Loading Joe Sandbox Report ...

Edit tour

Linux Analysis Report
Fantazy.spc.elf

Overview

General Information

Sample name:Fantazy.spc.elf
Analysis ID:1584497
MD5:41a25c69dd620bdcc981fa7f2f9eb17c
SHA1:3468d96adfdad9b14e3ee85953def329c060d89d
SHA256:86ea087502d2a58294f70f637833cbdfd1a69ffe82454a6c950fdf5659d7a11d
Tags:elfuser-abuse_ch
Infos:

Detection

Score:64
Range:0 - 100
Whitelisted:false

Signatures

Antivirus / Scanner detection for submitted sample
Multi AV Scanner detection for submitted file
Sample reads /proc/mounts (often used for finding a writable filesystem)
Sample tries to kill multiple processes (SIGKILL)
Deletes log files
Detected TCP or UDP traffic on non-standard ports
Enumerates processes within the "proc" file system
Executes commands using a shell command-line interpreter
Executes the "rm" command used to delete files or directories
Reads the 'hosts' file potentially containing internal network hosts
Sample has stripped symbol table
Sample listens on a socket
Sample tries to kill a process (SIGKILL)
Uses the "uname" system call to query kernel version information (possible evasion)

Classification

Joe Sandbox version:41.0.0 Charoite
Analysis ID:1584497
Start date and time:2025-01-05 17:42:06 +01:00
Joe Sandbox product:CloudBasic
Overall analysis duration:0h 4m 9s
Hypervisor based Inspection enabled:false
Report type:full
Cookbook file name:defaultlinuxfilecookbook.jbs
Analysis system description:Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11)
Analysis Mode:default
Sample name:Fantazy.spc.elf
Detection:MAL
Classification:mal64.spre.troj.linELF@0/9@0/0
  • Connection to analysis system has been lost, crash info: Unknown
Command:/tmp/Fantazy.spc.elf
PID:6251
Exit Code:0
Exit Code Info:
Killed:False
Standard Output:
VegaSec-KATANA001
Standard Error:
  • system is lnxubuntu20
  • dash New Fork (PID: 6222, Parent: 4332)
  • rm (PID: 6222, Parent: 4332, MD5: aa2b5496fdbfd88e38791ab81f90b95b) Arguments: rm -f /tmp/tmp.AWtkl2orJL /tmp/tmp.EwQ688Ot4L /tmp/tmp.N5aVoMdhdL
  • dash New Fork (PID: 6223, Parent: 4332)
  • rm (PID: 6223, Parent: 4332, MD5: aa2b5496fdbfd88e38791ab81f90b95b) Arguments: rm -f /tmp/tmp.AWtkl2orJL /tmp/tmp.EwQ688Ot4L /tmp/tmp.N5aVoMdhdL
  • systemd New Fork (PID: 6264, Parent: 1)
  • journalctl (PID: 6264, Parent: 1, MD5: bf3a987344f3bacafc44efd882abda8b) Arguments: /usr/bin/journalctl --smart-relinquish-var
  • systemd New Fork (PID: 6265, Parent: 1)
  • dbus-daemon (PID: 6265, Parent: 1, MD5: 3089d47e3f3ab84cd81c48fd406d7a8c) Arguments: /usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only
  • systemd New Fork (PID: 6279, Parent: 1860)
  • pulseaudio (PID: 6279, Parent: 1860, MD5: 0c3b4c789d8ffb12b25507f27e14c186) Arguments: /usr/bin/pulseaudio --daemonize=no --log-target=journal
  • systemd New Fork (PID: 6280, Parent: 1)
  • rsyslogd (PID: 6280, Parent: 1, MD5: 0b8087fc907c42eb3c81a691db258e33) Arguments: /usr/sbin/rsyslogd -n -iNONE
  • systemd New Fork (PID: 6281, Parent: 1)
  • systemd-journald (PID: 6281, Parent: 1, MD5: 474667ece6cecb5e04c6eb897a1d0d9e) Arguments: /lib/systemd/systemd-journald
  • fusermount (PID: 6282, Parent: 2038, MD5: 576a1b135c82bdcbc97a91acea900566) Arguments: fusermount -u -q -z -- /run/user/1000/gvfs
  • systemd New Fork (PID: 6292, Parent: 1)
  • dbus-daemon (PID: 6292, Parent: 1, MD5: 3089d47e3f3ab84cd81c48fd406d7a8c) Arguments: /usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only
  • systemd New Fork (PID: 6293, Parent: 1)
  • systemd-journald (PID: 6293, Parent: 1, MD5: 474667ece6cecb5e04c6eb897a1d0d9e) Arguments: /lib/systemd/systemd-journald
  • systemd New Fork (PID: 6294, Parent: 1)
  • dbus-daemon (PID: 6294, Parent: 1, MD5: 3089d47e3f3ab84cd81c48fd406d7a8c) Arguments: /usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only
  • systemd New Fork (PID: 6296, Parent: 1)
  • systemd-journald (PID: 6296, Parent: 1, MD5: 474667ece6cecb5e04c6eb897a1d0d9e) Arguments: /lib/systemd/systemd-journald
  • systemd New Fork (PID: 6297, Parent: 1)
  • rsyslogd (PID: 6297, Parent: 1, MD5: 0b8087fc907c42eb3c81a691db258e33) Arguments: /usr/sbin/rsyslogd -n -iNONE
  • systemd New Fork (PID: 6298, Parent: 1)
  • dbus-daemon (PID: 6298, Parent: 1, MD5: 3089d47e3f3ab84cd81c48fd406d7a8c) Arguments: /usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only
  • systemd New Fork (PID: 6299, Parent: 1)
  • systemd-journald (PID: 6299, Parent: 1, MD5: 474667ece6cecb5e04c6eb897a1d0d9e) Arguments: /lib/systemd/systemd-journald
  • systemd New Fork (PID: 6300, Parent: 1)
  • dbus-daemon (PID: 6300, Parent: 1, MD5: 3089d47e3f3ab84cd81c48fd406d7a8c) Arguments: /usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only
  • systemd New Fork (PID: 6302, Parent: 1)
  • systemd-journald (PID: 6302, Parent: 1, MD5: 474667ece6cecb5e04c6eb897a1d0d9e) Arguments: /lib/systemd/systemd-journald
  • systemd New Fork (PID: 6303, Parent: 1)
  • rsyslogd (PID: 6303, Parent: 1, MD5: 0b8087fc907c42eb3c81a691db258e33) Arguments: /usr/sbin/rsyslogd -n -iNONE
  • gdm3 New Fork (PID: 6304, Parent: 1320)
  • Default (PID: 6304, Parent: 1320, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /etc/gdm3/PrimeOff/Default
  • gdm3 New Fork (PID: 6305, Parent: 1320)
  • Default (PID: 6305, Parent: 1320, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /etc/gdm3/PrimeOff/Default
  • gdm3 New Fork (PID: 6306, Parent: 1320)
  • Default (PID: 6306, Parent: 1320, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /etc/gdm3/PrimeOff/Default
  • systemd New Fork (PID: 6308, Parent: 1)
  • rsyslogd (PID: 6308, Parent: 1, MD5: 0b8087fc907c42eb3c81a691db258e33) Arguments: /usr/sbin/rsyslogd -n -iNONE
  • systemd New Fork (PID: 6309, Parent: 1)
  • rsyslogd (PID: 6309, Parent: 1, MD5: 0b8087fc907c42eb3c81a691db258e33) Arguments: /usr/sbin/rsyslogd -n -iNONE
  • systemd New Fork (PID: 6314, Parent: 1)
  • gpu-manager (PID: 6314, Parent: 1, MD5: 8fae9dd5dd67e1f33d873089c2fd8761) Arguments: /usr/bin/gpu-manager --log /var/log/gpu-manager.log
  • systemd New Fork (PID: 6315, Parent: 1)
  • generate-config (PID: 6315, Parent: 1, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /usr/share/gdm/generate-config
  • systemd New Fork (PID: 6318, Parent: 1)
  • gpu-manager (PID: 6318, Parent: 1, MD5: 8fae9dd5dd67e1f33d873089c2fd8761) Arguments: /usr/bin/gpu-manager --log /var/log/gpu-manager.log
    • sh (PID: 6319, Parent: 6318, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /etc/modprobe.d/*.conf"
    • sh (PID: 6320, Parent: 6318, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /lib/modprobe.d/*.conf"
    • sh (PID: 6321, Parent: 6318, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /etc/modprobe.d/*.conf"
    • sh (PID: 6322, Parent: 6318, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /lib/modprobe.d/*.conf"
    • sh (PID: 6323, Parent: 6318, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /etc/modprobe.d/*.conf"
    • sh (PID: 6324, Parent: 6318, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /lib/modprobe.d/*.conf"
    • sh (PID: 6325, Parent: 6318, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*nouveau[[:space:]]*$\" /etc/modprobe.d/*.conf"
    • sh (PID: 6326, Parent: 6318, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*nouveau[[:space:]]*$\" /lib/modprobe.d/*.conf"
  • systemd New Fork (PID: 6327, Parent: 1)
  • generate-config (PID: 6327, Parent: 1, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /usr/share/gdm/generate-config
  • systemd New Fork (PID: 6328, Parent: 1)
  • gpu-manager (PID: 6328, Parent: 1, MD5: 8fae9dd5dd67e1f33d873089c2fd8761) Arguments: /usr/bin/gpu-manager --log /var/log/gpu-manager.log
    • sh (PID: 6329, Parent: 6328, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /etc/modprobe.d/*.conf"
    • sh (PID: 6330, Parent: 6328, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /lib/modprobe.d/*.conf"
