown
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_e0cf29e2 Author: unknown
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_9e9530a7 Author: unknown
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_807911a2 Author: unknown
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_d4227dbf Author: unknown
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_d996d335 Author: unknown
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_620087b9 Author: unknown
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_33b4111a Author: unknown
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_520deeb8 Author: unknown
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_449937aa Author: unknown
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_01e4a728 Author: unknown
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_e0cf29e2 Author: unknown
Source: ELF static info symbol of initial sample.symtab present: no
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_9e9530a7 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = d6ad6512051e87c8c35dc168d82edd071b122d026dce21d39b9782b3d6a01e50, id = 9e9530a7-ad4d-4a44-b764-437b7621052f, last_modified = 2021-09-16
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_807911a2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = f409037091b7372f5a42bbe437316bd11c655e7a5fe1fcf83d1981cb5c4a389f, id = 807911a2-f6ec-4e65-924f-61cb065dafc6, last_modified = 2021-09-16
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_d4227dbf reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 58c4b1d4d167876b64cfa10f609911a80284180e4db093917fea16fae8ccd4e3, id = d4227dbf-6ab4-4637-a6ba-0e604acaafb4, last_modified = 2021-09-16
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_d996d335 reference_sample = b511eacd4b44744c8cf82d1b4a9bc6f1022fe6be7c5d17356b171f727ddc6eda, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = e9ccb8412f32187c309b0e9afcc3a6da21ad2f1ffa251c27f9f720ccb284e3ac, id = d996d335-e049-4052-bf36-6cd07c911a8b, last_modified = 2021-09-16
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_620087b9 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 06cd7e6eb62352ec2ccb9ed48e58c0583c02fefd137cd048d053ab30b5330307, id = 620087b9-c87d-4752-89e8-ca1c16486b28, last_modified = 2021-09-16
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_33b4111a reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 9c3b63b9a0f54006bae12abcefdb518904a85f78be573f0780f0a265b12d2d6e, id = 33b4111a-e59e-48db-9d74-34ca44fcd9f5, last_modified = 2021-09-16
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_520deeb8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f4dfd1d76e07ff875eedfe0ef4f861bee1e4d8e66d68385f602f29cc35e30cca, id = 520deeb8-cbc0-4225-8d23-adba5e040471, last_modified = 2021-09-16
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_449937aa reference_sample = 6f27766534445cffb097c7c52db1fca53b2210c1b10b75594f77c34dc8b994fe, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = cf2c6b86830099f039b41aeaafbffedfb8294a1124c499e99a11f48a06cd1dfd, id = 449937aa-682a-4906-89ab-80d7127e461e, last_modified = 2021-09-16
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_01e4a728 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = d90477364982bdc6cd22079c245d866454475749f762620273091f2fab73c196, id = 01e4a728-7c1c-479b-aed0-cb76d64dbb02, last_modified = 2021-09-16
Source: Aqua.dbg.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_e0cf29e2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 3f124c3c9f124264dfbbcca1e4b4d7cfcf3274170d4bf8966b6559045873948f, id = e0cf29e2-88d7-4aa4-b60a-c24626f2b246, last_modified = 2021-09-16
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_9e9530a7 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = d6ad6512051e87c8c35dc168d82edd071b122d026dce21d39b9782b3d6a01e50, id = 9e9530a7-ad4d-4a44-b764-437b7621052f, last_modified = 2021-09-16
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_807911a2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = f409037091b7372f5a42bbe437316bd11c655e7a5fe1fcf83d1981cb5c4a389f, id = 807911a2-f6ec-4e65-924f-61cb065dafc6, last_modified = 2021-09-16
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_d4227dbf reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 58c4b1d4d167876b64cfa10f609911a80284180e4db093917fea16fae8ccd4e3, id = d4227dbf-6ab4-4637-a6ba-0e604acaafb4, last_modified = 2021-09-16
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_d996d335 reference_sample = b511eacd4b44744c8cf82d1b4a9bc6f1022fe6be7c5d17356b171f727ddc6eda, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = e9ccb8412f32187c309b0e9afcc3a6da21ad2f1ffa251c27f9f720ccb284e3ac, id = d996d335-e049-4052-bf36-6cd07c911a8b, last_modified = 2021-09-16
