Edit tour
Linux
Analysis Report
mips.elf
Overview
General Information
Sample name: | mips.elf |
Analysis ID: | 1581425 |
MD5: | cbcefb02a0da00dd18bab187611280ba |
SHA1: | d697140768f3096cd7dcb31354f862f1504c4133 |
SHA256: | b14568287fc9faa8ab1ddb505a826062307f78fd14a2e3cbe73628a52c10ae9c |
Tags: | elfuser-abuse_ch |
Infos: |
Detection
Score: | 60 |
Range: | 0 - 100 |
Whitelisted: | false |
Signatures
Antivirus / Scanner detection for submitted sample
Multi AV Scanner detection for submitted file
Sample deletes itself
Executes the "rm" command used to delete files or directories
Sample has stripped symbol table
Sample listens on a socket
Tries to resolve domain names, but no domain seems valid (expired dropper behavior)
Uses the "uname" system call to query kernel version information (possible evasion)
Classification
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1581425 |
Start date and time: | 2024-12-27 15:42:05 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 4m 30s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultlinuxfilecookbook.jbs |
Analysis system description: | Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11) |
Analysis Mode: | default |
Sample name: | mips.elf |
Detection: | MAL |
Classification: | mal60.evad.linELF@0/0@55/0 |
- VT rate limit hit for: mips.elf
Command: | /tmp/mips.elf |
PID: | 6222 |
Exit Code: | 0 |
Exit Code Info: | |
Killed: | False |
Standard Output: | [INFO] Project @RebirthLTD (06-01-2024) |
Standard Error: |
⊘No yara matches
⊘No Suricata rule has matched
Click to jump to signature section
Show All Signature Results
AV Detection |
---|
Source: | Avira: |
Source: | ReversingLabs: |
Source: | Socket: | Jump to behavior |
Source: | DNS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | DNS traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | .symtab present: |
Source: | Classification label: |
Source: | Rm executable: | Jump to behavior | ||
Source: | Rm executable: | Jump to behavior |
Hooking and other Techniques for Hiding and Protection |
---|
Source: | File: | Jump to behavior |
Source: | Queries kernel information via 'uname': | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | Path Interception | 11 File Deletion | OS Credential Dumping | 11 Security Software Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 1 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 2 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
⊘No configs have been found
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
21% | ReversingLabs | Linux.Backdoor.Mirai | ||
100% | Avira | EXP/ELF.Agent.J.8 |
⊘No Antivirus matches
⊘No Antivirus matches
⊘No Antivirus matches
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
dns.stresse.pro | unknown | unknown | false | unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
54.171.230.55 | unknown | United States | 16509 | AMAZON-02US | false | |
109.202.202.202 | unknown | Switzerland | 13030 | INIT7CH | false | |
91.189.91.43 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false | |
91.189.91.42 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
54.171.230.55 | Get hash | malicious | Mirai, Okiru | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Okiru | Browse | |||
Get hash | malicious | Okiru | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
109.202.202.202 | Get hash | malicious | Unknown | Browse |
| |
91.189.91.43 | Get hash | malicious | Mirai, Okiru | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai, Okiru | Browse | |||