    • sh (PID: 6332, Parent: 6328, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /lib/modprobe.d/*.conf"
    • sh (PID: 6333, Parent: 6328, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /etc/modprobe.d/*.conf"
    • sh (PID: 6334, Parent: 6328, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /lib/modprobe.d/*.conf"
  • systemd New Fork (PID: 6337, Parent: 1)
  • systemd New Fork (PID: 6338, Parent: 1)
  • systemd New Fork (PID: 6339, Parent: 1)
  • generate-config (PID: 6339, Parent: 1, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /usr/share/gdm/generate-config
  • systemd New Fork (PID: 6344, Parent: 1)
  • plymouth (PID: 6344, Parent: 1, MD5: 87003efd8dad470042f5e75360a8f49f) Arguments: /bin/plymouth quit
  • cleanup
No yara matches
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: Fantazy.spc.elfAvira: detected
Source: Fantazy.spc.elfReversingLabs: Detection: 60%
Source: Fantazy.spc.elfVirustotal: Detection: 57%Perma Link
Source: global trafficTCP traffic: 192.168.2.23:49072 -> 41.216.189.127:63645
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 119.238.14.180:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 222.233.39.68:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 178.125.146.244:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 160.22.201.149:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 105.203.131.69:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 146.38.32.33:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 94.15.114.127:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 207.162.18.203:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 14.171.90.125:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 154.73.102.221:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 86.120.131.79:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 112.38.252.211:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 108.47.59.237:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 126.174.157.91:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 154.21.87.166:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 101.235.242.12:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 48.224.212.96:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 61.228.7.71:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 31.168.180.141:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 2.27.16.190:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 34.207.128.241:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 156.124.8.62:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 97.189.135.25:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 221.64.198.4:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 91.100.206.69:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 67.199.218.44:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 40.198.172.74:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 147.171.13.60:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 40.88.198.29:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 119.138.62.22:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 135.255.36.150:2323
Source: global trafficTCP traffic: 192.168.2.23:10359 -> 196.2.209.201:2323
Source: /usr/sbin/rsyslogd (PID: 6280)Reads hosts file: /etc/hostsJump to behavior
Source: /usr/sbin/rsyslogd (PID: 6309)Reads hosts file: /etc/hostsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6251)Socket: 127.0.0.1:59025Jump to behavior
Source: unknownTCP traffic detected without corresponding DNS query: 54.171.230.55
Source: unknownTCP traffic detected without corresponding DNS query: 91.189.91.42
Source: unknownTCP traffic detected without corresponding DNS query: 41.216.189.127
Source: unknownTCP traffic detected without corresponding DNS query: 41.216.189.127
Source: unknownTCP traffic detected without corresponding DNS query: 119.238.14.180
Source: unknownTCP traffic detected without corresponding DNS query: 189.219.82.231
Source: unknownTCP traffic detected without corresponding DNS query: 173.68.136.134
Source: unknownTCP traffic detected without corresponding DNS query: 174.70.103.211
Source: unknownTCP traffic detected without corresponding DNS query: 47.183.98.253
Source: unknownTCP traffic detected without corresponding DNS query: 74.173.7.86
Source: unknownTCP traffic detected without corresponding DNS query: 169.149.125.59
Source: unknownTCP traffic detected without corresponding DNS query: 189.57.170.142
Source: unknownTCP traffic detected without corresponding DNS query: 133.9.36.55
Source: unknownTCP traffic detected without corresponding DNS query: 222.233.39.68
Source: unknownTCP traffic detected without corresponding DNS query: 121.226.120.33
Source: unknownTCP traffic detected without corresponding DNS query: 8.35.242.59
Source: unknownTCP traffic detected without corresponding DNS query: 111.73.27.214
Source: unknownTCP traffic detected without corresponding DNS query: 91.53.39.62
Source: unknownTCP traffic detected without corresponding DNS query: 89.221.28.178
Source: unknownTCP traffic detected without corresponding DNS query: 42.244.45.28
Source: unknownTCP traffic detected without corresponding DNS query: 88.46.234.167
Source: unknownTCP traffic detected without corresponding DNS query: 14.205.42.243
Source: unknownTCP traffic detected without corresponding DNS query: 45.50.182.228
Source: unknownTCP traffic detected without corresponding DNS query: 178.125.146.244
Source: unknownTCP traffic detected without corresponding DNS query: 196.192.170.183
Source: unknownTCP traffic detected without corresponding DNS query: 130.221.84.113
Source: unknownTCP traffic detected without corresponding DNS query: 141.240.76.83
Source: unknownTCP traffic detected without corresponding DNS query: 82.98.181.240
Source: unknownTCP traffic detected without corresponding DNS query: 166.13.88.92
Source: unknownTCP traffic detected without corresponding DNS query: 34.188.238.215
Source: unknownTCP traffic detected without corresponding DNS query: 59.244.44.1
Source: unknownTCP traffic detected without corresponding DNS query: 66.251.7.10
Source: unknownTCP traffic detected without corresponding DNS query: 115.198.136.163
Source: unknownTCP traffic detected without corresponding DNS query: 160.22.201.149
Source: unknownTCP traffic detected without corresponding DNS query: 161.229.220.168
Source: unknownTCP traffic detected without corresponding DNS query: 60.48.39.67
Source: unknownTCP traffic detected without corresponding DNS query: 113.114.173.149
Source: unknownTCP traffic detected without corresponding DNS query: 165.150.219.55
Source: unknownTCP traffic detected without corresponding DNS query: 17.119.103.12
Source: unknownTCP traffic detected without corresponding DNS query: 5.64.216.149
Source: unknownTCP traffic detected without corresponding DNS query: 24.109.54.109
Source: unknownTCP traffic detected without corresponding DNS query: 209.91.136.168
Source: unknownTCP traffic detected without corresponding DNS query: 105.203.131.69
Source: unknownTCP traffic detected without corresponding DNS query: 120.157.221.234
Source: unknownTCP traffic detected without corresponding DNS query: 200.231.114.179
Source: unknownTCP traffic detected without corresponding DNS query: 113.159.133.242
Source: unknownTCP traffic detected without corresponding DNS query: 156.80.237.13
Source: unknownTCP traffic detected without corresponding DNS query: 95.129.142.111
Source: unknownTCP traffic detected without corresponding DNS query: 221.57.122.114
Source: unknownTCP traffic detected without corresponding DNS query: 156.176.154.213
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 33606
Source: unknownNetwork traffic detected: HTTP traffic on port 33606 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 43928 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 42836 -> 443

