Edit tour
Linux
Analysis Report
arm5.elf
Overview
General Information
Detection
Score: | 48 |
Range: | 0 - 100 |
Whitelisted: | false |
Signatures
Multi AV Scanner detection for submitted file
Sample has stripped symbol table
Sample listens on a socket
Tries to connect to HTTP servers, but all servers are down (expired dropper behavior)
Tries to resolve domain names, but no domain seems valid (expired dropper behavior)
Uses the "uname" system call to query kernel version information (possible evasion)
Classification
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1583584 |
Start date and time: | 2025-01-03 05:57:05 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 4m 19s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultlinuxfilecookbook.jbs |
Analysis system description: | Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11) |
Analysis Mode: | default |
Sample name: | arm5.elf |
Detection: | MAL |
Classification: | mal48.linELF@0/0@60/0 |
Command: | /tmp/arm5.elf |
PID: | 6217 |
Exit Code: | 0 |
Exit Code Info: | |
Killed: | False |
Standard Output: | RebirthLTD |
Standard Error: |
⊘No yara matches
⊘No Suricata rule has matched
Click to jump to signature section
Show All Signature Results
AV Detection |
---|
Source: | Virustotal: | Perma Link |
Source: | Socket: | Jump to behavior |
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: |
Source: | DNS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | DNS traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | .symtab present: |
Source: | Classification label: |
Source: | Queries kernel information via 'uname': | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | Path Interception | Direct Volume Access | OS Credential Dumping | 11 Security Software Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 1 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 2 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
⊘No configs have been found
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
29% | Virustotal | Browse |
⊘No Antivirus matches
⊘No Antivirus matches
⊘No Antivirus matches
⊘No contacted domains info
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
109.202.202.202 | unknown | Switzerland | 13030 | INIT7CH | false | |
91.189.91.43 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false | |
91.189.91.42 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
109.202.202.202 | Get hash | malicious | Unknown | Browse |
| |
91.189.91.43 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Unknown | Browse | |||
91.189.91.42 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Unknown | Browse |
⊘No context
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
CANONICAL-ASGB | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
CANONICAL-ASGB | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
INIT7CH | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
⊘No context
⊘No context
⊘No created / dropped files found
File type: | |
Entropy (8bit): | 5.957815359507603 |
TrID: |
|
File name: | arm5.elf |
File size: | 25'400 bytes |
MD5: | f31aa929fb92402f8904e0f2582ccd02 |
SHA1: | 62dfb6cc6a122165e3964df03af6b1e0bbd2a496 |
SHA256: | 68cd230c626dbf3785606e5dcb875566edc24af518e6d1e9cb1c571be2931174 |
SHA512: | 6075c1eb274855c0742396b5d1f3fb944cb884874dab5bcf6dae61c59efa0315d6d516ff13414eaf909203e3e33eb9f2787fcfb274cf1deec304c5d79ff83862 |
SSDEEP: | 384:GT/csbEr7nNosAd+ksHsyAcMj3Ly6YNc/LHtt+PImYABWFRIit+sJJ8BiFx4etIW:Gzz67NosXkuzAcoBYNqSWZt+g8B7AIn |
TLSH: | 6DB2D749B8909E0BC9C1117BFA1F439D7B262398E1EA7303EE063F953B5B42F4E26545 |