Get hash | malicious | Mirai, Okiru | Browse | |||
Get hash | malicious | Mirai, Okiru | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
91.189.91.42 | Get hash | malicious | Mirai, Okiru | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai, Okiru | Browse | |||
Get hash | malicious | Mirai, Okiru | Browse | |||
Get hash | malicious | Mirai, Okiru | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse |
⊘No context
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
CANONICAL-ASGB | Get hash | malicious | Mirai, Okiru | Browse |
| |
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
CANONICAL-ASGB | Get hash | malicious | Mirai, Okiru | Browse |
| |
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
AMAZON-02US | Get hash | malicious | Vidar | Browse |
| |
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Okiru | Browse |
| ||
INIT7CH | Get hash | malicious | Mirai, Okiru | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
⊘No context
⊘No context
⊘No created / dropped files found
File type: | |
Entropy (8bit): | 5.049014889032949 |
TrID: |
|
File name: | mips.elf |
File size: | 199'516 bytes |
MD5: | cbcefb02a0da00dd18bab187611280ba |
SHA1: | d697140768f3096cd7dcb31354f862f1504c4133 |
SHA256: | b14568287fc9faa8ab1ddb505a826062307f78fd14a2e3cbe73628a52c10ae9c |
SHA512: | 21135c24891adcb49ccc1a611ef2f2be7012f9105a6584232891ac5c8bed06b3004cd275dc635980c09ce1624818fed43a82d3eb82b07a21e9d4195db33b1f4e |
SSDEEP: | 3072:XxtDoE+Q5PTgUXxPUr7rU60BCZ44E8JvYnva1G:XxtB+QBaXUP4EyYnS1G |
TLSH: | A314B71E6E228F7EF768873047B74A24A76933D627E1D644E1ACC2145F2035E541FFA8 |
File Content Preview: | .ELF.....................@.`...4...,.....4. ...(.............@...@...........................F...F....X.............dt.Q............................<...'.}\...!'.......................<...'.}8...!... ....'9... ......................<...'.}....!........'9. |
ELF header | |
---|---|
Class: | |
Data: | |
Version: | |
Machine: | |
Version Number: | |
Type: | |
OS/ABI: | |
ABI Version: | 0 |
Entry Point Address: | |
Flags: | |
ELF Header Size: | 52 |
Program Header Offset: | 52 |
Program Header Size: | 32 |
Number of Program Headers: | 3 |
Section Header Offset: | 198956 |
Section Header Size: | 40 |
Number of Section Headers: | 14 |
Header String Table Index: | 13 |
Name | Type | Address | Offset | Size | EntSize | Flags | Flags Description | Link | Info | Align |
---|---|---|---|---|---|---|---|---|---|---|
NULL | 0x0 | 0x0 | 0x0 | 0x0 | 0x0 | 0 | 0 | 0 | ||
.init | PROGBITS | 0x400094 | 0x94 | 0x8c | 0x0 | 0x6 | AX | 0 | 0 | 4 |
.text | PROGBITS | 0x400120 | 0x120 | 0x282c0 | 0x0 | 0x6 | AX | 0 | 0 | 16 |
.fini | PROGBITS | 0x4283e0 | 0x283e0 | 0x5c | 0x0 | 0x6 | AX | 0 | 0 | 4 |
.rodata | PROGBITS | 0x428440 | 0x28440 | 0x2540 | 0x0 | 0x2 | A | 0 | 0 | 16 |
.ctors | PROGBITS | 0x46b000 | 0x2b000 | 0xc | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.dtors | PROGBITS | 0x46b00c | 0x2b00c | 0x8 | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.data.rel.ro | PROGBITS | 0x46b018 | 0x2b018 | 0x4bc | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.data | PROGBITS | 0x46b4e0 | 0x2b4e0 | 0x4920 | 0x0 | 0x3 | WA | 0 | 0 | 32 |
.got | PROGBITS | 0x46fe00 | 0x2fe00 | 0xac8 | 0x4 | 0x10000003 | WAp | 0 | 0 | 16 |
.sbss | NOBITS | 0x4708c8 | 0x308c8 | 0x40 | 0x0 | 0x10000003 | WAp | 0 | 0 | 4 |
.bss | NOBITS | 0x470910 | 0x308c8 | 0x46a0 | 0x0 | 0x3 | WA | 0 | 0 | 16 |
.mdebug.abi32 | PROGBITS | 0x152a | 0x308c8 | 0x0 | 0x0 | 0x0 | 0 | 0 | 1 | |
.shstrtab | STRTAB | 0x0 | 0x308c8 | 0x64 | 0x0 | 0x0 | 0 | 0 | 1 |