System Summary

barindex
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 491, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 658, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 720, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 721, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 759, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 761, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 772, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 774, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 777, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 785, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 793, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 797, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 936, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1320, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1334, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1335, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1344, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1389, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1476, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1601, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1809, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1860, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1872, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1886, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1983, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 2038, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 2048, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 4530, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6057, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6212, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6213, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6254, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6261, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6265, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6278, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6279, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6280, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6281, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6292, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6293, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6294, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6295, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6296, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6297, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6298, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6299, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6300, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6301, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6302, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6303, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6304, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6305, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6306, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6307, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6308, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6310, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6314, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6315, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6319, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6320, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6321, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6322, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6323, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6324, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6325, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6326, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6327, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6329, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6330, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6331, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6332, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6333, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6334, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6335, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6336, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6337, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6338, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6340, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6341, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6342, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6343, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6344, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6345, result: no such processJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6346, result: successfulJump to behavior
Source: ELF static info symbol of initial sample.symtab present: no
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 491, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 658, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 720, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 721, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 759, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 761, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 772, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 774, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 777, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 785, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 793, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 797, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 936, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1320, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1334, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1335, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1344, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1389, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1476, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1601, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1809, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1860, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1872, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1886, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 1983, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 2038, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 2048, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 4530, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6057, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6212, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6213, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6254, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6261, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6265, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6278, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6279, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6280, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6281, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6292, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6293, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6294, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6295, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6296, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6297, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6298, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6299, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6300, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6301, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6302, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6303, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6304, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6305, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6306, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6307, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6308, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6310, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6314, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6315, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6319, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6320, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6321, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6322, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6323, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6324, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6325, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6326, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6327, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6329, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6330, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6331, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6332, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6333, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6334, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6335, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6336, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6337, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6338, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6340, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6341, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6342, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6343, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6344, result: successfulJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6345, result: no such processJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)SIGKILL sent: pid: 6346, result: successfulJump to behavior
Source: classification engineClassification label: mal64.spre.troj.linELF@0/9@0/0