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_620087b9 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 06cd7e6eb62352ec2ccb9ed48e58c0583c02fefd137cd048d053ab30b5330307, id = 620087b9-c87d-4752-89e8-ca1c16486b28, last_modified = 2021-09-16
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_33b4111a reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 9c3b63b9a0f54006bae12abcefdb518904a85f78be573f0780f0a265b12d2d6e, id = 33b4111a-e59e-48db-9d74-34ca44fcd9f5, last_modified = 2021-09-16
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_520deeb8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f4dfd1d76e07ff875eedfe0ef4f861bee1e4d8e66d68385f602f29cc35e30cca, id = 520deeb8-cbc0-4225-8d23-adba5e040471, last_modified = 2021-09-16
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_449937aa reference_sample = 6f27766534445cffb097c7c52db1fca53b2210c1b10b75594f77c34dc8b994fe, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = cf2c6b86830099f039b41aeaafbffedfb8294a1124c499e99a11f48a06cd1dfd, id = 449937aa-682a-4906-89ab-80d7127e461e, last_modified = 2021-09-16
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_01e4a728 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = d90477364982bdc6cd22079c245d866454475749f762620273091f2fab73c196, id = 01e4a728-7c1c-479b-aed0-cb76d64dbb02, last_modified = 2021-09-16
Source: 5573.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_e0cf29e2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 3f124c3c9f124264dfbbcca1e4b4d7cfcf3274170d4bf8966b6559045873948f, id = e0cf29e2-88d7-4aa4-b60a-c24626f2b246, last_modified = 2021-09-16
Source: classification engineClassification label: mal72.evad.linELF@0/0@80/0

Hooking and other Techniques for Hiding and Protection

barindex
Source: /tmp/Aqua.dbg.elf (PID: 5573)File: /tmp/Aqua.dbg.elfJump to behavior
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath InterceptionPath Interception1
File Deletion
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System1
Non-Application Layer Protocol
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization ScriptsRootkitLSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media1
Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
No configs have been found
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Number of created Files
  • Is malicious
  • Internet

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
Aqua.dbg.elf34%VirustotalBrowse
Aqua.dbg.elf34%ReversingLabsLinux.Backdoor.Mirai
Aqua.dbg.elf100%AviraEXP/ELF.Mirai.W
Aqua.dbg.elf100%Joe Sandbox ML
No Antivirus matches
No Antivirus matches
No Antivirus matches
NameIPActiveMaliciousAntivirus DetectionReputation
daisy.ubuntu.com
162.213.35.25
truefalse
    high
    45.148.10.84
    unknown
    unknownfalse
      high
      No contacted IP infos
      No context
      MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
      daisy.ubuntu.comAqua.dbg.elfGet hashmaliciousUnknownBrowse
      • 162.213.35.25
      Aqua.arm5.elfGet hashmaliciousUnknownBrowse
      • 162.213.35.24
      Aqua.m68k.elfGet hashmaliciousUnknownBrowse
      • 162.213.35.24
      Aqua.i686.elfGet hashmaliciousUnknownBrowse
      • 162.213.35.25
      Aqua.mips.elfGet hashmaliciousUnknownBrowse
      • 162.213.35.25
      Aqua.arm6.elfGet hashmaliciousUnknownBrowse
      • 162.213.35.25
      Aqua.arm6.elfGet hashmaliciousUnknownBrowse
      • 162.213.35.25
      boatnet.mpsl.elfGet hashmaliciousMiraiBrowse
      • 162.213.35.24
      boatnet.sh4.elfGet hashmaliciousMiraiBrowse
      • 162.213.35.24
      boatnet.arm.elfGet hashmaliciousMiraiBrowse
      • 162.213.35.24
      No context
      No context
      No context
      No created / dropped files found
      File type:ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, stripped
      Entropy (8bit):6.072888120489452
      TrID:
      • ELF Executable and Linkable format (generic) (4004/1) 100.00%
      File name:Aqua.dbg.elf
      File size:59'264 bytes
      MD5:7e891c97b21f2dfbd8185c6b4c67e62a
      SHA1:6955f6d5f11b408aa192a7cec59df872d09f6d1a
      SHA256:df35a88ae415b194914dea1e7e7d8978468858a24e88471b1587e7fff9925344
      SHA512:4fb78add0dbadb67249fd380c775e4f8e353c5c461ef792b47df592de2fa57449aaa6c5bac839438befb4b7e84fe5a3e5ef459bb103143a5a34ace52d2242a00
      SSDEEP:1536:K4wD2cRvuJvf7f0PLvjU+kPv1wAjYNttzd40vf35OfR1:pwD2cRvuJvzf0PLLM31wAjyty0vBOfR1
      TLSH:62434B57B98080FCC18DC2745B3FA636E672F07D4335B26917E8E9266E95F304E2E099
      File Content Preview:.ELF..............>.......@.....@...................@.8...@.......................@.......@...............................................P.......P.............h...............Q.td....................................................H...._........H........