Type | Offset | Virtual Address | Physical Address | File Size | Memory Size | Entropy | Flags | Flags Description | Align | Prog Interpreter | Section Mappings |
---|---|---|---|---|---|---|---|---|---|---|---|
LOAD | 0x0 | 0x400000 | 0x400000 | 0x2a980 | 0x2a980 | 5.4123 | 0x5 | R E | 0x10000 | .init .text .fini .rodata | |
LOAD | 0x2b000 | 0x46b000 | 0x46b000 | 0x58c8 | 0x9fb0 | 1.3876 | 0x6 | RW | 0x10000 | .ctors .dtors .data.rel.ro .data .got .sbss .bss | |
GNU_STACK | 0x0 | 0x0 | 0x0 | 0x0 | 0x0 | 0.0000 | 0x7 | RWE | 0x4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 27, 2024 15:42:49.828886986 CET | 443 | 33606 | 54.171.230.55 | 192.168.2.23 |
Dec 27, 2024 15:42:49.829036951 CET | 33606 | 443 | 192.168.2.23 | 54.171.230.55 |
Dec 27, 2024 15:42:49.948626041 CET | 443 | 33606 | 54.171.230.55 | 192.168.2.23 |
Dec 27, 2024 15:42:51.594854116 CET | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Dec 27, 2024 15:42:57.226094961 CET | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Dec 27, 2024 15:42:58.505882978 CET | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Dec 27, 2024 15:43:13.351830959 CET | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Dec 27, 2024 15:43:23.590416908 CET | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Dec 27, 2024 15:43:29.733831882 CET | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Dec 27, 2024 15:43:54.306288958 CET | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 27, 2024 15:42:49.896090031 CET | 55095 | 53 | 192.168.2.23 | 208.76.51.51 |
Dec 27, 2024 15:42:54.897248983 CET | 48117 | 53 | 192.168.2.23 | 208.76.51.51 |
Dec 27, 2024 15:42:59.900043011 CET | 48855 | 53 | 192.168.2.23 | 208.76.51.51 |
Dec 27, 2024 15:43:04.918510914 CET | 38279 | 53 | 192.168.2.23 | 208.76.51.51 |
Dec 27, 2024 15:43:09.923434019 CET | 50694 | 53 | 192.168.2.23 | 208.76.51.51 |
Dec 27, 2024 15:43:19.927525997 CET | 60519 | 53 | 192.168.2.23 | 195.10.195.195 |
Dec 27, 2024 15:43:20.156155109 CET | 53 | 60519 | 195.10.195.195 | 192.168.2.23 |
Dec 27, 2024 15:43:20.156847000 CET | 40060 | 53 | 192.168.2.23 | 195.10.195.195 |
Dec 27, 2024 15:43:20.386573076 CET | 53 | 40060 | 195.10.195.195 | 192.168.2.23 |
Dec 27, 2024 15:43:20.387429953 CET | 38339 | 53 | 192.168.2.23 | 195.10.195.195 |
Dec 27, 2024 15:43:20.616800070 CET | 53 | 38339 | 195.10.195.195 | 192.168.2.23 |
Dec 27, 2024 15:43:20.617436886 CET | 41145 | 53 | 192.168.2.23 | 195.10.195.195 |
Dec 27, 2024 15:43:20.846406937 CET | 53 | 41145 | 195.10.195.195 | 192.168.2.23 |
Dec 27, 2024 15:43:20.847021103 CET | 56399 | 53 | 192.168.2.23 | 195.10.195.195 |
Dec 27, 2024 15:43:21.075151920 CET | 53 | 56399 | 195.10.195.195 | 192.168.2.23 |
Dec 27, 2024 15:43:26.076107979 CET | 40280 | 53 | 192.168.2.23 | 208.67.220.220 |
Dec 27, 2024 15:43:26.294372082 CET | 53 | 40280 | 208.67.220.220 | 192.168.2.23 |
Dec 27, 2024 15:43:26.295084000 CET | 35991 | 53 | 192.168.2.23 | 208.67.220.220 |
Dec 27, 2024 15:43:26.439651012 CET | 53 | 35991 | 208.67.220.220 | 192.168.2.23 |
Dec 27, 2024 15:43:26.440295935 CET | 43598 | 53 | 192.168.2.23 | 208.67.220.220 |
Dec 27, 2024 15:43:26.582864046 CET | 53 | 43598 | 208.67.220.220 | 192.168.2.23 |
Dec 27, 2024 15:43:26.583612919 CET | 32774 | 53 | 192.168.2.23 | 208.67.220.220 |
Dec 27, 2024 15:43:26.703541994 CET | 53 | 32774 | 208.67.220.220 | 192.168.2.23 |
Dec 27, 2024 15:43:26.704333067 CET | 49801 | 53 | 192.168.2.23 | 208.67.220.220 |
Dec 27, 2024 15:43:26.824634075 CET | 53 | 49801 | 208.67.220.220 | 192.168.2.23 |