File Content Preview: | .ELF...a..........(.........4....a......4. ...(......................_..._...............`...`...`..h...............Q.td..................................-...L."...S...........0@-.\P...0....S.0...P@...0... ....R......0...0...........0... ....R..... 0....S |
ELF header | |
---|---|
Class: | |
Data: | |
Version: | |
Machine: | |
Version Number: | |
Type: | |
OS/ABI: | |
ABI Version: | 0 |
Entry Point Address: | |
Flags: | |
ELF Header Size: | 52 |
Program Header Offset: | 52 |
Program Header Size: | 32 |
Number of Program Headers: | 3 |
Section Header Offset: | 25000 |
Section Header Size: | 40 |
Number of Section Headers: | 10 |
Header String Table Index: | 9 |
Name | Type | Address | Offset | Size | EntSize | Flags | Flags Description | Link | Info | Align |
---|---|---|---|---|---|---|---|---|---|---|
NULL | 0x0 | 0x0 | 0x0 | 0x0 | 0x0 | 0 | 0 | 0 | ||
.init | PROGBITS | 0x8094 | 0x94 | 0x18 | 0x0 | 0x6 | AX | 0 | 0 | 4 |
.text | PROGBITS | 0x80b0 | 0xb0 | 0x5984 | 0x0 | 0x6 | AX | 0 | 0 | 16 |
.fini | PROGBITS | 0xda34 | 0x5a34 | 0x14 | 0x0 | 0x6 | AX | 0 | 0 | 4 |
.rodata | PROGBITS | 0xda48 | 0x5a48 | 0x584 | 0x0 | 0x2 | A | 0 | 0 | 4 |
.ctors | PROGBITS | 0x16000 | 0x6000 | 0x8 | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.dtors | PROGBITS | 0x16008 | 0x6008 | 0x8 | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.data | PROGBITS | 0x16014 | 0x6014 | 0x154 | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.bss | NOBITS | 0x16168 | 0x6168 | 0x178 | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.shstrtab | STRTAB | 0x0 | 0x6168 | 0x3e | 0x0 | 0x0 | 0 | 0 | 1 |
Type | Offset | Virtual Address | Physical Address | File Size | Memory Size | Entropy | Flags | Flags Description | Align | Prog Interpreter | Section Mappings |
---|---|---|---|---|---|---|---|---|---|---|---|
LOAD | 0x0 | 0x8000 | 0x8000 | 0x5fcc | 0x5fcc | 6.0439 | 0x5 | R E | 0x8000 | .init .text .fini .rodata | |
LOAD | 0x6000 | 0x16000 | 0x16000 | 0x168 | 0x2e0 | 0.5473 | 0x6 | RW | 0x8000 | .ctors .dtors .data .bss | |
GNU_STACK | 0x0 | 0x0 | 0x0 | 0x0 | 0x0 | 0.0000 | 0x7 | RWE | 0x4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jan 3, 2025 05:57:42.754762888 CET | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Jan 3, 2025 05:57:48.386084080 CET | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Jan 3, 2025 05:57:49.921813965 CET | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Jan 3, 2025 05:58:03.999799013 CET | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Jan 3, 2025 05:58:14.238461018 CET | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Jan 3, 2025 05:58:20.381664038 CET | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Jan 3, 2025 05:58:44.954080105 CET | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Jan 3, 2025 05:59:05.431236029 CET | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jan 3, 2025 05:57:40.875565052 CET | 54859 | 53 | 192.168.2.23 | 88.198.92.222 |
Jan 3, 2025 05:57:40.885458946 CET | 53 | 54859 | 88.198.92.222 | 192.168.2.23 |
Jan 3, 2025 05:57:41.896722078 CET | 48472 | 53 | 192.168.2.23 | 147.182.243.49 |
Jan 3, 2025 05:57:42.057763100 CET | 53 | 48472 | 147.182.243.49 | 192.168.2.23 |
Jan 3, 2025 05:57:43.060153008 CET | 57524 | 53 | 192.168.2.23 | 161.97.219.84 |
Jan 3, 2025 05:57:43.249753952 CET | 53 | 57524 | 161.97.219.84 | 192.168.2.23 |
Jan 3, 2025 05:57:45.251954079 CET | 53630 | 53 | 192.168.2.23 | 147.182.243.49 |