      ELF header

      Class:ELF64
      Data:2's complement, little endian
      Version:1 (current)
      Machine:Advanced Micro Devices X86-64
      Version Number:0x1
      Type:EXEC (Executable file)
      OS/ABI:UNIX - System V
      ABI Version:0
      Entry Point Address:0x400194
      Flags:0x0
      ELF Header Size:64
      Program Header Offset:64
      Program Header Size:56
      Number of Program Headers:3
      Section Header Offset:58624
      Section Header Size:64
      Number of Section Headers:10
      Header String Table Index:9
      NameTypeAddressOffsetSizeEntSizeFlagsFlags DescriptionLinkInfoAlign
      NULL0x00x00x00x00x0000
      .initPROGBITS0x4000e80xe80x130x00x6AX001
      .textPROGBITS0x4001000x1000xb5360x00x6AX0016
      .finiPROGBITS0x40b6360xb6360xe0x00x6AX001
      .rodataPROGBITS0x40b6600xb6600x1e700x00x2A0032
      .ctorsPROGBITS0x50e0000xe0000x100x00x3WA008
      .dtorsPROGBITS0x50e0100xe0100x100x00x3WA008
      .dataPROGBITS0x50e0400xe0400x4800x00x3WA0032
      .bssNOBITS0x50e4c00xe4c00x29a80x00x3WA0032
      .shstrtabSTRTAB0x00xe4c00x3e0x00x0001
      TypeOffsetVirtual AddressPhysical AddressFile SizeMemory SizeEntropyFlagsFlags DescriptionAlignProg InterpreterSection Mappings
      LOAD0x00x4000000x4000000xd4d00xd4d06.35110x5R E0x100000.init .text .fini .rodata
      LOAD0xe0000x50e0000x50e0000x4c00x2e682.64580x6RW 0x100000.ctors .dtors .data .bss
      GNU_STACK0x00x00x00x00x00.00000x6RW 0x8
      TimestampSource PortDest PortSource IPDest IP
      Dec 25, 2024 17:55:42.842600107 CET4517453192.168.2.148.8.8.8
      Dec 25, 2024 17:55:42.963949919 CET53451748.8.8.8192.168.2.14
      Dec 25, 2024 17:55:42.964075089 CET4517453192.168.2.148.8.8.8
      Dec 25, 2024 17:55:42.964075089 CET4517453192.168.2.148.8.8.8
      Dec 25, 2024 17:55:42.964148045 CET4517453192.168.2.148.8.8.8
      Dec 25, 2024 17:55:43.083726883 CET53451748.8.8.8192.168.2.14
      Dec 25, 2024 17:55:43.083744049 CET53451748.8.8.8192.168.2.14
      Dec 25, 2024 17:55:44.048578024 CET53451748.8.8.8192.168.2.14
      Dec 25, 2024 17:55:44.048667908 CET4517453192.168.2.148.8.8.8
      Dec 25, 2024 17:55:46.048897982 CET53451748.8.8.8192.168.2.14
      Dec 25, 2024 17:55:46.049196959 CET4517453192.168.2.148.8.8.8
      Dec 25, 2024 17:55:46.175888062 CET53451748.8.8.8192.168.2.14
      TimestampSource PortDest PortSource IPDest IP
      Dec 25, 2024 17:52:56.700268030 CET5606753192.168.2.148.8.8.8
      Dec 25, 2024 17:52:56.835776091 CET53560678.8.8.8192.168.2.14
      Dec 25, 2024 17:52:56.836787939 CET3509653192.168.2.148.8.8.8
      Dec 25, 2024 17:52:56.970993996 CET53350968.8.8.8192.168.2.14
      Dec 25, 2024 17:52:56.971975088 CET4193453192.168.2.148.8.8.8
      Dec 25, 2024 17:52:57.113859892 CET53419348.8.8.8192.168.2.14
      Dec 25, 2024 17:52:57.114741087 CET5528353192.168.2.148.8.8.8
      Dec 25, 2024 17:52:57.248449087 CET53552838.8.8.8192.168.2.14
      Dec 25, 2024 17:52:57.249255896 CET3893353192.168.2.148.8.8.8
      Dec 25, 2024 17:52:57.391644001 CET53389338.8.8.8192.168.2.14
      Dec 25, 2024 17:52:57.392502069 CET3998053192.168.2.148.8.8.8
      Dec 25, 2024 17:52:57.526501894 CET53399808.8.8.8192.168.2.14
      Dec 25, 2024 17:52:57.527477980 CET5623153192.168.2.148.8.8.8
      Dec 25, 2024 17:52:57.669302940 CET53562318.8.8.8192.168.2.14
      Dec 25, 2024 17:52:57.670191050 CET3376453192.168.2.148.8.8.8
      Dec 25, 2024 17:52:57.804785967 CET53337648.8.8.8192.168.2.14
      Dec 25, 2024 17:52:57.805655956 CET6069253192.168.2.148.8.8.8
      Dec 25, 2024 17:52:57.940011978 CET53606928.8.8.8192.168.2.14
      Dec 25, 2024 17:52:57.940879107 CET5767553192.168.2.148.8.8.8
      Dec 25, 2024 17:52:58.075546026 CET53576758.8.8.8192.168.2.14
      Dec 25, 2024 17:53:01.078267097 CET5030253192.168.2.148.8.8.8
      Dec 25, 2024 17:53:01.212974072 CET53503028.8.8.8192.168.2.14
      Dec 25, 2024 17:53:01.213705063 CET4821153192.168.2.148.8.8.8
      Dec 25, 2024 17:53:01.348222971 CET53482118.8.8.8192.168.2.14
      Dec 25, 2024 17:53:01.349087954 CET4317653192.168.2.148.8.8.8
      Dec 25, 2024 17:53:01.486474991 CET53431768.8.8.8192.168.2.14
      Dec 25, 2024 17:53:01.487463951 CET3610353192.168.2.148.8.8.8
      Dec 25, 2024 17:53:01.621150970 CET53361038.8.8.8192.168.2.14
      Dec 25, 2024 17:53:01.621965885 CET3835253192.168.2.148.8.8.8
      Dec 25, 2024 17:53:01.759634972 CET53383528.8.8.8192.168.2.14
      Dec 25, 2024 17:53:01.760483980 CET5657753192.168.2.148.8.8.8
      Dec 25, 2024 17:53:01.899871111 CET53565778.8.8.8192.168.2.14
      Dec 25, 2024 17:53:01.900657892 CET4398653192.168.2.148.8.8.8
      Dec 25, 2024 17:53:02.034723997 CET53439868.8.8.8192.168.2.14
      Dec 25, 2024 17:53:02.035649061 CET4254753192.168.2.148.8.8.8
      Dec 25, 2024 17:53:02.169847965 CET53425478.8.8.8192.168.2.14