Persistence and Installation Behavior

barindex
Source: /usr/bin/dbus-daemon (PID: 6265)File: /proc/6265/mountsJump to behavior
Source: /bin/fusermount (PID: 6282)File: /proc/6282/mountsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1582/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2033/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/3088/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1579/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1612/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1335/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1334/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1576/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2302/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/4444/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/910/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/4445/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/912/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/517/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/759/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2307/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/918/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1594/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2285/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2281/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1349/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/761/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/884/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1983/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2038/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1344/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1465/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1586/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1860/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1463/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/800/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/801/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6254/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6257/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/3021/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/491/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2294/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/772/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1599/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/774/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1477/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/654/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/896/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1476/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1872/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2048/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/655/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1475/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2289/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/777/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/656/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/657/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/658/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/419/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/936/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2208/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2180/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/4480/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6263/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6265/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/4484/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6300/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6302/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1809/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6301/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1494/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6261/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1886/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/420/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1489/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/785/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/788/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/667/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/789/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/4478/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6278/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6310/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/4530/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6279/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/670/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2746/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/793/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/674/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/1532/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/796/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/675/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/797/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/676/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/677/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/799/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/4488/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6304/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6303/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6306/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6305/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6308/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/2749/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6307/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6309/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6320/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6322/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6321/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6324/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6323/mapsJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6259)File opened: /proc/6281/mapsJump to behavior
Source: /usr/bin/gpu-manager (PID: 6319)Shell command executed: sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /etc/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6320)Shell command executed: sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /lib/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6321)Shell command executed: sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /etc/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6322)Shell command executed: sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /lib/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6323)Shell command executed: sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /etc/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6324)Shell command executed: sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /lib/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6325)Shell command executed: sh -c "grep -G \"^blacklist.*nouveau[[:space:]]*$\" /etc/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6326)Shell command executed: sh -c "grep -G \"^blacklist.*nouveau[[:space:]]*$\" /lib/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6329)Shell command executed: sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /etc/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6330)Shell command executed: sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /lib/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6332)Shell command executed: sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /lib/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6333)Shell command executed: sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /etc/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6334)Shell command executed: sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /lib/modprobe.d/*.conf"Jump to behavior
Source: /usr/bin/dash (PID: 6222)Rm executable: /usr/bin/rm -> rm -f /tmp/tmp.AWtkl2orJL /tmp/tmp.EwQ688Ot4L /tmp/tmp.N5aVoMdhdLJump to behavior
Source: /usr/bin/dash (PID: 6223)Rm executable: /usr/bin/rm -> rm -f /tmp/tmp.AWtkl2orJL /tmp/tmp.EwQ688Ot4L /tmp/tmp.N5aVoMdhdLJump to behavior
Source: /usr/sbin/rsyslogd (PID: 6280)Log file created: /var/log/kern.log
Source: /usr/sbin/rsyslogd (PID: 6309)Log file created: /var/log/kern.logJump to dropped file
Source: /usr/bin/gpu-manager (PID: 6318)Log file created: /var/log/gpu-manager.log
Source: /usr/bin/gpu-manager (PID: 6328)Log file created: /var/log/gpu-manager.logJump to dropped file
Source: /usr/bin/gpu-manager (PID: 6318)Truncated file: /var/log/gpu-manager.logJump to behavior
Source: /usr/bin/gpu-manager (PID: 6328)Truncated file: /var/log/gpu-manager.logJump to behavior
Source: /tmp/Fantazy.spc.elf (PID: 6251)Queries kernel information via 'uname': Jump to behavior
Source: /usr/sbin/rsyslogd (PID: 6280)Queries kernel information via 'uname': Jump to behavior
Source: /usr/sbin/rsyslogd (PID: 6309)Queries kernel information via 'uname': Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6318)Queries kernel information via 'uname': Jump to behavior
Source: /usr/bin/gpu-manager (PID: 6328)Queries kernel information via 'uname': Jump to behavior
Source: Fantazy.spc.elf, 6251.1.000055f9922f4000.000055f992359000.rw-.sdmp, Fantazy.spc.elf, 6253.1.000055f9922f4000.000055f992359000.rw-.sdmp, Fantazy.spc.elf, 6254.1.000055f9922f4000.000055f992359000.rw-.sdmp, Fantazy.spc.elf, 6257.1.000055f9922f4000.000055f992359000.rw-.sdmp, Fantazy.spc.elf, 6261.1.000055f9922f4000.000055f992359000.rw-.sdmpBinary or memory string: /etc/qemu-binfmt/sparc