Jan 3, 2025 05:57:45.408015013 CET | 53 | 53630 | 147.182.243.49 | 192.168.2.23 |
Jan 3, 2025 05:57:47.410599947 CET | 44182 | 53 | 192.168.2.23 | 94.103.153.176 |
Jan 3, 2025 05:57:54.418911934 CET | 40537 | 53 | 192.168.2.23 | 65.21.1.106 |
Jan 3, 2025 05:57:54.459906101 CET | 53 | 40537 | 65.21.1.106 | 192.168.2.23 |
Jan 3, 2025 05:57:56.464410067 CET | 51617 | 53 | 192.168.2.23 | 65.21.1.106 |
Jan 3, 2025 05:57:56.504586935 CET | 53 | 51617 | 65.21.1.106 | 192.168.2.23 |
Jan 3, 2025 05:57:57.508702993 CET | 38593 | 53 | 192.168.2.23 | 9.9.9.9 |
Jan 3, 2025 05:57:57.540282011 CET | 53 | 38593 | 9.9.9.9 | 192.168.2.23 |
Jan 3, 2025 05:57:58.543999910 CET | 38947 | 53 | 192.168.2.23 | 8.8.8.8 |
Jan 3, 2025 05:57:58.552720070 CET | 53 | 38947 | 8.8.8.8 | 192.168.2.23 |
Jan 3, 2025 05:57:59.555602074 CET | 42586 | 53 | 192.168.2.23 | 94.103.153.176 |
Jan 3, 2025 05:58:06.563018084 CET | 48279 | 53 | 192.168.2.23 | 207.192.71.13 |
Jan 3, 2025 05:58:06.655680895 CET | 53 | 48279 | 207.192.71.13 | 192.168.2.23 |
Jan 3, 2025 05:58:08.658338070 CET | 46576 | 53 | 192.168.2.23 | 65.21.1.106 |
Jan 3, 2025 05:58:08.699549913 CET | 53 | 46576 | 65.21.1.106 | 192.168.2.23 |
Jan 3, 2025 05:58:09.702753067 CET | 32920 | 53 | 192.168.2.23 | 9.9.9.9 |
Jan 3, 2025 05:58:09.733927965 CET | 53 | 32920 | 9.9.9.9 | 192.168.2.23 |
Jan 3, 2025 05:58:11.737220049 CET | 37437 | 53 | 192.168.2.23 | 9.9.9.9 |
Jan 3, 2025 05:58:11.743927002 CET | 53 | 37437 | 9.9.9.9 | 192.168.2.23 |
Jan 3, 2025 05:58:12.747539997 CET | 57873 | 53 | 192.168.2.23 | 207.192.71.13 |
Jan 3, 2025 05:58:12.832575083 CET | 53 | 57873 | 207.192.71.13 | 192.168.2.23 |
Jan 3, 2025 05:58:14.835819960 CET | 38605 | 53 | 192.168.2.23 | 161.97.219.84 |
Jan 3, 2025 05:58:15.023989916 CET | 53 | 38605 | 161.97.219.84 | 192.168.2.23 |
Jan 3, 2025 05:58:17.027055979 CET | 39805 | 53 | 192.168.2.23 | 9.9.9.9 |
Jan 3, 2025 05:58:17.061018944 CET | 53 | 39805 | 9.9.9.9 | 192.168.2.23 |
Jan 3, 2025 05:58:19.064311981 CET | 49142 | 53 | 192.168.2.23 | 88.198.92.222 |
Jan 3, 2025 05:58:19.073992014 CET | 53 | 49142 | 88.198.92.222 | 192.168.2.23 |
Jan 3, 2025 05:58:21.077722073 CET | 44186 | 53 | 192.168.2.23 | 116.203.104.203 |
Jan 3, 2025 05:58:21.090516090 CET | 53 | 44186 | 116.203.104.203 | 192.168.2.23 |
Jan 3, 2025 05:58:22.094985008 CET | 35291 | 53 | 192.168.2.23 | 161.97.219.84 |
Jan 3, 2025 05:58:22.283574104 CET | 53 | 35291 | 161.97.219.84 | 192.168.2.23 |
Jan 3, 2025 05:58:24.288209915 CET | 45222 | 53 | 192.168.2.23 | 8.8.4.4 |
Jan 3, 2025 05:58:24.295027971 CET | 53 | 45222 | 8.8.4.4 | 192.168.2.23 |
Jan 3, 2025 05:58:25.299366951 CET | 34643 | 53 | 192.168.2.23 | 207.192.71.13 |
Jan 3, 2025 05:58:25.387566090 CET | 53 | 34643 | 207.192.71.13 | 192.168.2.23 |
Jan 3, 2025 05:58:26.392258883 CET | 54231 | 53 | 192.168.2.23 | 94.103.153.176 |
Jan 3, 2025 05:58:32.399898052 CET | 60618 | 53 | 192.168.2.23 | 161.97.219.84 |
Jan 3, 2025 05:58:32.590981007 CET | 53 | 60618 | 161.97.219.84 | 192.168.2.23 |
Jan 3, 2025 05:58:33.594325066 CET | 55186 | 53 | 192.168.2.23 | 8.8.8.8 |
Jan 3, 2025 05:58:33.601524115 CET | 53 | 55186 | 8.8.8.8 | 192.168.2.23 |
Jan 3, 2025 05:58:34.604844093 CET | 34850 | 53 | 192.168.2.23 | 94.103.153.176 |
Jan 3, 2025 05:58:40.612812996 CET | 40120 | 53 | 192.168.2.23 | 8.8.8.8 |
Jan 3, 2025 05:58:40.619775057 CET | 53 | 40120 | 8.8.8.8 | 192.168.2.23 |
Jan 3, 2025 05:58:41.622569084 CET | 50551 | 53 | 192.168.2.23 | 8.8.8.8 |
Jan 3, 2025 05:58:41.629749060 CET | 53 | 50551 | 8.8.8.8 | 192.168.2.23 |
Jan 3, 2025 05:58:42.633069992 CET | 55426 | 53 | 192.168.2.23 | 9.9.9.9 |