      Dec 25, 2024 17:53:02.170769930 CET5309853192.168.2.148.8.8.8
      Dec 25, 2024 17:53:02.304567099 CET53530988.8.8.8192.168.2.14
      Dec 25, 2024 17:53:02.305706978 CET5440653192.168.2.148.8.8.8
      Dec 25, 2024 17:53:02.444113016 CET53544068.8.8.8192.168.2.14
      Dec 25, 2024 17:53:10.446841002 CET4900253192.168.2.148.8.8.8
      Dec 25, 2024 17:53:10.586491108 CET53490028.8.8.8192.168.2.14
      Dec 25, 2024 17:53:10.587778091 CET4646553192.168.2.148.8.8.8
      Dec 25, 2024 17:53:10.721551895 CET53464658.8.8.8192.168.2.14
      Dec 25, 2024 17:53:10.722942114 CET4000053192.168.2.148.8.8.8
      Dec 25, 2024 17:53:10.862106085 CET53400008.8.8.8192.168.2.14
      Dec 25, 2024 17:53:10.863353968 CET5882253192.168.2.148.8.8.8
      Dec 25, 2024 17:53:10.999625921 CET53588228.8.8.8192.168.2.14
      Dec 25, 2024 17:53:11.001182079 CET5206053192.168.2.148.8.8.8
      Dec 25, 2024 17:53:11.135009050 CET53520608.8.8.8192.168.2.14
      Dec 25, 2024 17:53:11.136527061 CET4574953192.168.2.148.8.8.8
      Dec 25, 2024 17:53:11.270447016 CET53457498.8.8.8192.168.2.14
      Dec 25, 2024 17:53:11.271804094 CET5919453192.168.2.148.8.8.8
      Dec 25, 2024 17:53:11.406524897 CET53591948.8.8.8192.168.2.14
      Dec 25, 2024 17:53:11.408030033 CET5777453192.168.2.148.8.8.8
      Dec 25, 2024 17:53:11.541934013 CET53577748.8.8.8192.168.2.14
      Dec 25, 2024 17:53:11.543518066 CET4028853192.168.2.148.8.8.8
      Dec 25, 2024 17:53:11.677359104 CET53402888.8.8.8192.168.2.14
      Dec 25, 2024 17:53:11.678106070 CET3568453192.168.2.148.8.8.8
      Dec 25, 2024 17:53:11.813882113 CET53356848.8.8.8192.168.2.14
      Dec 25, 2024 17:53:12.817341089 CET4991253192.168.2.148.8.8.8
      Dec 25, 2024 17:53:12.952112913 CET53499128.8.8.8192.168.2.14
      Dec 25, 2024 17:53:12.953278065 CET4832753192.168.2.148.8.8.8
      Dec 25, 2024 17:53:13.087735891 CET53483278.8.8.8192.168.2.14
      Dec 25, 2024 17:53:13.088890076 CET5338353192.168.2.148.8.8.8
      Dec 25, 2024 17:53:13.223449945 CET53533838.8.8.8192.168.2.14
      Dec 25, 2024 17:53:13.224538088 CET5254153192.168.2.148.8.8.8
      Dec 25, 2024 17:53:13.358442068 CET53525418.8.8.8192.168.2.14
      Dec 25, 2024 17:53:13.359649897 CET5742553192.168.2.148.8.8.8
      Dec 25, 2024 17:53:13.494013071 CET53574258.8.8.8192.168.2.14
      Dec 25, 2024 17:53:13.495476007 CET4216153192.168.2.148.8.8.8
      Dec 25, 2024 17:53:13.634464979 CET53421618.8.8.8192.168.2.14
      Dec 25, 2024 17:53:13.635754108 CET4999753192.168.2.148.8.8.8
      Dec 25, 2024 17:53:13.769474030 CET53499978.8.8.8192.168.2.14
      Dec 25, 2024 17:53:13.770845890 CET3759653192.168.2.148.8.8.8
      Dec 25, 2024 17:53:14.042916059 CET53375968.8.8.8192.168.2.14
      Dec 25, 2024 17:53:14.044133902 CET4131953192.168.2.148.8.8.8
      Dec 25, 2024 17:53:14.185781956 CET53413198.8.8.8192.168.2.14
      Dec 25, 2024 17:53:14.187073946 CET5928853192.168.2.148.8.8.8
      Dec 25, 2024 17:53:14.321774006 CET53592888.8.8.8192.168.2.14
      Dec 25, 2024 17:53:24.324847937 CET5023453192.168.2.148.8.8.8
      Dec 25, 2024 17:53:24.459177971 CET53502348.8.8.8192.168.2.14
      Dec 25, 2024 17:53:24.459856987 CET4222953192.168.2.148.8.8.8
      Dec 25, 2024 17:53:24.594084024 CET53422298.8.8.8192.168.2.14
      Dec 25, 2024 17:53:24.594703913 CET4592053192.168.2.148.8.8.8
      Dec 25, 2024 17:53:24.729238987 CET53459208.8.8.8192.168.2.14
      Dec 25, 2024 17:53:24.729942083 CET4998653192.168.2.148.8.8.8
      Dec 25, 2024 17:53:24.869237900 CET53499868.8.8.8192.168.2.14
      Dec 25, 2024 17:53:24.869903088 CET4586153192.168.2.148.8.8.8
      Dec 25, 2024 17:53:25.005292892 CET53458618.8.8.8192.168.2.14
      Dec 25, 2024 17:53:25.006243944 CET3488253192.168.2.148.8.8.8
      Dec 25, 2024 17:53:25.148178101 CET53348828.8.8.8192.168.2.14
      Dec 25, 2024 17:53:25.148927927 CET3627653192.168.2.148.8.8.8
      Dec 25, 2024 17:53:25.283643007 CET53362768.8.8.8192.168.2.14
      Dec 25, 2024 17:53:25.284467936 CET4165453192.168.2.148.8.8.8
      Dec 25, 2024 17:53:25.439502954 CET53416548.8.8.8192.168.2.14
      Dec 25, 2024 17:53:25.440701962 CET3686353192.168.2.148.8.8.8
      Dec 25, 2024 17:53:25.574466944 CET53368638.8.8.8192.168.2.14
      Dec 25, 2024 17:53:25.575203896 CET4092053192.168.2.148.8.8.8
      Dec 25, 2024 17:53:25.708858967 CET53409208.8.8.8192.168.2.14
      Dec 25, 2024 17:53:29.711990118 CET4118453192.168.2.148.8.8.8
      Dec 25, 2024 17:53:29.847384930 CET53411848.8.8.8192.168.2.14
      Dec 25, 2024 17:53:29.848942041 CET5606953192.168.2.148.8.8.8
      Dec 25, 2024 17:53:29.983270884 CET53560698.8.8.8192.168.2.14
      Dec 25, 2024 17:53:29.984637976 CET4163853192.168.2.148.8.8.8
      Dec 25, 2024 17:53:30.122081995 CET53416388.8.8.8192.168.2.14
      Dec 25, 2024 17:53:30.123385906 CET4512553192.168.2.148.8.8.8