Dec 27, 2024 15:43:31.826458931 CET | 55406 | 53 | 192.168.2.23 | 51.77.149.139 |
Dec 27, 2024 15:43:32.053842068 CET | 53 | 55406 | 51.77.149.139 | 192.168.2.23 |
Dec 27, 2024 15:43:32.055202961 CET | 33835 | 53 | 192.168.2.23 | 51.77.149.139 |
Dec 27, 2024 15:43:32.282633066 CET | 53 | 33835 | 51.77.149.139 | 192.168.2.23 |
Dec 27, 2024 15:43:32.283884048 CET | 39736 | 53 | 192.168.2.23 | 51.77.149.139 |
Dec 27, 2024 15:43:32.511177063 CET | 53 | 39736 | 51.77.149.139 | 192.168.2.23 |
Dec 27, 2024 15:43:32.512444973 CET | 59317 | 53 | 192.168.2.23 | 51.77.149.139 |
Dec 27, 2024 15:43:32.740050077 CET | 53 | 59317 | 51.77.149.139 | 192.168.2.23 |
Dec 27, 2024 15:43:32.741409063 CET | 56143 | 53 | 192.168.2.23 | 51.77.149.139 |
Dec 27, 2024 15:43:32.969187975 CET | 53 | 56143 | 51.77.149.139 | 192.168.2.23 |
Dec 27, 2024 15:43:37.971487045 CET | 47110 | 53 | 192.168.2.23 | 208.76.51.51 |
Dec 27, 2024 15:43:42.977201939 CET | 42096 | 53 | 192.168.2.23 | 208.76.51.51 |
Dec 27, 2024 15:43:47.982908010 CET | 47657 | 53 | 192.168.2.23 | 208.76.51.51 |
Dec 27, 2024 15:43:48.339970112 CET | 50877 | 53 | 192.168.2.23 | 208.76.51.51 |
Dec 27, 2024 15:43:53.345742941 CET | 52684 | 53 | 192.168.2.23 | 208.76.51.51 |
Dec 27, 2024 15:44:03.352477074 CET | 54855 | 53 | 192.168.2.23 | 1.1.1.1 |
Dec 27, 2024 15:44:04.114193916 CET | 53 | 54855 | 1.1.1.1 | 192.168.2.23 |
Dec 27, 2024 15:44:04.115473032 CET | 55713 | 53 | 192.168.2.23 | 1.1.1.1 |
Dec 27, 2024 15:44:04.252783060 CET | 53 | 55713 | 1.1.1.1 | 192.168.2.23 |
Dec 27, 2024 15:44:04.254019976 CET | 54120 | 53 | 192.168.2.23 | 1.1.1.1 |
Dec 27, 2024 15:44:04.395900011 CET | 53 | 54120 | 1.1.1.1 | 192.168.2.23 |
Dec 27, 2024 15:44:04.397326946 CET | 40246 | 53 | 192.168.2.23 | 1.1.1.1 |
Dec 27, 2024 15:44:04.540230989 CET | 53 | 40246 | 1.1.1.1 | 192.168.2.23 |
Dec 27, 2024 15:44:04.541460991 CET | 44785 | 53 | 192.168.2.23 | 1.1.1.1 |
Dec 27, 2024 15:44:04.680388927 CET | 53 | 44785 | 1.1.1.1 | 192.168.2.23 |
Dec 27, 2024 15:44:09.683130980 CET | 36236 | 53 | 192.168.2.23 | 208.67.222.222 |
Dec 27, 2024 15:44:09.803412914 CET | 53 | 36236 | 208.67.222.222 | 192.168.2.23 |
Dec 27, 2024 15:44:09.804622889 CET | 50163 | 53 | 192.168.2.23 | 208.67.222.222 |
Dec 27, 2024 15:44:09.924515009 CET | 53 | 50163 | 208.67.222.222 | 192.168.2.23 |
Dec 27, 2024 15:44:09.925678015 CET | 54852 | 53 | 192.168.2.23 | 208.67.222.222 |
Dec 27, 2024 15:44:10.144058943 CET | 53 | 54852 | 208.67.222.222 | 192.168.2.23 |
Dec 27, 2024 15:44:10.145277977 CET | 44328 | 53 | 192.168.2.23 | 208.67.222.222 |
Dec 27, 2024 15:44:10.270139933 CET | 53 | 44328 | 208.67.222.222 | 192.168.2.23 |
Dec 27, 2024 15:44:10.271508932 CET | 49863 | 53 | 192.168.2.23 | 208.67.222.222 |
Dec 27, 2024 15:44:10.431432962 CET | 53 | 49863 | 208.67.222.222 | 192.168.2.23 |
Dec 27, 2024 15:44:15.433979034 CET | 54219 | 53 | 192.168.2.23 | 194.36.144.87 |
Dec 27, 2024 15:44:15.683041096 CET | 53 | 54219 | 194.36.144.87 | 192.168.2.23 |
Dec 27, 2024 15:44:15.684525967 CET | 37178 | 53 | 192.168.2.23 | 194.36.144.87 |
Dec 27, 2024 15:44:15.927517891 CET | 53 | 37178 | 194.36.144.87 | 192.168.2.23 |
Dec 27, 2024 15:44:15.928926945 CET | 60416 | 53 | 192.168.2.23 | 194.36.144.87 |
Dec 27, 2024 15:44:16.180090904 CET | 53 | 60416 | 194.36.144.87 | 192.168.2.23 |
Dec 27, 2024 15:44:16.181431055 CET | 39735 | 53 | 192.168.2.23 | 194.36.144.87 |
Dec 27, 2024 15:44:16.421644926 CET | 53 | 39735 | 194.36.144.87 | 192.168.2.23 |
Dec 27, 2024 15:44:16.426779032 CET | 39227 | 53 | 192.168.2.23 | 194.36.144.87 |