Jan 3, 2025 05:58:42.663176060 CET | 53 | 55426 | 9.9.9.9 | 192.168.2.23 |
Jan 3, 2025 05:58:43.666599989 CET | 52457 | 53 | 192.168.2.23 | 88.198.92.222 |
Jan 3, 2025 05:58:43.676610947 CET | 53 | 52457 | 88.198.92.222 | 192.168.2.23 |
Jan 3, 2025 05:58:44.680074930 CET | 43970 | 53 | 192.168.2.23 | 65.21.1.106 |
Jan 3, 2025 05:58:44.720961094 CET | 53 | 43970 | 65.21.1.106 | 192.168.2.23 |
Jan 3, 2025 05:58:46.724206924 CET | 43410 | 53 | 192.168.2.23 | 8.8.4.4 |
Jan 3, 2025 05:58:46.731457949 CET | 53 | 43410 | 8.8.4.4 | 192.168.2.23 |
Jan 3, 2025 05:58:47.734587908 CET | 43014 | 53 | 192.168.2.23 | 9.9.9.9 |
Jan 3, 2025 05:58:47.741110086 CET | 53 | 43014 | 9.9.9.9 | 192.168.2.23 |
Jan 3, 2025 05:58:49.743637085 CET | 35196 | 53 | 192.168.2.23 | 147.182.243.49 |
Jan 3, 2025 05:58:49.903409958 CET | 53 | 35196 | 147.182.243.49 | 192.168.2.23 |
Jan 3, 2025 05:58:51.906299114 CET | 40220 | 53 | 192.168.2.23 | 88.198.92.222 |
Jan 3, 2025 05:58:51.916268110 CET | 53 | 40220 | 88.198.92.222 | 192.168.2.23 |
Jan 3, 2025 05:58:52.919147015 CET | 44408 | 53 | 192.168.2.23 | 8.8.8.8 |
Jan 3, 2025 05:58:52.925940990 CET | 53 | 44408 | 8.8.8.8 | 192.168.2.23 |
Jan 3, 2025 05:58:54.929203987 CET | 40857 | 53 | 192.168.2.23 | 8.8.8.8 |
Jan 3, 2025 05:58:54.936194897 CET | 53 | 40857 | 8.8.8.8 | 192.168.2.23 |
Jan 3, 2025 05:58:56.939868927 CET | 59935 | 53 | 192.168.2.23 | 162.243.19.47 |
Jan 3, 2025 05:58:57.024255037 CET | 53 | 59935 | 162.243.19.47 | 192.168.2.23 |
Jan 3, 2025 05:58:59.027476072 CET | 41491 | 53 | 192.168.2.23 | 88.198.92.222 |
Jan 3, 2025 05:58:59.037389994 CET | 53 | 41491 | 88.198.92.222 | 192.168.2.23 |
Jan 3, 2025 05:59:01.040251017 CET | 37159 | 53 | 192.168.2.23 | 116.203.104.203 |
Jan 3, 2025 05:59:01.050301075 CET | 53 | 37159 | 116.203.104.203 | 192.168.2.23 |
Jan 3, 2025 05:59:02.053092957 CET | 35640 | 53 | 192.168.2.23 | 8.8.8.8 |
Jan 3, 2025 05:59:02.060149908 CET | 53 | 35640 | 8.8.8.8 | 192.168.2.23 |
Jan 3, 2025 05:59:04.063661098 CET | 60490 | 53 | 192.168.2.23 | 8.8.8.8 |
Jan 3, 2025 05:59:04.070813894 CET | 53 | 60490 | 8.8.8.8 | 192.168.2.23 |
Jan 3, 2025 05:59:05.074203968 CET | 34720 | 53 | 192.168.2.23 | 147.182.243.49 |
Jan 3, 2025 05:59:05.247139931 CET | 53 | 34720 | 147.182.243.49 | 192.168.2.23 |
Jan 3, 2025 05:59:06.250587940 CET | 55570 | 53 | 192.168.2.23 | 147.182.243.49 |
Jan 3, 2025 05:59:06.413950920 CET | 53 | 55570 | 147.182.243.49 | 192.168.2.23 |
Jan 3, 2025 05:59:08.417632103 CET | 44913 | 53 | 192.168.2.23 | 94.103.153.176 |
Jan 3, 2025 05:59:14.422013998 CET | 39980 | 53 | 192.168.2.23 | 161.97.219.84 |
Jan 3, 2025 05:59:14.613738060 CET | 53 | 39980 | 161.97.219.84 | 192.168.2.23 |
Jan 3, 2025 05:59:15.618316889 CET | 47264 | 53 | 192.168.2.23 | 207.192.71.13 |
Jan 3, 2025 05:59:15.710844040 CET | 53 | 47264 | 207.192.71.13 | 192.168.2.23 |
Jan 3, 2025 05:59:17.714817047 CET | 59599 | 53 | 192.168.2.23 | 65.21.1.106 |
Jan 3, 2025 05:59:17.755729914 CET | 53 | 59599 | 65.21.1.106 | 192.168.2.23 |
Jan 3, 2025 05:59:18.758923054 CET | 53509 | 53 | 192.168.2.23 | 161.97.219.84 |
Jan 3, 2025 05:59:18.980592966 CET | 53 | 53509 | 161.97.219.84 | 192.168.2.23 |
Jan 3, 2025 05:59:20.984831095 CET | 44953 | 53 | 192.168.2.23 | 8.8.8.8 |
Jan 3, 2025 05:59:20.991624117 CET | 53 | 44953 | 8.8.8.8 | 192.168.2.23 |
Jan 3, 2025 05:59:21.995009899 CET | 39147 | 53 | 192.168.2.23 | 9.9.9.9 |
Jan 3, 2025 05:59:22.002446890 CET | 53 | 39147 | 9.9.9.9 | 192.168.2.23 |
Jan 3, 2025 05:59:23.006201982 CET | 54630 | 53 | 192.168.2.23 | 8.8.4.4 |