      Dec 25, 2024 17:53:30.260237932 CET53451258.8.8.8192.168.2.14
      Dec 25, 2024 17:53:30.261497021 CET4225653192.168.2.148.8.8.8
      Dec 25, 2024 17:53:30.395755053 CET53422568.8.8.8192.168.2.14
      Dec 25, 2024 17:53:30.397217035 CET5674853192.168.2.148.8.8.8
      Dec 25, 2024 17:53:30.534204006 CET53567488.8.8.8192.168.2.14
      Dec 25, 2024 17:53:30.535537004 CET3346153192.168.2.148.8.8.8
      Dec 25, 2024 17:53:30.674932957 CET53334618.8.8.8192.168.2.14
      Dec 25, 2024 17:53:30.676346064 CET5759153192.168.2.148.8.8.8
      Dec 25, 2024 17:53:30.812131882 CET53575918.8.8.8192.168.2.14
      Dec 25, 2024 17:53:30.813364983 CET3463053192.168.2.148.8.8.8
      Dec 25, 2024 17:53:30.951889038 CET53346308.8.8.8192.168.2.14
      Dec 25, 2024 17:53:30.953259945 CET3683253192.168.2.148.8.8.8
      Dec 25, 2024 17:53:31.087225914 CET53368328.8.8.8192.168.2.14
      Dec 25, 2024 17:53:38.089689970 CET4858153192.168.2.148.8.8.8
      Dec 25, 2024 17:53:38.225661993 CET53485818.8.8.8192.168.2.14
      Dec 25, 2024 17:53:38.227303982 CET6097653192.168.2.148.8.8.8
      Dec 25, 2024 17:53:38.361196995 CET53609768.8.8.8192.168.2.14
      Dec 25, 2024 17:53:38.362684965 CET4156553192.168.2.148.8.8.8
      Dec 25, 2024 17:53:38.497479916 CET53415658.8.8.8192.168.2.14
      Dec 25, 2024 17:53:38.499104023 CET4576753192.168.2.148.8.8.8
      Dec 25, 2024 17:53:38.752243042 CET53457678.8.8.8192.168.2.14
      Dec 25, 2024 17:53:38.754043102 CET5359753192.168.2.148.8.8.8
      Dec 25, 2024 17:53:38.896007061 CET53535978.8.8.8192.168.2.14
      Dec 25, 2024 17:53:38.897394896 CET4914153192.168.2.148.8.8.8
      Dec 25, 2024 17:53:39.031429052 CET53491418.8.8.8192.168.2.14
      Dec 25, 2024 17:53:39.032747984 CET3358653192.168.2.148.8.8.8
      Dec 25, 2024 17:53:39.167170048 CET53335868.8.8.8192.168.2.14
      Dec 25, 2024 17:53:39.170154095 CET4872853192.168.2.148.8.8.8
      Dec 25, 2024 17:53:39.304003000 CET53487288.8.8.8192.168.2.14
      Dec 25, 2024 17:53:39.309782028 CET3907853192.168.2.148.8.8.8
      Dec 25, 2024 17:53:39.444386005 CET53390788.8.8.8192.168.2.14
      Dec 25, 2024 17:53:39.445820093 CET3352253192.168.2.148.8.8.8
      Dec 25, 2024 17:53:39.585705996 CET53335228.8.8.8192.168.2.14
      Dec 25, 2024 17:53:40.589418888 CET5603553192.168.2.148.8.8.8
      Dec 25, 2024 17:53:40.723462105 CET53560358.8.8.8192.168.2.14
      Dec 25, 2024 17:53:40.725121021 CET3938953192.168.2.148.8.8.8
      Dec 25, 2024 17:53:40.859128952 CET53393898.8.8.8192.168.2.14
      Dec 25, 2024 17:53:40.860411882 CET4229853192.168.2.148.8.8.8
      Dec 25, 2024 17:53:40.995886087 CET53422988.8.8.8192.168.2.14
      Dec 25, 2024 17:53:40.997289896 CET4039853192.168.2.148.8.8.8
      Dec 25, 2024 17:53:41.131736040 CET53403988.8.8.8192.168.2.14
      Dec 25, 2024 17:53:41.133122921 CET5284653192.168.2.148.8.8.8
      Dec 25, 2024 17:53:41.266896963 CET53528468.8.8.8192.168.2.14
      Dec 25, 2024 17:53:41.268426895 CET3744253192.168.2.148.8.8.8
      Dec 25, 2024 17:53:41.402462006 CET53374428.8.8.8192.168.2.14
      Dec 25, 2024 17:53:41.404081106 CET3315253192.168.2.148.8.8.8
      Dec 25, 2024 17:53:41.538230896 CET53331528.8.8.8192.168.2.14
      Dec 25, 2024 17:53:41.539442062 CET3657153192.168.2.148.8.8.8
      Dec 25, 2024 17:53:41.702311039 CET53365718.8.8.8192.168.2.14
      TimestampSource IPDest IPChecksumCodeType
      Dec 25, 2024 17:53:41.702406883 CET192.168.2.148.8.8.8d045(Port unreachable)Destination Unreachable
      TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
      Dec 25, 2024 17:52:56.700268030 CET192.168.2.148.8.8.80x80b6Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:56.836787939 CET192.168.2.148.8.8.80x80b6Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:56.971975088 CET192.168.2.148.8.8.80x80b6Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.114741087 CET192.168.2.148.8.8.80x80b6Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.249255896 CET192.168.2.148.8.8.80x80b6Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.392502069 CET192.168.2.148.8.8.80xde30Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.527477980 CET192.168.2.148.8.8.80xde30Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.670191050 CET192.168.2.148.8.8.80xde30Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.805655956 CET192.168.2.148.8.8.80xde30Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.940879107 CET192.168.2.148.8.8.80xde30Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.078267097 CET192.168.2.148.8.8.80x9331Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.213705063 CET192.168.2.148.8.8.80x9331Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.349087954 CET192.168.2.148.8.8.80x9331Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.487463951 