Source: Fantazy.spc.elf, 6251.1.000055f9922f4000.000055f992359000.rw-.sdmp, Fantazy.spc.elf, 6253.1.000055f9922f4000.000055f992359000.rw-.sdmp, Fantazy.spc.elf, 6254.1.000055f9922f4000.000055f992359000.rw-.sdmp, Fantazy.spc.elf, 6257.1.000055f9922f4000.000055f992359000.rw-.sdmp, Fantazy.spc.elf, 6261.1.000055f9922f4000.000055f992359000.rw-.sdmpBinary or memory string: U!/etc/qemu-binfmt/sparc
Source: Fantazy.spc.elf, 6251.1.00007ffd180ff000.00007ffd18120000.rw-.sdmp, Fantazy.spc.elf, 6253.1.00007ffd180ff000.00007ffd18120000.rw-.sdmp, Fantazy.spc.elf, 6254.1.00007ffd180ff000.00007ffd18120000.rw-.sdmp, Fantazy.spc.elf, 6257.1.00007ffd180ff000.00007ffd18120000.rw-.sdmp, Fantazy.spc.elf, 6261.1.00007ffd180ff000.00007ffd18120000.rw-.sdmpBinary or memory string: x(x86_64/usr/bin/qemu-sparc/tmp/Fantazy.spc.elfSUDO_USER=saturninoPATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:/snap/binDISPLAY=:1.0XAUTHORITY=/run/user/1000/gdm/XauthoritySUDO_UID=1000TERM=xterm-256colorCOLORTERM=truecolorLOGNAME=rootUSER=rootLANG=en_US.UTF-8SUDO_COMMAND=/bin/bashHOME=/rootMAIL=/var/mail/rootSUDO_GID=1000SHELL=/bin/bash/tmp/Fantazy.spc.elf
Source: Fantazy.spc.elf, 6251.1.00007ffd180ff000.00007ffd18120000.rw-.sdmp, Fantazy.spc.elf, 6253.1.00007ffd180ff000.00007ffd18120000.rw-.sdmp, Fantazy.spc.elf, 6254.1.00007ffd180ff000.00007ffd18120000.rw-.sdmp, Fantazy.spc.elf, 6257.1.00007ffd180ff000.00007ffd18120000.rw-.sdmp, Fantazy.spc.elf, 6261.1.00007ffd180ff000.00007ffd18120000.rw-.sdmpBinary or memory string: /usr/bin/qemu-sparc
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity Information1
Scripting
Valid AccountsWindows Management Instrumentation1
Scripting
Path Interception1
Indicator Removal
1
OS Credential Dumping
11
Security Software Discovery
Remote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network Medium1
Service Stop
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization Scripts1
File Deletion
LSASS Memory11
File and Directory Discovery
Remote Desktop ProtocolData from Removable Media1
Non-Standard Port
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive1
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
No configs have been found
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Number of created Files
  • Is malicious
  • Internet
behaviorgraph top1 dnsIp2 2 Behavior Graph ID: 1584497 Sample: Fantazy.spc.elf Startdate: 05/01/2025 Architecture: LINUX Score: 64 42 105.168.79.207, 10359, 23 unitel-ASAO Angola 2->42 44 156.124.8.62, 10359, 2323 XNSTGCA United States 2->44 46 98 other IPs or domains 2->46 48 Antivirus / Scanner detection for submitted sample 2->48 50 Multi AV Scanner detection for submitted file 2->50 8 dash rm Fantazy.spc.elf 2->8         started        10 systemd gpu-manager 2->10         started        12 systemd dbus-daemon 2->12         started        15 29 other processes 2->15 signatures3 process4 signatures5 17 Fantazy.spc.elf 8->17         started        19 Fantazy.spc.elf 8->19         started        21 gpu-manager sh 10->21         started        23 gpu-manager sh 10->23         started        25 gpu-manager sh 10->25         started        31 5 other processes 10->31 54 Sample reads /proc/mounts (often used for finding a writable filesystem) 12->54 27 gpu-manager sh 15->27         started        29 gpu-manager sh 15->29         started        33 7 other processes 15->33 process6 process7 35 Fantazy.spc.elf 17->35         started        38 Fantazy.spc.elf 17->38         started        40 Fantazy.spc.elf 17->40         started        signatures8 52 Sample tries to kill multiple processes (SIGKILL) 35->52
SourceDetectionScannerLabelLink
Fantazy.spc.elf61%ReversingLabsLinux.Trojan.Mirai
Fantazy.spc.elf57%VirustotalBrowse
Fantazy.spc.elf100%AviraEXP/ELF.Gafgyt.Z.A
No Antivirus matches
No Antivirus matches
No Antivirus matches
No contacted domains info
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs
IPDomainCountryFlagASNASN NameMalicious
219.83.157.198
unknownChina
4795INDOSATM2-IDINDOSATM2ASNIDfalse
99.145.63.186
unknownUnited States
7018ATT-INTERNET4USfalse
192.9.30.27
unknownUnited States
36224HCLTA94085USfalse
92.240.226.27
unknownSlovakia (SLOVAK Republic)
42005LIGHTSTORM-COMMUNICATIONS-SRO-SK-ASPeeringsSKfalse
83.44.31.228
unknownSpain
3352TELEFONICA_DE_ESPANAESfalse
108.47.59.237
unknownUnited States
5650FRONTIER-FRTRUSfalse
203.253.142.147
unknownKorea Republic of
1237KREONET-AS-KRKISTIKRfalse
78.240.160.233
unknownFrance
12322PROXADFRfalse
102.127.104.191
unknownSudan
36972MTNSDfalse
59.130.140.239
unknownJapan2516KDDIKDDICORPORATIONJPfalse
119.238.14.180
unknownJapan2518BIGLOBEBIGLOBEIncJPfalse
200.119.220.10
unknownBolivia
25620COTASLTDABOfalse
68.95.158.162
unknownUnited States
7018ATT-INTERNET4USfalse
155.152.132.33
unknownUnited States
1494DNIC-ASBLK-01494-01495USfalse
40.170.82.141
unknownUnited States
4249LILLY-ASUSfalse
201.234.205.29
unknownArgentina
3549LVLT-3549USfalse
170.188.131.84
unknownUnited States
47090SCLHS-47090USfalse
172.157.110.11
unknownUnited States
7018ATT-INTERNET4USfalse
19.159.168.15
unknownUnited States
3MIT-GATEWAYSUSfalse
146.77.114.208
unknownUnited Kingdom
4193WA-STATE-GOVUSfalse
121.15.222.122
unknownChina
58543CHINATELECOM-GUANGDONG-IDCGuangdongCNfalse
155.54.25.124
unknownSpain
766REDIRISRedIRISAutonomousSystemESfalse
171.46.213.10
unknownChina
4134CHINANET-BACKBONENo31Jin-rongStreetCNfalse
135.255.36.150
unknownUnited States
10455LUCENT-CIOUSfalse
91.53.39.62
unknownGermany
3320DTAGInternetserviceprovideroperationsDEfalse
202.137.195.241
unknownAustralia
9328DATACOM-AUDATACOMSYSTEMSAUPTYLTDAUfalse
91.100.206.69
unknownDenmark
15516DK-DANSKKABELTVDKfalse
221.207.38.133
unknownChina
4837CHINA169-BACKBONECHINAUNICOMChina169BackboneCNfalse
112.38.252.211
unknownChina
24444CMNET-V4SHANDONG-AS-APShandongMobileCommunicationCompanyfalse
154.254.73.2
unknownAlgeria
36947ALGTEL-ASDZfalse
74.47.113.23
unknownUnited States
7011FRONTIER-AND-CITIZENSUSfalse
4.210.84.218
unknownUnited States
3356LEVEL3USfalse
68.149.0.150
unknownCanada
6327SHAWCAfalse
212.151.55.251
unknownSweden
1257TELE2EUfalse
221.57.122.114
unknownJapan17676GIGAINFRASoftbankBBCorpJPfalse
163.77.105.57
unknownFrance
17816CHINA169-GZChinaUnicomIPnetworkChina169Guangdongprovifalse
102.20.79.113
unknownunknown
37054Telecom-MalagasyMGfalse
166.13.88.92
unknownSwitzerland
11798ACEDATACENTERS-AS-1USfalse
150.91.53.82
unknownJapan18126CTCXChubuTelecommunicationsCompanyIncJPfalse
189.219.82.231
unknownMexico
265594TelevisionInternacionalSAdeCVMXfalse
206.17.250.183
unknownUnited States
4264CERNET-ASN-BLOCKUSfalse
19.161.108.127
unknownUnited States
3MIT-GATEWAYSUSfalse
155.167.150.238
unknownUnited States
20057ATT-MOBILITY-LLC-AS20057USfalse
23.64.64.25
unknownUnited States
33657CMCSUSfalse
38.87.190.232
unknownUnited States
174COGENT-174USfalse
61.228.7.71
unknownTaiwan; Republic of China (ROC)
3462HINETDataCommunicationBusinessGroupTWfalse
198.232.208.252
unknownUnited States
292ESNET-WESTUSfalse
221.64.198.4
unknownJapan17676GIGAINFRASoftbankBBCorpJPfalse
79.134.164.131
unknownBulgaria
12829ANGELSOFTBulgariaBGfalse
117.80.205.90
unknownChina
4134CHINANET-BACKBONENo31Jin-rongStreetCNfalse
24.109.54.109
unknownCanada
6327SHAWCAfalse
196.71.162.178
unknownMorocco
6713IAM-ASMAfalse
206.91.176.238
unknownUnited States
3549LVLT-3549USfalse
38.254.222.110
unknownUnited States
174COGENT-174USfalse
133.9.36.55
unknownJapan17956WASEDAWASEDAUniversityJPfalse
121.160.234.29
unknownKorea Republic of
4766KIXS-AS-KRKoreaTelecomKRfalse
54.60.167.108
unknownUnited States
14618AMAZON-AESUSfalse
5.64.216.149
unknownUnited Kingdom
5607BSKYB-BROADBAND-ASGBfalse
105.168.79.207
unknownAngola
37119unitel-ASAOfalse
174.160.9.42
unknownUnited States
7922COMCAST-7922USfalse
204.66.182.38
unknownUnited States
1761TDIR-CAPNETUSfalse
160.22.201.149
unknownunknown
45194SIPL-ASSysconInfowayPvtLtdINfalse
173.68.136.134
unknownUnited States
701UUNETUSfalse
69.154.193.16
unknownUnited States
7018ATT-INTERNET4USfalse
95.129.142.111
unknownRussian Federation
5572BOTIKPublicnetworkofPereslavl-ZalesskyRUfalse
82.98.181.240
unknownSpain
42612DINAHOSTING-ASESfalse
2.27.16.190
unknownUnited Kingdom
12576EELtdGBfalse
67.160.125.132
unknownUnited States
7922COMCAST-7922USfalse
101.235.242.12
unknownKorea Republic of
10036CNM-AS-KRDLIVEKRfalse
96.75.28.12
unknownUnited States
7922COMCAST-7922USfalse
14.171.90.125
unknownViet Nam
45899VNPT-AS-VNVNPTCorpVNfalse
180.173.160.131
unknownChina
4812CHINANET-SH-APChinaTelecomGroupCNfalse
63.177.121.133
unknownUnited States
1239SPRINTLINKUSfalse
97.189.135.25
unknownUnited States
6167CELLCO-PARTUSfalse
2.78.110.173
unknownKazakhstan
29355KCELL-ASKZfalse
193.58.82.130
unknownBelgium
8677WORLDLINEFRfalse
156.124.8.62
unknownUnited States
393504XNSTGCAfalse
38.149.112.246
unknownUnited States
174COGENT-174USfalse
209.78.227.175
unknownUnited States
7132SBIS-ASUSfalse
38.196.127.211
unknownUnited States
174COGENT-174USfalse
84.132.46.25
unknownGermany
3320DTAGInternetserviceprovideroperationsDEfalse
113.159.133.242
unknownJapan2516KDDIKDDICORPORATIONJPfalse
14.205.42.243
unknownChina
4837CHINA169-BACKBONECHINAUNICOMChina169BackboneCNfalse
146.38.32.33
unknownUnited States
197938TRAVIANGAMESDEfalse
164.126.36.140
unknownPoland
39603P4NETP4UMTSoperatorinPolandPLfalse
48.224.212.96
unknownUnited States
2686ATGS-MMD-ASUSfalse
196.126.126.38
unknownMorocco
36925ASMediMAfalse
32.108.110.16
unknownUnited States
2688ATGS-MMD-ASUSfalse
46.234.204.43
unknownItaly
50316NETGLOBAL-ASNITfalse
179.117.54.128
unknownBrazil
26599TELEFONICABRASILSABRfalse
72.119.73.55
unknownUnited States
22394CELLCOUSfalse
119.138.62.22
unknownChina
4134CHINANET-BACKBONENo31Jin-rongStreetCNfalse
59.244.44.1
unknownChina
2516KDDIKDDICORPORATIONJPfalse
195.233.37.229
unknownGermany
12663VODAFONE-GROUPITfalse
19.12.109.70
unknownUnited States
3MIT-GATEWAYSUSfalse
109.79.0.255
unknownIreland
15502VODAFONE-IRELAND-ASNIEfalse
5.1.66.185
unknownGermany
34549MEER-ASmeerfarbigGmbHCoKGDEfalse
196.2.209.201
unknownEgypt