Jan 3, 2025 05:59:23.013087988 CET | 53 | 54630 | 8.8.4.4 | 192.168.2.23 |
Jan 3, 2025 05:59:24.016769886 CET | 57379 | 53 | 192.168.2.23 | 116.203.104.203 |
Jan 3, 2025 05:59:24.029620886 CET | 53 | 57379 | 116.203.104.203 | 192.168.2.23 |
Jan 3, 2025 05:59:25.033482075 CET | 43912 | 53 | 192.168.2.23 | 94.103.153.176 |
Jan 3, 2025 05:59:32.041685104 CET | 53569 | 53 | 192.168.2.23 | 65.21.1.106 |
Jan 3, 2025 05:59:32.082277060 CET | 53 | 53569 | 65.21.1.106 | 192.168.2.23 |
Jan 3, 2025 05:59:33.086399078 CET | 51627 | 53 | 192.168.2.23 | 94.103.153.176 |
Jan 3, 2025 05:59:40.096015930 CET | 36551 | 53 | 192.168.2.23 | 65.21.1.106 |
Jan 3, 2025 05:59:40.136976957 CET | 53 | 36551 | 65.21.1.106 | 192.168.2.23 |
Jan 3, 2025 05:59:42.141050100 CET | 50471 | 53 | 192.168.2.23 | 8.8.4.4 |
Jan 3, 2025 05:59:42.147990942 CET | 53 | 50471 | 8.8.4.4 | 192.168.2.23 |
Jan 3, 2025 05:59:43.151501894 CET | 43012 | 53 | 192.168.2.23 | 116.203.104.203 |
Jan 3, 2025 05:59:43.162863970 CET | 53 | 43012 | 116.203.104.203 | 192.168.2.23 |
Jan 3, 2025 05:59:44.166301012 CET | 45108 | 53 | 192.168.2.23 | 162.243.19.47 |
Jan 3, 2025 05:59:44.257266045 CET | 53 | 45108 | 162.243.19.47 | 192.168.2.23 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Jan 3, 2025 05:57:40.875565052 CET | 192.168.2.23 | 88.198.92.222 | 0xfb67 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:41.896722078 CET | 192.168.2.23 | 147.182.243.49 | 0xe019 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:43.060153008 CET | 192.168.2.23 | 161.97.219.84 | 0x5964 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:45.251954079 CET | 192.168.2.23 | 147.182.243.49 | 0x200c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:47.410599947 CET | 192.168.2.23 | 94.103.153.176 | 0xf0ad | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:54.418911934 CET | 192.168.2.23 | 65.21.1.106 | 0x4220 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:56.464410067 CET | 192.168.2.23 | 65.21.1.106 | 0xcf3c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:57.508702993 CET | 192.168.2.23 | 9.9.9.9 | 0x26e8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:58.543999910 CET | 192.168.2.23 | 8.8.8.8 | 0xf970 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:59.555602074 CET | 192.168.2.23 | 94.103.153.176 | 0xcce0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:06.563018084 CET | 192.168.2.23 | 207.192.71.13 | 0xacbc | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:08.658338070 CET | 192.168.2.23 | 65.21.1.106 | 0xf8d3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:09.702753067 CET | 192.168.2.23 | 9.9.9.9 | 0x46bd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:11.737220049 CET | 192.168.2.23 | 9.9.9.9 | 0xce98 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:12.747539997 CET | 192.168.2.23 | 207.192.71.13 | 0xb362 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:14.835819960 CET | 192.168.2.23 | 161.97.219.84 | 0x3647 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:17.027055979 CET | 192.168.2.23 | 9.9.9.9 | 0x6513 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:19.064311981 CET | 192.168.2.23 | 88.198.92.222 | 0xca71 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:21.077722073 CET | 192.168.2.23 | 116.203.104.203 | 0xf01d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:22.094985008 CET | 192.168.2.23 | 161.97.219.84 | 0xfec9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:24.288209915 CET | 192.168.2.23 | 8.8.4.4 | 