CET192.168.2.148.8.8.80x9331Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.621965885 CET192.168.2.148.8.8.80x9331Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.760483980 CET192.168.2.148.8.8.80xabb5Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.900657892 CET192.168.2.148.8.8.80xabb5Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:02.035649061 CET192.168.2.148.8.8.80xabb5Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:02.170769930 CET192.168.2.148.8.8.80xabb5Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:02.305706978 CET192.168.2.148.8.8.80xabb5Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:10.446841002 CET192.168.2.148.8.8.80x4cbcStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:10.587778091 CET192.168.2.148.8.8.80x4cbcStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:10.722942114 CET192.168.2.148.8.8.80x4cbcStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:10.863353968 CET192.168.2.148.8.8.80x4cbcStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:11.001182079 CET192.168.2.148.8.8.80x4cbcStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:11.136527061 CET192.168.2.148.8.8.80xe84bStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:11.271804094 CET192.168.2.148.8.8.80xe84bStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:11.408030033 CET192.168.2.148.8.8.80xe84bStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:11.543518066 CET192.168.2.148.8.8.80xe84bStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:11.678106070 CET192.168.2.148.8.8.80xe84bStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:12.817341089 CET192.168.2.148.8.8.80xcd1aStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:12.953278065 CET192.168.2.148.8.8.80xcd1aStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:13.088890076 CET192.168.2.148.8.8.80xcd1aStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:13.224538088 CET192.168.2.148.8.8.80xcd1aStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:13.359649897 CET192.168.2.148.8.8.80xcd1aStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:13.495476007 CET192.168.2.148.8.8.80x2bb1Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:13.635754108 CET192.168.2.148.8.8.80x2bb1Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:13.770845890 CET192.168.2.148.8.8.80x2bb1Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:14.044133902 CET192.168.2.148.8.8.80x2bb1Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:14.187073946 CET192.168.2.148.8.8.80x2bb1Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:24.324847937 CET192.168.2.148.8.8.80x9a10Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:24.459856987 CET192.168.2.148.8.8.80x9a10Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:24.594703913 CET192.168.2.148.8.8.80x9a10Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:24.729942083 CET192.168.2.148.8.8.80x9a10Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:24.869903088 CET192.168.2.148.8.8.80x9a10Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:25.006243944 CET192.168.2.148.8.8.80x3f17Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:25.148927927 CET192.168.2.148.8.8.80x3f17Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:25.284467936 CET192.168.2.148.8.8.80x3f17Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:25.440701962 CET192.168.2.148.8.8.80x3f17Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:25.575203896 CET192.168.2.148.8.8.80x3f17Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:29.711990118 CET192.168.2.148.8.8.80x2090Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:29.848942041 CET192.168.2.148.8.8.80x2090Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:29.984637976 CET192.168.2.148.8.8.80x2090Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.123385906 CET192.168.2.148.8.8.80x2090Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.261497021 CET192.168.2.148.8.8.80x2090Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.397217035 CET192.168.2.148.8.8.80x5f90Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.535537004 CET192.168.2.148.8.8.80x5f90Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.676346064 CET192.168.2.148.8.8.80x5f90Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.813364983 CET192.168.2.148.8.8.80x5f90Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.953259945 CET192.168.2.148.8.8.80x5f90Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:38.089689970 CET192.168.2.148.8.8.80xaf4aStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:38.227303982 CET192.168.2.148.8.8.80xaf4aStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:38.362684965 CET192.168.2.148.8.8.80xaf4aStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:38.499104023 CET192.168.2.148.8.8.80xaf4aStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:38.754043102 