Dec 27, 2024 15:44:16.666277885 CET | 53 | 39227 | 194.36.144.87 | 192.168.2.23 |
Dec 27, 2024 15:44:21.668972015 CET | 59710 | 53 | 192.168.2.23 | 208.67.222.222 |
Dec 27, 2024 15:44:21.789509058 CET | 53 | 59710 | 208.67.222.222 | 192.168.2.23 |
Dec 27, 2024 15:44:21.791105986 CET | 41843 | 53 | 192.168.2.23 | 208.67.222.222 |
Dec 27, 2024 15:44:21.911546946 CET | 53 | 41843 | 208.67.222.222 | 192.168.2.23 |
Dec 27, 2024 15:44:21.912741899 CET | 59295 | 53 | 192.168.2.23 | 208.67.222.222 |
Dec 27, 2024 15:44:22.234293938 CET | 53 | 59295 | 208.67.222.222 | 192.168.2.23 |
Dec 27, 2024 15:44:22.235976934 CET | 34239 | 53 | 192.168.2.23 | 208.67.222.222 |
Dec 27, 2024 15:44:22.355964899 CET | 53 | 34239 | 208.67.222.222 | 192.168.2.23 |
Dec 27, 2024 15:44:22.357532024 CET | 40066 | 53 | 192.168.2.23 | 208.67.222.222 |
Dec 27, 2024 15:44:22.477826118 CET | 53 | 40066 | 208.67.222.222 | 192.168.2.23 |
Dec 27, 2024 15:44:27.481161118 CET | 43120 | 53 | 192.168.2.23 | 195.10.195.195 |
Dec 27, 2024 15:44:27.710236073 CET | 53 | 43120 | 195.10.195.195 | 192.168.2.23 |
Dec 27, 2024 15:44:27.712073088 CET | 41277 | 53 | 192.168.2.23 | 195.10.195.195 |
Dec 27, 2024 15:44:27.940228939 CET | 53 | 41277 | 195.10.195.195 | 192.168.2.23 |
Dec 27, 2024 15:44:27.941548109 CET | 44310 | 53 | 192.168.2.23 | 195.10.195.195 |
Dec 27, 2024 15:44:28.169578075 CET | 53 | 44310 | 195.10.195.195 | 192.168.2.23 |
Dec 27, 2024 15:44:28.170810938 CET | 44833 | 53 | 192.168.2.23 | 195.10.195.195 |
Dec 27, 2024 15:44:28.399677992 CET | 53 | 44833 | 195.10.195.195 | 192.168.2.23 |
Dec 27, 2024 15:44:28.401576042 CET | 50801 | 53 | 192.168.2.23 | 195.10.195.195 |
Dec 27, 2024 15:44:28.630631924 CET | 53 | 50801 | 195.10.195.195 | 192.168.2.23 |
Dec 27, 2024 15:44:33.633595943 CET | 45014 | 53 | 192.168.2.23 | 208.76.50.50 |
Dec 27, 2024 15:44:38.640053034 CET | 48420 | 53 | 192.168.2.23 | 208.76.50.50 |
Dec 27, 2024 15:44:43.646214962 CET | 41415 | 53 | 192.168.2.23 | 208.76.50.50 |
Dec 27, 2024 15:44:48.652313948 CET | 51010 | 53 | 192.168.2.23 | 208.76.50.50 |
Dec 27, 2024 15:44:53.658582926 CET | 59321 | 53 | 192.168.2.23 | 208.76.50.50 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Dec 27, 2024 15:43:48.338604927 CET | 208.38.174.213 | 192.168.2.23 | 9103 | (Unknown) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Dec 27, 2024 15:42:49.896090031 CET | 192.168.2.23 | 208.76.51.51 | 0x4e14 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:42:54.897248983 CET | 192.168.2.23 | 208.76.51.51 | 0x4e14 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:42:59.900043011 CET | 192.168.2.23 | 208.76.51.51 | 0x4e14 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:04.918510914 CET | 192.168.2.23 | 208.76.51.51 | 0x4e14 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:09.923434019 CET | 192.168.2.23 | 208.76.51.51 | 0x4e14 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:19.927525997 CET | 192.168.2.23 | 195.10.195.195 | 0x7f1c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:20.156847000 CET | 192.168.2.23 | 195.10.195.195 | 0x7f1c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:20.387429953 CET | 192.168.2.23 | 195.10.195.195 | 0x7f1c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:20.617436886 CET | 192.168.2.23 | 195.10.195.195 | 0x7f1c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:20.847021103 CET | 192.168.2.23 | 195.10.195.195 | 0x7f1c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:26.076107979 CET | 192.168.2.23 | 208.67.220.220 | 0x61ce | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:26.295084000 CET | 192.168.2.23 | 208.67.220.220 | 0x61ce | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:26.440295935 CET | 192.168.2.23 | 208.67.220.220 | 0x61ce | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:26.583612919 CET | 192.168.2.23 | 208.67.220.220 | 0x61ce | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:26.704333067 CET | 192.168.2.23 | 208.67.220.220 | 0x61ce | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:31.826458931 CET | 192.168.2.23 | 51.77.149.139 | 0x1e60 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:32.055202961 CET | 192.168.2.23 | 51.77.149.139 | 0x1e60 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:32.283884048 CET | 192.168.2.23 | 51.77.149.139 | 0x1e60 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:32.512444973 CET | 192.168.2.23 | 51.77.149.139 | 0x1e60 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:32.741409063 CET | 192.168.2.23 | 51.77.149.139 | 0x1e60 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:37.971487045 CET | 192.168.2.23 | 208.76.51.51 | 0x8e20 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:42.977201939 CET | 192.168.2.23 | 208.76.51.51 | 0x8e20 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:47.982908010 CET | 192.168.2.23 | 208.76.51.51 | 0x8e20 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:48.339970112 CET | 192.168.2.23 | 208.76.51.51 | 0x8e20 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:53.345742941 CET | 192.168.2.23 | 208.76.51.51 | 0x8e20 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:03.352477074 CET | 192.168.2.23 | 1.1.1.1 | 0xdf21 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:04.115473032 CET | 192.168.2.23 | 1.1.1.1 | 0xdf21 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:04.254019976 CET | 192.168.2.23 | 1.1.1.1 | 0xdf21 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:04.397326946 CET | 192.168.2.23 | 1.1.1.1 | 0xdf21 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:04.541460991 CET | 192.168.2.23 | 1.1.1.1 | 0xdf21 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:09.683130980 CET | 192.168.2.23 | 208.67.222.222 | 0x42fa | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:09.804622889 CET | 192.168.2.23 | 208.67.222.222 | 0x42fa | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:09.925678015 CET | 192.168.2.23 | 208.67.222.222 | 0x42fa | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:10.145277977 CET | 192.168.2.23 | 208.67.222.222 | 0x42fa | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:10.271508932 CET | 192.168.2.23 | 208.67.222.222 | 0x42fa | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:15.433979034 CET | 192.168.2.23 | 194.36.144.87 | 0xae42 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:15.684525967 CET | 192.168.2.23 | 194.36.144.87 | 0xae42 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:15.928926945 CET | 192.168.2.23 | 194.36.144.87 | 0xae42 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:16.181431055 CET | 192.168.2.23 | 194.36.144.87 | 0xae42 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:16.426779032 CET | 192.168.2.23 | 194.36.144.87 | 0xae42 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:21.668972015 CET | 192.168.2.23 | 208.67.222.222 | 0xb186 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:21.791105986 CET | 192.168.2.23 | 208.67.222.222 | 0xb186 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:21.912741899 CET | 192.168.2.23 | 208.67.222.222 | 0xb186 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:22.235976934 CET | 192.168.2.23 | 208.67.222.222 | 0xb186 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:22.357532024 CET | 192.168.2.23 | 208.67.222.222 | 0xb186 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:27.481161118 CET | 192.168.2.23 | 195.10.195.195 | 0xbd11 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:27.712073088 CET | 192.168.2.23 | 195.10.195.195 | 0xbd11 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:27.941548109 CET | 192.168.2.23 | 195.10.195.195 | 0xbd11 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:28.170810938 CET | 192.168.2.23 | 195.10.195.195 | 0xbd11 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:28.401576042 CET | 192.168.2.23 | 195.10.195.195 | 0xbd11 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:33.633595943 CET | 192.168.2.23 | 208.76.50.50 | 0xba31 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:38.640053034 CET | 192.168.2.23 | 208.76.50.50 | 0xba31 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:43.646214962 CET | 192.168.2.23 | 208.76.50.50 | 0xba31 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:48.652313948 CET | 192.168.2.23 | 208.76.50.50 | 0xba31 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:53.658582926 CET | 192.168.2.23 | 208.76.50.50 | 0xba31 | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Dec 27, 2024 15:43:20.156155109 CET | 195.10.195.195 | 192.168.2.23 | 0x7f1c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:20.386573076 CET | 195.10.195.195 | 192.168.2.23 | 0x7f1c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:20.616800070 CET | 195.10.195.195 | 192.168.2.23 | 0x7f1c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:20.846406937 CET | 195.10.195.195 | 192.168.2.23 | 0x7f1c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:21.075151920 CET | 195.10.195.195 | 192.168.2.23 | 0x7f1c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:26.294372082 CET | 208.67.220.220 | 192.168.2.23 | 0x61ce | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:26.439651012 CET | 208.67.220.220 | 192.168.2.23 | 0x61ce | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:26.582864046 CET | 208.67.220.220 | 192.168.2.23 | 0x61ce | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:26.703541994 CET | 208.67.220.220 | 192.168.2.23 | 0x61ce | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:26.824634075 CET | 208.67.220.220 | 192.168.2.23 | 0x61ce | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:32.053842068 CET | 51.77.149.139 | 192.168.2.23 | 0x1e60 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:32.282633066 CET | 51.77.149.139 | 192.168.2.23 | 0x1e60 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:32.511177063 CET | 51.77.149.139 | 192.168.2.23 | 0x1e60 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:32.740050077 CET | 51.77.149.139 | 192.168.2.23 | 0x1e60 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:43:32.969187975 CET | 51.77.149.139 | 192.168.2.23 | 0x1e60 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:04.114193916 CET | 1.1.1.1 | 192.168.2.23 | 0xdf21 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:04.252783060 CET | 1.1.1.1 | 192.168.2.23 | 0xdf21 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:04.395900011 CET | 1.1.1.1 | 192.168.2.23 | 0xdf21 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:04.540230989 CET | 1.1.1.1 | 192.168.2.23 | 0xdf21 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:04.680388927 