12258OPTINETZAfalse
211.96.93.84
unknownChina
17816CHINA169-GZChinaUnicomIPnetworkChina169Guangdongprovifalse
84.136.241.236
unknownGermany
3320DTAGInternetserviceprovideroperationsDEfalse
No context
No context
MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
LIGHTSTORM-COMMUNICATIONS-SRO-SK-ASPeeringsSKZRgv8wdMtR.exeGet hashmaliciousGlupteba, LummaC Stealer, Petite Virus, RedLine, SmokeLoader, Socks5SystemzBrowse
  • 92.240.253.3
eVu3uJpmeE.elfGet hashmaliciousMiraiBrowse
  • 45.149.179.88
oF9ll1f32d.elfGet hashmaliciousMiraiBrowse
  • 45.149.179.98
O11Vx8VJED.dllGet hashmaliciousEmotetBrowse
  • 92.240.254.110
U2ORGDN0Qn.dllGet hashmaliciousEmotetBrowse
  • 92.240.254.110
xhOJLzQSe7.dllGet hashmaliciousEmotetBrowse
  • 92.240.254.110
9818t9ks1s.dllGet hashmaliciousEmotetBrowse
  • 92.240.254.110
CUfsVUDkr6.dllGet hashmaliciousEmotetBrowse
  • 92.240.254.110
l2sFDHB0lp.dllGet hashmaliciousEmotetBrowse
  • 92.240.254.110
FC6cLk6kKz.dllGet hashmaliciousEmotetBrowse
  • 92.240.254.110
INDOSATM2-IDINDOSATM2ASNID4.elfGet hashmaliciousUnknownBrowse
  • 124.81.4.59
db0fa4b8db0333367e9bda3ab68b8042.i686.elfGet hashmaliciousMirai, GafgytBrowse
  • 182.28.194.84
xd.sh4.elfGet hashmaliciousMiraiBrowse
  • 114.58.228.10
loligang.mips.elfGet hashmaliciousMiraiBrowse
  • 182.24.76.182
nabarm.elfGet hashmaliciousUnknownBrowse
  • 182.28.58.48
armv6l.elfGet hashmaliciousUnknownBrowse
  • 124.81.176.131
mipsel.nn.elfGet hashmaliciousMirai, OkiruBrowse
  • 182.30.97.49
arm7.elfGet hashmaliciousMirai, MoobotBrowse
  • 124.81.164.58
powerpc.nn.elfGet hashmaliciousMirai, OkiruBrowse
  • 182.28.51.133
la.bot.mips.elfGet hashmaliciousMiraiBrowse
  • 182.25.113.39
ATT-INTERNET4USFantazy.x86.elfGet hashmaliciousUnknownBrowse
  • 68.92.37.13
Fantazy.i686.elfGet hashmaliciousUnknownBrowse
  • 70.230.219.235
Fantazy.arm7.elfGet hashmaliciousMiraiBrowse
  • 99.164.4.73
momo.mips.elfGet hashmaliciousMiraiBrowse
  • 70.138.242.7
momo.arm.elfGet hashmaliciousMiraiBrowse
  • 216.63.4.111
momo.mpsl.elfGet hashmaliciousMiraiBrowse
  • 12.89.103.186
momo.arm7.elfGet hashmaliciousMiraiBrowse
  • 107.65.66.153
armv7l.elfGet hashmaliciousUnknownBrowse
  • 107.132.174.1
z0r0.m68k.elfGet hashmaliciousMiraiBrowse
  • 172.159.109.59
z0r0.x86.elfGet hashmaliciousMiraiBrowse
  • 108.68.161.241
HCLTA94085USnabppc.elfGet hashmaliciousUnknownBrowse
  • 192.8.90.241
nabmips.elfGet hashmaliciousUnknownBrowse
  • 192.10.75.18
http://192.9.135.73/Get hashmaliciousUnknownBrowse
  • 192.9.135.73
botx.mpsl.elfGet hashmaliciousMiraiBrowse
  • 192.10.186.186
VxrYNgC0xs.elfGet hashmaliciousMiraiBrowse
  • 192.9.3.218
EdAIk9WUtL.elfGet hashmaliciousUnknownBrowse
  • 192.9.222.32
RFPkr0m6HL.elfGet hashmaliciousMiraiBrowse
  • 192.9.25.118
kckAJXuz5V.elfGet hashmaliciousMiraiBrowse
  • 192.9.3.221
loligang.arm.elfGet hashmaliciousMiraiBrowse
  • 192.8.16.231
AYSz5iu0AR.elfGet hashmaliciousMiraiBrowse
  • 192.9.107.31
No context
No context
Process:/tmp/Fantazy.spc.elf
File Type:ASCII text
Category:dropped
Size (bytes):312
Entropy (8bit):3.5567200370478314
Encrypted:false
SSDEEP:6:M0DF6EEcsl10Y/VUS/FYDF6EEcsq0/VBVWPj/VfKoO/VNfiY/VH:MMNIluS/FQNIR/l
MD5:B7A45E6E5336C769A54C375EF3F1D6D3
SHA1:3261113831C1FA502D0C836EBA6B217167CD526A
SHA-256:E3A4391A056F742B7A5B6BBF83388FEE74A90E4861D35D903DF6105412538C54
SHA-512:6E3C1ED2A6C23A695C5D0090FA66CB7EDF31CADBE4B041BD722C92B98F7ECE2137F953761E814FC8D9FF79144C7A869A788D0E17F7E2C4CC6F34A9F95922D4FA
Malicious:false
Reputation:low
Preview:10000-24000 r-xp 00000000 fd:00 531606 /tmp/Fantazy.spc.elf.33000-34000 rw-p 00013000 fd:00 531606 /tmp/Fantazy.spc.elf.34000-35000 rw-p 00000000 00:00 0 .35000-37000 rw-p 00000000 00:00 0 .ff7fe000-ff7ff000 ---p 00000000 00:00 0 .ff7ff000-fffff000 rw-p 00000000 00:00 0 [stack].
Process:/usr/bin/gpu-manager
File Type:ASCII text
Category:dropped
Size (bytes):25
Entropy (8bit):2.7550849518197795
Encrypted:false
SSDEEP:3:JoT/V9fDVbn:M/V3n
MD5:078760523943E160756979906B85FB5E
SHA1:0962643266F4C5537F7D125046F28F21D6DD0C89
SHA-256:048416AC7A9A99690B8B53718CD39F32F637B55CC8DD8E67E58E5AEF060DD41C
SHA-512:DEFAAE8F8B54C61A716A0B0B4884358FEB8EB44DFEA01AAA5A687FDA7182792B7DEBB34AA840672EB3B40EB59FD0186749E08E47D181786C7FAA8C8F73F0104D
Malicious:false
Reputation:moderate, very likely benign file
Preview:15ad:0405;0000:00:0f:0;1.
Process:/usr/bin/gpu-manager
File Type:ASCII text
Category:dropped
Size (bytes):1371
Entropy (8bit):4.8296848499188485
Encrypted:false
SSDEEP:24:wPXXX9uV6BNu3WDF3GF3XFFxFFed2uk2HUvJlfWkpPpx7uvvAdow9555cJz:wPXXXe6vejpeC2HUR5WkpPpcvAdow95O
MD5:3AF77E630DA00B3BE24F4E8AA5D78B13
SHA1:BCF2D99E002F6DE2413A183227B011CFBEF5673D
SHA-256:EB1CBBA20845237B4409274D693FEAE13F835274DA3337B7A9D14F4D7FDF9DEA
SHA-512:8524B1E8A761F962B32F396812099B9B0B2DCF3C9FCA8605424753CFCFF4DC67EDC5EE1D8C91B9C0ED7FAE6BB1E752898B8D514B7C421D1839D6FEDA609C593C
Malicious:false
Reputation:moderate, very likely benign file
Preview:log_file: /var/log/gpu-manager.log.last_boot_file: /var/lib/ubuntu-drivers-common/last_gfx_boot.new_boot_file: /var/lib/ubuntu-drivers-common/last_gfx_boot.can't access /run/u-d-c-nvidia-was-loaded file.can't get module info via kmodcan't access /opt/amdgpu-pro/bin/amdgpu-pro-px.Looking for nvidia modules in /lib/modules/5.4.0-72-generic/kernel.Looking for nvidia modules in /lib/modules/5.4.0-72-generic/updates/dkms.Looking for amdgpu modules in /lib/modules/5.4.0-72-generic/kernel.Looking for amdgpu modules in /lib/modules/5.4.0-72-generic/updates/dkms.Is nvidia loaded? no.Was nvidia unloaded? no.Is nvidia blacklisted? no.Is intel loaded? no.Is radeon loaded? no.Is radeon blacklisted? no.Is amdgpu loaded? no.Is amdgpu blacklisted? no.Is amdgpu versioned? no.Is amdgpu pro stack? no.Is nouveau loaded? no.Is nouveau blacklisted? no.Is nvidia kernel module available? no.Is amdgpu kernel module available? no.Vendor/Device Id: 15ad:405.BusID "PCI:0@0:15:0".Is boot vga? yes.Error: can't acce
Process:/usr/sbin/rsyslogd
File Type:ASCII text
Category:dropped
Size (bytes):2811
Entropy (8bit):4.711648435526806
Encrypted:false
SSDEEP:48:InmgXPzFnmBP49fnmdNacsn44VWfQ44GWIEBbaFkuApX61oAqVOH8KyOnIwJeEtb:IFfzF02VWnAKtFL
MD5:89F567CC2A9A8123D9F1AB9602053522
SHA1:75314BCF92D9680B629E1F5E1AC2078261BB23B2
SHA-256:E1E4A3EF32E3588325D99E6639F756FEC077692BAE234666117299923776FF9D
SHA-512:800220FD4476AADD382219637E5DA00605A4FCD257F22D12255FCAB2BFD64D5B37934E1423F67D2A2A5B20C5A4452895DF7B0E12180151351A19446371D5C963
Malicious:false
Reputation:low
Preview:Jan 5 10:42:53 galassia kernel: [ 417.907424] New task spawned: old: (tgid 6309, tid 6309), new (tgid: 6309, tid: 6311).Jan 5 10:42:53 galassia kernel: [ 417.907562] New task spawned: old: (tgid 6309, tid 6309), new (tgid: 6309, tid: 6312).Jan 5 10:42:53 galassia kernel: [ 417.914382] New task spawned: old: (tgid 6309, tid 6312), new (tgid: 6309, tid: 6313).Jan 5 10:42:55 galassia kernel: [ 419.612110] Reached call limit: pid 6259, name getdents.Jan 5 10:42:55 galassia kernel: [ 419.765924] New task spawned: old: (tgid 6318, tid 6318), new (tgid: 6319, tid: 6319).Jan 5 10:42:55 galassia kernel: [ 419.779508] New task spawned: old: (tgid 6318, tid 6318), new (tgid: 6320, tid: 6320).Jan 5 10:42:55 galassia kernel: [ 419.829976] New task spawned: old: (tgid 6318, tid 6318), new (tgid: 6321, tid: 6321).Jan 5 10:42:55 galassia kernel: [ 419.847451] New task spawned: old: (tgid 6318, tid 6318), new (tgid: 6322, tid: 6322).Jan 5 10:42:55 galassia kernel: [ 419.875861] New ta
Process:/usr/sbin/rsyslogd
File Type:ASCII text
Category:dropped
Size (bytes):22628
Entropy (8bit):5.0058128429751205
Encrypted:false
SSDEEP:384:Ir45qm75WEU+t5OQysCtwtxso1vY5N+int+Scgn83YH7wkof8YfSOxoMbJ1cl+uD:Ir45qm75WEU+t5OQysCtwtxso1vY5N+4
MD5:6800E44CD52199B0F0801E17EC4BCB84
SHA1:CA21842395103A52D12EFAC1A27B44FBBD7A463B
SHA-256:3B39991801BE5ED63DDF33671C1DED70FBCD4E82EF6A7DF21F09874FDC841FF6
SHA-512:4614DCBECECE0B4646AEE59385E9129E36FE4E79686024716A308BB3926CE46FE624C94FB4548B47EF7BBADBDB6FB1E708E483A646E0BD52F4A2F8A6D5F635D5
Malicious:false
Reputation:low
Preview:Jan 5 10:42:53 galassia kernel: [ 416.795134] systemd[1]: rsyslog.service: Main process exited, code=killed, status=9/KILL.Jan 5 10:42:53 galassia kernel: [ 416.795190] systemd[1]: rsyslog.service: Failed with result 'signal'..Jan 5 10:42:53 galassia kernel: [ 416.809022] systemd[1]: systemd-journald.service: Main process exited, code=killed, status=9/KILL.Jan 5 10:42:53 galassia kernel: [ 416.809077] systemd[1]: systemd-journald.service: Failed with result 'signal'..Jan 5 10:42:53 galassia kernel: [ 416.809352] systemd[1]: Failed to start Journal Service..Jan 5 10:42:53 galassia kernel: [ 416.809462] systemd[1]: Dependency failed for Flush Journal to Persistent Storage..Jan 5 10:42:53 galassia kernel: [ 416.809468] systemd[1]: systemd-journal-flush.service: Job systemd-journal-flush.service/start failed with result 'dependency'..Jan 5 10:42:53 galassia kernel: [ 416.809588] systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 2..Jan 5 10:
File type:ELF 32-bit MSB executable, SPARC, version 1 (SYSV), statically linked, stripped
Entropy (8bit):6.1341819652300185
TrID:
  • ELF Executable and Linkable format (generic) (4004/1) 100.00%
File name:Fantazy.spc.elf
File size:79'640 bytes
MD5:41a25c69dd620bdcc981fa7f2f9eb17c
SHA1:3468d96adfdad9b14e3ee85953def329c060d89d
SHA256:86ea087502d2a58294f70f637833cbdfd1a69ffe82454a6c950fdf5659d7a11d
SHA512:87179bef12ffded589b09bfeaae597cbce9f5a6d1821c69772ce4f6815c1908deeeda5424c57feefc0a256fbd3599ebe2acc226ba5609dae0c44b17fc65d006d
SSDEEP:1536:3MFBVS4HUzWODr1oufYcac2wGfOECkAVFTSs4wj:IBUM2Hqc9GCXR4wj
TLSH:A8731814E97D2E2BC0D8A13F12F78716F2E5360E20B0866D7D790F8EFB54680A5467B6
File Content Preview:.ELF...........................4..5......4. ...(......................3...3...............3...3...3....4............dt.Q................................@..(....@.G.................#.....aH..`.....!.....#,..@.....".........`......$#,..#,..@...........`....