CET192.168.2.148.8.8.80xaf4aStandard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:38.897394896 CET192.168.2.148.8.8.80x1f95Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:39.032747984 CET192.168.2.148.8.8.80x1f95Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:39.170154095 CET192.168.2.148.8.8.80x1f95Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:39.309782028 CET192.168.2.148.8.8.80x1f95Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:39.445820093 CET192.168.2.148.8.8.80x1f95Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:40.589418888 CET192.168.2.148.8.8.80x3745Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:40.725121021 CET192.168.2.148.8.8.80x3745Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:40.860411882 CET192.168.2.148.8.8.80x3745Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:40.997289896 CET192.168.2.148.8.8.80x3745Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:41.133122921 CET192.168.2.148.8.8.80x3745Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:41.268426895 CET192.168.2.148.8.8.80x95f4Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:41.404081106 CET192.168.2.148.8.8.80x95f4Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:41.539442062 CET192.168.2.148.8.8.80x95f4Standard query (0)45.148.10.84A (IP address)IN (0x0001)false
      Dec 25, 2024 17:55:42.964075089 CET192.168.2.148.8.8.80xff07Standard query (0)daisy.ubuntu.comA (IP address)IN (0x0001)false
      Dec 25, 2024 17:55:42.964148045 CET192.168.2.148.8.8.80x390cStandard query (0)daisy.ubuntu.com28IN (0x0001)false
      TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
      Dec 25, 2024 17:52:56.835776091 CET8.8.8.8192.168.2.140x80b6Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:56.970993996 CET8.8.8.8192.168.2.140x80b6Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.113859892 CET8.8.8.8192.168.2.140x80b6Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.248449087 CET8.8.8.8192.168.2.140x80b6Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.391644001 CET8.8.8.8192.168.2.140x80b6Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.526501894 CET8.8.8.8192.168.2.140xde30Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.669302940 CET8.8.8.8192.168.2.140xde30Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.804785967 CET8.8.8.8192.168.2.140xde30Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:57.940011978 CET8.8.8.8192.168.2.140xde30Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:52:58.075546026 CET8.8.8.8192.168.2.140xde30Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.212974072 CET8.8.8.8192.168.2.140x9331Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.348222971 CET8.8.8.8192.168.2.140x9331Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.486474991 CET8.8.8.8192.168.2.140x9331Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.621150970 CET8.8.8.8192.168.2.140x9331Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.759634972 CET8.8.8.8192.168.2.140x9331Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:01.899871111 CET8.8.8.8192.168.2.140xabb5Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:02.034723997 CET8.8.8.8192.168.2.140xabb5Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:02.169847965 CET8.8.8.8192.168.2.140xabb5Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:02.304567099 CET8.8.8.8192.168.2.140xabb5Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:02.444113016 CET8.8.8.8192.168.2.140xabb5Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:10.586491108 CET8.8.8.8192.168.2.140x4cbcName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:10.721551895 CET8.8.8.8192.168.2.140x4cbcName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:10.862106085 CET8.8.8.8192.168.2.140x4cbcName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:10.999625921 CET8.8.8.8192.168.2.140x4cbcName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:11.135009050 CET8.8.8.8192.168.2.140x4cbcName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:11.270447016 CET8.8.8.8192.168.2.140xe84bName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:11.406524897 CET8.8.8.8192.168.2.140xe84bName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:11.541934013 CET8.8.8.8192.168.2.140xe84bName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:11.677359104 CET8.8.8.8192.168.2.140xe84bName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:11.813882113 CET8.8.8.8192.168.2.140xe84bName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:12.952112913 CET8.8.8.8192.168.2.140xcd1aName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:13.087735891 CET8.8.8.8192.168.2.140xcd1aName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:13.223449945 CET8.8.8.8192.168.2.140xcd1aName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:13.358442068 