0xb5b9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:25.299366951 CET | 192.168.2.23 | 207.192.71.13 | 0x9c5a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:26.392258883 CET | 192.168.2.23 | 94.103.153.176 | 0xca7c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:32.399898052 CET | 192.168.2.23 | 161.97.219.84 | 0xa000 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:33.594325066 CET | 192.168.2.23 | 8.8.8.8 | 0x7f4c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:34.604844093 CET | 192.168.2.23 | 94.103.153.176 | 0xc515 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:40.612812996 CET | 192.168.2.23 | 8.8.8.8 | 0xc969 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:41.622569084 CET | 192.168.2.23 | 8.8.8.8 | 0xd13e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:42.633069992 CET | 192.168.2.23 | 9.9.9.9 | 0x408b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:43.666599989 CET | 192.168.2.23 | 88.198.92.222 | 0xf323 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:44.680074930 CET | 192.168.2.23 | 65.21.1.106 | 0x1558 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:46.724206924 CET | 192.168.2.23 | 8.8.4.4 | 0xf12c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:47.734587908 CET | 192.168.2.23 | 9.9.9.9 | 0x3205 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:49.743637085 CET | 192.168.2.23 | 147.182.243.49 | 0x282a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:51.906299114 CET | 192.168.2.23 | 88.198.92.222 | 0x67f4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:52.919147015 CET | 192.168.2.23 | 8.8.8.8 | 0xea3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:54.929203987 CET | 192.168.2.23 | 8.8.8.8 | 0xbfe9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:56.939868927 CET | 192.168.2.23 | 162.243.19.47 | 0x1ebe | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:59.027476072 CET | 192.168.2.23 | 88.198.92.222 | 0xaaf4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:01.040251017 CET | 192.168.2.23 | 116.203.104.203 | 0x9a7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:02.053092957 CET | 192.168.2.23 | 8.8.8.8 | 0xa554 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:04.063661098 CET | 192.168.2.23 | 8.8.8.8 | 0x790e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:05.074203968 CET | 192.168.2.23 | 147.182.243.49 | 0x20ff | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:06.250587940 CET | 192.168.2.23 | 147.182.243.49 | 0xdab4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:08.417632103 CET | 192.168.2.23 | 94.103.153.176 | 0x66b7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:14.422013998 CET | 192.168.2.23 | 161.97.219.84 | 0xe9fd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:15.618316889 CET | 192.168.2.23 | 207.192.71.13 | 0x48da | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:17.714817047 CET | 192.168.2.23 | 65.21.1.106 | 0x49d6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:18.758923054 CET | 192.168.2.23 | 161.97.219.84 | 0x2211 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:20.984831095 CET | 192.168.2.23 | 8.8.8.8 | 0xa267 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:21.995009899 CET | 192.168.2.23 | 9.9.9.9 | 0xfb90 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:23.006201982 CET | 192.168.2.23 | 8.8.4.4 | 0xf7a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:24.016769886 CET | 192.168.2.23 | 116.203.104.203 | 0x3165 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:25.033482075 CET | 192.168.2.23 | 