ELF header

Class:ELF32
Data:2's complement, big endian
Version:1 (current)
Machine:Sparc
Version Number:0x1
Type:EXEC (Executable file)
OS/ABI:UNIX - System V
ABI Version:0
Entry Point Address:0x101a4
Flags:0x0
ELF Header Size:52
Program Header Offset:52
Program Header Size:32
Number of Program Headers:3
Section Header Offset:79240
Section Header Size:40
Number of Section Headers:10
Header String Table Index:9
NameTypeAddressOffsetSizeEntSizeFlagsFlags DescriptionLinkInfoAlign
NULL0x00x00x00x00x0000
.initPROGBITS0x100940x940x1c0x00x6AX004
.textPROGBITS0x100b00xb00x11e6c0x00x6AX004
.finiPROGBITS0x21f1c0x11f1c0x140x00x6AX004
.rodataPROGBITS0x21f300x11f300x13e00x00x2A008
.ctorsPROGBITS0x333140x133140x80x00x3WA004
.dtorsPROGBITS0x3331c0x1331c0x80x00x3WA004
.dataPROGBITS0x333280x133280x2200x00x3WA008
.bssNOBITS0x335480x135480x5580x00x3WA008
.shstrtabSTRTAB0x00x135480x3e0x00x0001
TypeOffsetVirtual AddressPhysical AddressFile SizeMemory SizeEntropyFlagsFlags DescriptionAlignProg InterpreterSection Mappings
LOAD0x00x100000x100000x133100x133106.15370x5R E0x10000.init .text .fini .rodata
LOAD0x133140x333140x333140x2340x78c2.94950x6RW 0x10000.ctors .dtors .data .bss
GNU_STACK0x00x00x00x00x00.00000x6RW 0x4
TimestampSource PortDest PortSource IPDest IP
Jan 5, 2025 17:42:48.962203979 CET4433360654.171.230.55192.168.2.23
Jan 5, 2025 17:42:48.962363958 CET33606443192.168.2.2354.171.230.55
Jan 5, 2025 17:42:48.967216015 CET4433360654.171.230.55192.168.2.23
Jan 5, 2025 17:42:50.880709887 CET43928443192.168.2.2391.189.91.42
Jan 5, 2025 17:42:51.026170969 CET4907263645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:51.031025887 CET636454907241.216.189.127192.168.2.23
Jan 5, 2025 17:42:51.031078100 CET4907263645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:51.035131931 CET103592323192.168.2.23119.238.14.180
Jan 5, 2025 17:42:51.035260916 CET1035923192.168.2.23189.219.82.231
Jan 5, 2025 17:42:51.035283089 CET1035923192.168.2.23173.68.136.134
Jan 5, 2025 17:42:51.035286903 CET1035923192.168.2.23175.210.143.16
Jan 5, 2025 17:42:51.035334110 CET1035923192.168.2.23174.70.103.211
Jan 5, 2025 17:42:51.035340071 CET1035923192.168.2.2347.183.98.253
Jan 5, 2025 17:42:51.035383940 CET1035923192.168.2.2374.173.7.86
Jan 5, 2025 17:42:51.035423994 CET1035923192.168.2.23169.149.125.59
Jan 5, 2025 17:42:51.035437107 CET1035923192.168.2.23189.57.170.142
Jan 5, 2025 17:42:51.035490036 CET1035923192.168.2.23133.9.36.55
Jan 5, 2025 17:42:51.035494089 CET103592323192.168.2.23222.233.39.68
Jan 5, 2025 17:42:51.035506010 CET1035923192.168.2.23121.226.120.33
Jan 5, 2025 17:42:51.035516977 CET1035923192.168.2.238.35.242.59
Jan 5, 2025 17:42:51.035516977 CET1035923192.168.2.23111.73.27.214
Jan 5, 2025 17:42:51.035542965 CET1035923192.168.2.2391.53.39.62
Jan 5, 2025 17:42:51.035554886 CET1035923192.168.2.2389.221.28.178
Jan 5, 2025 17:42:51.035573006 CET1035923192.168.2.2342.244.45.28
Jan 5, 2025 17:42:51.035584927 CET1035923192.168.2.2388.46.234.167
Jan 5, 2025 17:42:51.035586119 CET1035923192.168.2.2314.205.42.243
Jan 5, 2025 17:42:51.035615921 CET1035923192.168.2.2345.50.182.228
Jan 5, 2025 17:42:51.035723925 CET103592323192.168.2.23178.125.146.244
Jan 5, 2025 17:42:51.035762072 CET1035923192.168.2.23196.192.170.183
Jan 5, 2025 17:42:51.035758972 CET1035923192.168.2.23130.221.84.113
Jan 5, 2025 17:42:51.035769939 CET1035923192.168.2.23141.240.76.83
Jan 5, 2025 17:42:51.035784006 CET1035923192.168.2.2382.98.181.240
Jan 5, 2025 17:42:51.035801888 CET1035923192.168.2.23166.13.88.92
Jan 5, 2025 17:42:51.035825968 CET1035923192.168.2.2334.188.238.215
Jan 5, 2025 17:42:51.035830975 CET1035923192.168.2.2359.244.44.1
Jan 5, 2025 17:42:51.035907030 CET1035923192.168.2.2366.251.7.10
Jan 5, 2025 17:42:51.035938025 CET1035923192.168.2.23115.198.136.163
Jan 5, 2025 17:42:51.035988092 CET103592323192.168.2.23160.22.201.149
Jan 5, 2025 17:42:51.036024094 CET1035923192.168.2.23161.229.220.168
Jan 5, 2025 17:42:51.036024094 CET1035923192.168.2.2360.48.39.67
Jan 5, 2025 17:42:51.036061049 CET1035923192.168.2.23113.114.173.149
Jan 5, 2025 17:42:51.036061049 CET1035923192.168.2.23165.150.219.55
Jan 5, 2025 17:42:51.036068916 CET1035923192.168.2.2317.119.103.12
Jan 5, 2025 17:42:51.036108017 CET1035923192.168.2.235.64.216.149
Jan 5, 2025 17:42:51.036111116 CET1035923192.168.2.2324.109.54.109
Jan 5, 2025 17:42:51.036143064 CET1035923192.168.2.23209.91.136.168
Jan 5, 2025 17:42:51.036149025 CET1035923192.168.2.23110.210.46.30
Jan 5, 2025 17:42:51.036161900 CET103592323192.168.2.23105.203.131.69
Jan 5, 2025 17:42:51.036192894 CET1035923192.168.2.23120.157.221.234
Jan 5, 2025 17:42:51.036197901 CET1035923192.168.2.23200.231.114.179
Jan 5, 2025 17:42:51.036209106 CET1035923192.168.2.23113.159.133.242
Jan 5, 2025 17:42:51.036240101 CET1035923192.168.2.23156.80.237.13
Jan 5, 2025 17:42:51.036245108 CET1035923192.168.2.2395.129.142.111
Jan 5, 2025 17:42:51.036245108 CET1035923192.168.2.23221.57.122.114
Jan 5, 2025 17:42:51.036251068 CET1035923192.168.2.23156.176.154.213
Jan 5, 2025 17:42:51.036266088 CET1035923192.168.2.2381.2.166.198
Jan 5, 2025 17:42:51.036320925 CET1035923192.168.2.23188.97.111.197
Jan 5, 2025 17:42:51.036376953 CET103592323192.168.2.23146.38.32.33
Jan 5, 2025 17:42:51.036393881 CET1035923192.168.2.23123.35.251.52
Jan 5, 2025 17:42:51.036396027 CET1035923192.168.2.2338.196.127.211
Jan 5, 2025 17:42:51.036398888 CET1035923192.168.2.23196.35.10.109
Jan 5, 2025 17:42:51.036415100 CET1035923192.168.2.2338.87.190.232
Jan 5, 2025 17:42:51.036459923 CET1035923192.168.2.2390.5.58.221
Jan 5, 2025 17:42:51.036501884 CET1035923192.168.2.23207.194.128.93
Jan 5, 2025 17:42:51.036510944 CET1035923192.168.2.23117.80.205.90
Jan 5, 2025 17:42:51.036524057 CET1035923192.168.2.235.1.66.185
Jan 5, 2025 17:42:51.036550045 CET1035923192.168.2.23112.63.250.209
Jan 5, 2025 17:42:51.036551952 CET103592323192.168.2.2394.15.114.127
Jan 5, 2025 17:42:51.036576986 CET1035923192.168.2.23108.95.108.15
Jan 5, 2025 17:42:51.036582947 CET1035923192.168.2.23202.137.195.241
Jan 5, 2025 17:42:51.036595106 CET1035923192.168.2.23179.117.54.128
Jan 5, 2025 17:42:51.036617994 CET1035923192.168.2.2343.39.137.29
Jan 5, 2025 17:42:51.036618948 CET1035923192.168.2.23210.129.108.91
Jan 5, 2025 17:42:51.036631107 CET1035923192.168.2.2372.239.139.184
Jan 5, 2025 17:42:51.036640882 CET1035923192.168.2.23102.127.104.191
Jan 5, 2025 17:42:51.036657095 CET1035923192.168.2.2359.130.140.239
Jan 5, 2025 17:42:51.036695004 CET103592323192.168.2.23207.162.18.203
Jan 5, 2025 17:42:51.036695957 CET1035923192.168.2.2391.128.36.98
Jan 5, 2025 17:42:51.036710024 CET1035923192.168.2.23173.110.243.45
Jan 5, 2025 17:42:51.036711931 CET1035923192.168.2.2331.109.187.8
Jan 5, 2025 17:42:51.036778927 CET1035923192.168.2.23155.92.113.22
Jan 5, 2025 17:42:51.036780119 CET1035923192.168.2.23101.43.141.247
Jan 5, 2025 17:42:51.036781073 CET1035923192.168.2.23196.126.126.38
Jan 5, 2025 17:42:51.036843061 CET1035923192.168.2.23147.78.222.166
Jan 5, 2025 17:42:51.036928892 CET1035923192.168.2.23163.77.105.57
Jan 5, 2025 17:42:51.036928892 CET1035923192.168.2.2358.245.106.225
Jan 5, 2025 17:42:51.036928892 CET1035923192.168.2.234.210.84.218
Jan 5, 2025 17:42:51.036932945 CET103592323192.168.2.2314.171.90.125
Jan 5, 2025 17:42:51.036988974 CET1035923192.168.2.23172.56.194.180
Jan 5, 2025 17:42:51.036992073 CET1035923192.168.2.23222.143.85.173
Jan 5, 2025 17:42:51.037015915 CET1035923192.168.2.23219.172.47.16
Jan 5, 2025 17:42:51.037030935 CET1035923192.168.2.23206.91.176.238
Jan 5, 2025 17:42:51.037035942 CET1035923192.168.2.23165.201.239.89
Jan 5, 2025 17:42:51.037060976 CET1035923192.168.2.2319.12.109.70
Jan 5, 2025 17:42:51.037065029 CET1035923192.168.2.23200.119.220.10
Jan 5, 2025 17:42:51.037065029 CET1035923192.168.2.2399.236.88.56
Jan 5, 2025 17:42:51.037079096 CET1035923192.168.2.23103.202.41.121
Jan 5, 2025 17:42:51.037085056 CET103592323192.168.2.23154.73.102.221
Jan 5, 2025 17:42:51.037132978 CET1035923192.168.2.23104.65.102.131
Jan 5, 2025 17:42:51.037156105 CET1035923192.168.2.23159.72.16.217
Jan 5, 2025 17:42:51.037159920 CET1035923192.168.2.2392.240.226.27
Jan 5, 2025 17:42:51.037193060 CET1035923192.168.2.23205.194.249.216
Jan 5, 2025 17:42:51.037223101 CET1035923192.168.2.2367.6.162.135
Jan 5, 2025 17:42:51.037228107 CET1035923192.168.2.2319.174.212.159
Jan 5, 2025 17:42:51.037250996 CET1035923192.168.2.23203.253.142.147
Jan 5, 2025 17:42:51.037256956 CET1035923192.168.2.2319.161.108.127
Jan 5, 2025 17:42:51.037271023 CET1035923192.168.2.2386.230.52.32
Jan 5, 2025 17:42:51.037271023 CET4907263645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:51.037275076 CET103592323192.168.2.2386.120.131.79
Jan 5, 2025 17:42:51.037280083 CET1035923192.168.2.2332.108.110.16
Jan 5, 2025 17:42:51.037290096 CET1035923192.168.2.23222.6.51.22