CET8.8.8.8192.168.2.140xcd1aName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:13.494013071 CET8.8.8.8192.168.2.140xcd1aName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:13.634464979 CET8.8.8.8192.168.2.140x2bb1Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:13.769474030 CET8.8.8.8192.168.2.140x2bb1Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:14.042916059 CET8.8.8.8192.168.2.140x2bb1Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:14.185781956 CET8.8.8.8192.168.2.140x2bb1Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:14.321774006 CET8.8.8.8192.168.2.140x2bb1Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:24.459177971 CET8.8.8.8192.168.2.140x9a10Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:24.594084024 CET8.8.8.8192.168.2.140x9a10Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:24.729238987 CET8.8.8.8192.168.2.140x9a10Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:24.869237900 CET8.8.8.8192.168.2.140x9a10Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:25.005292892 CET8.8.8.8192.168.2.140x9a10Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:25.148178101 CET8.8.8.8192.168.2.140x3f17Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:25.283643007 CET8.8.8.8192.168.2.140x3f17Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:25.439502954 CET8.8.8.8192.168.2.140x3f17Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:25.574466944 CET8.8.8.8192.168.2.140x3f17Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:25.708858967 CET8.8.8.8192.168.2.140x3f17Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:29.847384930 CET8.8.8.8192.168.2.140x2090Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:29.983270884 CET8.8.8.8192.168.2.140x2090Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.122081995 CET8.8.8.8192.168.2.140x2090Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.260237932 CET8.8.8.8192.168.2.140x2090Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.395755053 CET8.8.8.8192.168.2.140x2090Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.534204006 CET8.8.8.8192.168.2.140x5f90Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.674932957 CET8.8.8.8192.168.2.140x5f90Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.812131882 CET8.8.8.8192.168.2.140x5f90Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:30.951889038 CET8.8.8.8192.168.2.140x5f90Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:31.087225914 CET8.8.8.8192.168.2.140x5f90Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:38.225661993 CET8.8.8.8192.168.2.140xaf4aName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:38.361196995 CET8.8.8.8192.168.2.140xaf4aName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:38.497479916 CET8.8.8.8192.168.2.140xaf4aName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:38.752243042 CET8.8.8.8192.168.2.140xaf4aName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:38.896007061 CET8.8.8.8192.168.2.140xaf4aName error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:39.031429052 CET8.8.8.8192.168.2.140x1f95Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:39.167170048 CET8.8.8.8192.168.2.140x1f95Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:39.304003000 CET8.8.8.8192.168.2.140x1f95Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:39.444386005 CET8.8.8.8192.168.2.140x1f95Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:39.585705996 CET8.8.8.8192.168.2.140x1f95Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:40.723462105 CET8.8.8.8192.168.2.140x3745Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:40.859128952 CET8.8.8.8192.168.2.140x3745Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:40.995886087 CET8.8.8.8192.168.2.140x3745Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:41.131736040 CET8.8.8.8192.168.2.140x3745Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:41.266896963 CET8.8.8.8192.168.2.140x3745Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:41.402462006 CET8.8.8.8192.168.2.140x95f4Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:41.538230896 CET8.8.8.8192.168.2.140x95f4Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:53:41.702311039 CET8.8.8.8192.168.2.140x95f4Name error (3)45.148.10.84nonenoneA (IP address)IN (0x0001)false
      Dec 25, 2024 17:55:44.048578024 CET8.8.8.8192.168.2.140xff07No error (0)daisy.ubuntu.com162.213.35.25A (IP address)IN (0x0001)false
      Dec 25, 2024 17:55:44.048578024 CET8.8.8.8192.168.2.140xff07No error (0)daisy.ubuntu.com162.213.35.24A (IP address)IN (0x0001)false

      System Behavior

      Start time (UTC):16:52:55
      Start date (UTC):25/12/2024
      Path:/tmp/Aqua.dbg.elf
      Arguments:/tmp/Aqua.dbg.elf
      File size:59264 bytes
      MD5 hash:7e891c97b21f2dfbd8185c6b4c67e62a