94.103.153.176 | 0xa1c7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:32.041685104 CET | 192.168.2.23 | 65.21.1.106 | 0xdfd6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:33.086399078 CET | 192.168.2.23 | 94.103.153.176 | 0xeb99 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:40.096015930 CET | 192.168.2.23 | 65.21.1.106 | 0x821d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:42.141050100 CET | 192.168.2.23 | 8.8.4.4 | 0xbf8f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:43.151501894 CET | 192.168.2.23 | 116.203.104.203 | 0x4cc5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:44.166301012 CET | 192.168.2.23 | 162.243.19.47 | 0xc753 | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Jan 3, 2025 05:57:40.885458946 CET | 88.198.92.222 | 192.168.2.23 | 0xfb67 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:42.057763100 CET | 147.182.243.49 | 192.168.2.23 | 0xe019 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:43.249753952 CET | 161.97.219.84 | 192.168.2.23 | 0x5964 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:45.408015013 CET | 147.182.243.49 | 192.168.2.23 | 0x200c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:54.459906101 CET | 65.21.1.106 | 192.168.2.23 | 0x4220 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:56.504586935 CET | 65.21.1.106 | 192.168.2.23 | 0xcf3c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:57.540282011 CET | 9.9.9.9 | 192.168.2.23 | 0x26e8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:57:58.552720070 CET | 8.8.8.8 | 192.168.2.23 | 0xf970 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:06.655680895 CET | 207.192.71.13 | 192.168.2.23 | 0xacbc | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:08.699549913 CET | 65.21.1.106 | 192.168.2.23 | 0xf8d3 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:09.733927965 CET | 9.9.9.9 | 192.168.2.23 | 0x46bd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:11.743927002 CET | 9.9.9.9 | 192.168.2.23 | 0xce98 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:12.832575083 CET | 207.192.71.13 | 192.168.2.23 | 0xb362 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:15.023989916 CET | 161.97.219.84 | 192.168.2.23 | 0x3647 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:17.061018944 CET | 9.9.9.9 | 192.168.2.23 | 0x6513 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:19.073992014 CET | 88.198.92.222 | 192.168.2.23 | 0xca71 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:21.090516090 CET | 116.203.104.203 | 192.168.2.23 | 0xf01d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:22.283574104 CET | 161.97.219.84 | 192.168.2.23 | 0xfec9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:24.295027971 CET | 8.8.4.4 | 192.168.2.23 | 0xb5b9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:25.387566090 CET | 207.192.71.13 | 192.168.2.23 | 0x9c5a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:32.590981007 CET | 161.97.219.84 | 192.168.2.23 | 0xa000 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:33.601524115 CET | 8.8.8.8 | 192.168.2.23 | 0x7f4c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:40.619775057 CET | 8.8.8.8 | 192.168.2.23 | 0xc969 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:41.629749060 CET | 8.8.8.8 | 192.168.2.23 | 0xd13e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:42.663176060 CET | 9.9.9.9 | 192.168.2.23 | 0x408b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:43.676610947 CET | 88.198.92.222 | 192.168.2.23 | 0xf323 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:44.720961094 