CET | 1.1.1.1 | 192.168.2.23 | 0xdf21 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:09.803412914 CET | 208.67.222.222 | 192.168.2.23 | 0x42fa | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:09.924515009 CET | 208.67.222.222 | 192.168.2.23 | 0x42fa | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:10.144058943 CET | 208.67.222.222 | 192.168.2.23 | 0x42fa | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:10.270139933 CET | 208.67.222.222 | 192.168.2.23 | 0x42fa | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:10.431432962 CET | 208.67.222.222 | 192.168.2.23 | 0x42fa | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:15.683041096 CET | 194.36.144.87 | 192.168.2.23 | 0xae42 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:15.927517891 CET | 194.36.144.87 | 192.168.2.23 | 0xae42 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:16.180090904 CET | 194.36.144.87 | 192.168.2.23 | 0xae42 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:16.421644926 CET | 194.36.144.87 | 192.168.2.23 | 0xae42 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:16.666277885 CET | 194.36.144.87 | 192.168.2.23 | 0xae42 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:21.789509058 CET | 208.67.222.222 | 192.168.2.23 | 0xb186 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:21.911546946 CET | 208.67.222.222 | 192.168.2.23 | 0xb186 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:22.234293938 CET | 208.67.222.222 | 192.168.2.23 | 0xb186 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:22.355964899 CET | 208.67.222.222 | 192.168.2.23 | 0xb186 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:22.477826118 CET | 208.67.222.222 | 192.168.2.23 | 0xb186 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:27.710236073 CET | 195.10.195.195 | 192.168.2.23 | 0xbd11 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:27.940228939 CET | 195.10.195.195 | 192.168.2.23 | 0xbd11 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:28.169578075 CET | 195.10.195.195 | 192.168.2.23 | 0xbd11 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:28.399677992 CET | 195.10.195.195 | 192.168.2.23 | 0xbd11 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 27, 2024 15:44:28.630631924 CET | 195.10.195.195 | 192.168.2.23 | 0xbd11 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false |
System Behavior
Start time (UTC): | 14:42:48 |
Start date (UTC): | 27/12/2024 |
Path: | /tmp/mips.elf |
Arguments: | /tmp/mips.elf |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 14:42:48 |
Start date (UTC): | 27/12/2024 |
Path: | /tmp/mips.elf |
Arguments: | - |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 14:42:48 |
Start date (UTC): | 27/12/2024 |
Path: | /tmp/mips.elf |
Arguments: | - |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 14:42:48 |
Start date (UTC): | 27/12/2024 |
Path: | /usr/bin/dash |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 14:42:48 |
Start date (UTC): | 27/12/2024 |
Path: | /usr/bin/rm |
Arguments: | rm -f /tmp/tmp.Ic0qz8QHfC /tmp/tmp.HW6CTVU6d2 /tmp/tmp.1TcOm7geYR |
File size: | 72056 bytes |
MD5 hash: | aa2b5496fdbfd88e38791ab81f90b95b |
Start time (UTC): | 14:42:49 |
Start date (UTC): | 27/12/2024 |
Path: | /usr/bin/dash |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 14:42:49 |
Start date (UTC): | 27/12/2024 |
Path: | /usr/bin/rm |
Arguments: | rm -f /tmp/tmp.Ic0qz8QHfC /tmp/tmp.HW6CTVU6d2 /tmp/tmp.1TcOm7geYR |
File size: | 72056 bytes |
MD5 hash: | aa2b5496fdbfd88e38791ab81f90b95b |