CET | 65.21.1.106 | 192.168.2.23 | 0x1558 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:46.731457949 CET | 8.8.4.4 | 192.168.2.23 | 0xf12c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:47.741110086 CET | 9.9.9.9 | 192.168.2.23 | 0x3205 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:49.903409958 CET | 147.182.243.49 | 192.168.2.23 | 0x282a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:51.916268110 CET | 88.198.92.222 | 192.168.2.23 | 0x67f4 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:52.925940990 CET | 8.8.8.8 | 192.168.2.23 | 0xea3 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:54.936194897 CET | 8.8.8.8 | 192.168.2.23 | 0xbfe9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:57.024255037 CET | 162.243.19.47 | 192.168.2.23 | 0x1ebe | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:58:59.037389994 CET | 88.198.92.222 | 192.168.2.23 | 0xaaf4 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:01.050301075 CET | 116.203.104.203 | 192.168.2.23 | 0x9a7 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:02.060149908 CET | 8.8.8.8 | 192.168.2.23 | 0xa554 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:04.070813894 CET | 8.8.8.8 | 192.168.2.23 | 0x790e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:05.247139931 CET | 147.182.243.49 | 192.168.2.23 | 0x20ff | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:06.413950920 CET | 147.182.243.49 | 192.168.2.23 | 0xdab4 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:14.613738060 CET | 161.97.219.84 | 192.168.2.23 | 0xe9fd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:15.710844040 CET | 207.192.71.13 | 192.168.2.23 | 0x48da | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:17.755729914 CET | 65.21.1.106 | 192.168.2.23 | 0x49d6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:18.980592966 CET | 161.97.219.84 | 192.168.2.23 | 0x2211 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:20.991624117 CET | 8.8.8.8 | 192.168.2.23 | 0xa267 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:22.002446890 CET | 9.9.9.9 | 192.168.2.23 | 0xfb90 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:23.013087988 CET | 8.8.4.4 | 192.168.2.23 | 0xf7a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:24.029620886 CET | 116.203.104.203 | 192.168.2.23 | 0x3165 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:32.082277060 CET | 65.21.1.106 | 192.168.2.23 | 0xdfd6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:40.136976957 CET | 65.21.1.106 | 192.168.2.23 | 0x821d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:42.147990942 CET | 8.8.4.4 | 192.168.2.23 | 0xbf8f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:43.162863970 CET | 116.203.104.203 | 192.168.2.23 | 0x4cc5 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Jan 3, 2025 05:59:44.257266045 CET | 162.243.19.47 | 192.168.2.23 | 0xc753 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false |
System Behavior
Start time (UTC): | 04:57:40 |
Start date (UTC): | 03/01/2025 |
Path: | /tmp/arm5.elf |
Arguments: | /tmp/arm5.elf |
File size: | 4956856 bytes |
MD5 hash: | 5ebfcae4fe2471fcc5695c2394773ff1 |
Start time (UTC): | 04:57:40 |
Start date (UTC): | 03/01/2025 |
Path: | /tmp/arm5.elf |
Arguments: | - |
File size: | 4956856 bytes |
MD5 hash: | 5ebfcae4fe2471fcc5695c2394773ff1 |
Start time (UTC): | 04:57:40 |
Start date (UTC): | 03/01/2025 |
Path: | /tmp/arm5.elf |
Arguments: | - |
File size: | 4956856 bytes |
MD5 hash: | 5ebfcae4fe2471fcc5695c2394773ff1 |