Jan 5, 2025 17:42:51.037326097 CET1035923192.168.2.2366.234.50.141
Jan 5, 2025 17:42:51.037328959 CET1035923192.168.2.2340.170.82.141
Jan 5, 2025 17:42:51.037337065 CET1035923192.168.2.23219.83.157.198
Jan 5, 2025 17:42:51.037348986 CET1035923192.168.2.238.9.144.227
Jan 5, 2025 17:42:51.037369013 CET1035923192.168.2.23159.220.253.207
Jan 5, 2025 17:42:51.037370920 CET1035923192.168.2.23217.201.149.173
Jan 5, 2025 17:42:51.037393093 CET1035923192.168.2.23115.3.166.241
Jan 5, 2025 17:42:51.037393093 CET103592323192.168.2.23112.38.252.211
Jan 5, 2025 17:42:51.037421942 CET1035923192.168.2.2334.17.223.197
Jan 5, 2025 17:42:51.037445068 CET1035923192.168.2.23101.85.81.242
Jan 5, 2025 17:42:51.037461996 CET1035923192.168.2.2346.234.204.43
Jan 5, 2025 17:42:51.037466049 CET1035923192.168.2.23121.137.50.87
Jan 5, 2025 17:42:51.037502050 CET1035923192.168.2.2313.165.145.48
Jan 5, 2025 17:42:51.037503004 CET1035923192.168.2.2396.208.56.37
Jan 5, 2025 17:42:51.037508011 CET1035923192.168.2.2331.164.7.144
Jan 5, 2025 17:42:51.037516117 CET1035923192.168.2.23189.173.211.20
Jan 5, 2025 17:42:51.037528992 CET1035923192.168.2.2369.154.193.16
Jan 5, 2025 17:42:51.037545919 CET103592323192.168.2.23108.47.59.237
Jan 5, 2025 17:42:51.037559986 CET1035923192.168.2.2359.131.124.219
Jan 5, 2025 17:42:51.037559986 CET1035923192.168.2.2384.136.241.236
Jan 5, 2025 17:42:51.037596941 CET1035923192.168.2.23138.230.197.121
Jan 5, 2025 17:42:51.037635088 CET1035923192.168.2.23136.82.227.247
Jan 5, 2025 17:42:51.037637949 CET1035923192.168.2.23172.157.110.11
Jan 5, 2025 17:42:51.037657976 CET1035923192.168.2.2397.24.24.45
Jan 5, 2025 17:42:51.037658930 CET1035923192.168.2.2379.224.2.216
Jan 5, 2025 17:42:51.037662983 CET1035923192.168.2.2320.190.13.86
Jan 5, 2025 17:42:51.037667990 CET103592323192.168.2.23126.174.157.91
Jan 5, 2025 17:42:51.037668943 CET1035923192.168.2.23126.220.190.232
Jan 5, 2025 17:42:51.037686110 CET1035923192.168.2.23219.5.174.0
Jan 5, 2025 17:42:51.037693977 CET1035923192.168.2.2396.75.28.12
Jan 5, 2025 17:42:51.037709951 CET1035923192.168.2.23121.15.222.122
Jan 5, 2025 17:42:51.037714958 CET1035923192.168.2.2365.152.206.9
Jan 5, 2025 17:42:51.037715912 CET1035923192.168.2.23218.60.152.164
Jan 5, 2025 17:42:51.037736893 CET1035923192.168.2.2378.168.167.62
Jan 5, 2025 17:42:51.037736893 CET1035923192.168.2.2399.145.63.186
Jan 5, 2025 17:42:51.037740946 CET1035923192.168.2.23126.172.173.45
Jan 5, 2025 17:42:51.037755966 CET1035923192.168.2.2386.255.65.148
Jan 5, 2025 17:42:51.037763119 CET103592323192.168.2.23154.21.87.166
Jan 5, 2025 17:42:51.037765980 CET1035923192.168.2.23102.20.79.113
Jan 5, 2025 17:42:51.037772894 CET1035923192.168.2.23156.174.130.69
Jan 5, 2025 17:42:51.037785053 CET1035923192.168.2.2365.221.169.190
Jan 5, 2025 17:42:51.037786961 CET1035923192.168.2.23175.211.236.57
Jan 5, 2025 17:42:51.037798882 CET1035923192.168.2.2399.248.132.98
Jan 5, 2025 17:42:51.037817955 CET1035923192.168.2.23218.71.38.14
Jan 5, 2025 17:42:51.037834883 CET1035923192.168.2.23155.167.150.238
Jan 5, 2025 17:42:51.037863970 CET1035923192.168.2.23157.165.31.253
Jan 5, 2025 17:42:51.037864923 CET1035923192.168.2.23196.71.162.178
Jan 5, 2025 17:42:51.037888050 CET103592323192.168.2.23101.235.242.12
Jan 5, 2025 17:42:51.037888050 CET1035923192.168.2.2372.119.73.55
Jan 5, 2025 17:42:51.037899017 CET1035923192.168.2.231.155.227.112
Jan 5, 2025 17:42:51.037899017 CET1035923192.168.2.23141.97.190.94
Jan 5, 2025 17:42:51.037903070 CET1035923192.168.2.23161.71.62.70
Jan 5, 2025 17:42:51.037930965 CET1035923192.168.2.2398.212.178.68
Jan 5, 2025 17:42:51.037935019 CET1035923192.168.2.2367.180.90.149
Jan 5, 2025 17:42:51.037952900 CET1035923192.168.2.23139.160.32.197
Jan 5, 2025 17:42:51.038002014 CET1035923192.168.2.23151.247.106.7
Jan 5, 2025 17:42:51.038002014 CET1035923192.168.2.23223.181.220.51
Jan 5, 2025 17:42:51.039949894 CET232310359119.238.14.180192.168.2.23
Jan 5, 2025 17:42:51.039999962 CET103592323192.168.2.23119.238.14.180
Jan 5, 2025 17:42:51.040034056 CET2310359189.219.82.231192.168.2.23
Jan 5, 2025 17:42:51.040044069 CET2310359173.68.136.134192.168.2.23
Jan 5, 2025 17:42:51.040055990 CET2310359175.210.143.16192.168.2.23
Jan 5, 2025 17:42:51.040076971 CET1035923192.168.2.23189.219.82.231
Jan 5, 2025 17:42:51.040076971 CET1035923192.168.2.23173.68.136.134
Jan 5, 2025 17:42:51.040088892 CET1035923192.168.2.23175.210.143.16
Jan 5, 2025 17:42:51.040144920 CET2310359174.70.103.211192.168.2.23
Jan 5, 2025 17:42:51.040158987 CET231035947.183.98.253192.168.2.23
Jan 5, 2025 17:42:51.040169001 CET231035974.173.7.86192.168.2.23
Jan 5, 2025 17:42:51.040184021 CET1035923192.168.2.23174.70.103.211
Jan 5, 2025 17:42:51.040200949 CET2310359169.149.125.59192.168.2.23
Jan 5, 2025 17:42:51.040204048 CET1035923192.168.2.2347.183.98.253
Jan 5, 2025 17:42:51.040211916 CET2310359189.57.170.142192.168.2.23
Jan 5, 2025 17:42:51.040220976 CET1035923192.168.2.2374.173.7.86
Jan 5, 2025 17:42:51.040241003 CET2310359133.9.36.55192.168.2.23
Jan 5, 2025 17:42:51.040246010 CET1035923192.168.2.23169.149.125.59
Jan 5, 2025 17:42:51.040254116 CET1035923192.168.2.23189.57.170.142
Jan 5, 2025 17:42:51.040277004 CET1035923192.168.2.23133.9.36.55
Jan 5, 2025 17:42:51.044933081 CET2310359121.226.120.33192.168.2.23
Jan 5, 2025 17:42:51.044943094 CET232310359222.233.39.68192.168.2.23
Jan 5, 2025 17:42:51.044960022 CET23103598.35.242.59192.168.2.23
Jan 5, 2025 17:42:51.044970036 CET2310359111.73.27.214192.168.2.23
Jan 5, 2025 17:42:51.044982910 CET103592323192.168.2.23222.233.39.68
Jan 5, 2025 17:42:51.044982910 CET1035923192.168.2.23121.226.120.33
Jan 5, 2025 17:42:51.044989109 CET1035923192.168.2.238.35.242.59
Jan 5, 2025 17:42:51.045008898 CET1035923192.168.2.23111.73.27.214
Jan 5, 2025 17:42:51.049675941 CET231035991.53.39.62192.168.2.23
Jan 5, 2025 17:42:51.049686909 CET231035989.221.28.178192.168.2.23
Jan 5, 2025 17:42:51.049695015 CET231035942.244.45.28192.168.2.23
Jan 5, 2025 17:42:51.049705029 CET231035988.46.234.167192.168.2.23
Jan 5, 2025 17:42:51.049717903 CET231035914.205.42.243192.168.2.23
Jan 5, 2025 17:42:51.049724102 CET1035923192.168.2.2389.221.28.178
Jan 5, 2025 17:42:51.049725056 CET1035923192.168.2.2391.53.39.62
Jan 5, 2025 17:42:51.049726963 CET1035923192.168.2.2342.244.45.28
Jan 5, 2025 17:42:51.049726963 CET231035945.50.182.228192.168.2.23
Jan 5, 2025 17:42:51.049731016 CET1035923192.168.2.2388.46.234.167
Jan 5, 2025 17:42:51.049738884 CET232310359178.125.146.244192.168.2.23
Jan 5, 2025 17:42:51.049747944 CET2310359196.192.170.183192.168.2.23
Jan 5, 2025 17:42:51.049756050 CET2310359130.221.84.113192.168.2.23
Jan 5, 2025 17:42:51.049758911 CET1035923192.168.2.2314.205.42.243
Jan 5, 2025 17:42:51.049761057 CET1035923192.168.2.2345.50.182.228
Jan 5, 2025 17:42:51.049767017 CET2310359141.240.76.83192.168.2.23
Jan 5, 2025 17:42:51.049774885 CET231035982.98.181.240192.168.2.23
Jan 5, 2025 17:42:51.049782991 CET103592323192.168.2.23178.125.146.244
Jan 5, 2025 17:42:51.049782991 CET2310359166.13.88.92192.168.2.23
Jan 5, 2025 17:42:51.049782991 CET1035923192.168.2.23196.192.170.183
Jan 5, 2025 17:42:51.049788952 CET1035923192.168.2.23130.221.84.113
Jan 5, 2025 17:42:51.049793959 CET231035934.188.238.215192.168.2.23
Jan 5, 2025 17:42:51.049793959 CET1035923192.168.2.23141.240.76.83
Jan 5, 2025 17:42:51.049793959 CET1035923192.168.2.2382.98.181.240
Jan 5, 2025 17:42:51.049802065 CET231035959.244.44.1192.168.2.23
Jan 5, 2025 17:42:51.049806118 CET231035966.251.7.10192.168.2.23
Jan 5, 2025 17:42:51.049814939 CET2310359115.198.136.163192.168.2.23
Jan 5, 2025 17:42:51.049824953 CET232310359160.22.201.149192.168.2.23
Jan 5, 2025 17:42:51.049824953 CET1035923192.168.2.2334.188.238.215
Jan 5, 2025 17:42:51.049834013 CET2310359161.229.220.168192.168.2.23
Jan 5, 2025 17:42:51.049835920 CET1035923192.168.2.23166.13.88.92
Jan 5, 2025 17:42:51.049835920 CET1035923192.168.2.2359.244.44.1
Jan 5, 2025 17:42:51.049835920 CET1035923192.168.2.2366.251.7.10
Jan 5, 2025 17:42:51.049843073 CET231035960.48.39.67192.168.2.23
Jan 5, 2025 17:42:51.049846888 CET2310359113.114.173.149192.168.2.23
Jan 5, 2025 17:42:51.049849987 CET1035923192.168.2.23115.198.136.163
Jan 5, 2025 17:42:51.049850941 CET231035917.119.103.12192.168.2.23
Jan 5, 2025 17:42:51.049858093 CET103592323192.168.2.23160.22.201.149
Jan 5, 2025 17:42:51.049860001 CET2310359165.150.219.55192.168.2.23
Jan 5, 2025 17:42:51.049875021 CET1035923192.168.2.23161.229.220.168
Jan 5, 2025 17:42:51.049876928 CET23103595.64.216.149192.168.2.23
Jan 5, 2025 17:42:51.049879074 CET1035923192.168.2.23113.114.173.149
Jan 5, 2025 17:42:51.049879074 CET1035923192.168.2.23165.150.219.55
Jan 5, 2025 17:42:51.049881935 CET1035923192.168.2.2360.48.39.67
Jan 5, 2025 17:42:51.049889088 CET231035924.109.54.109192.168.2.23
Jan 5, 2025 17:42:51.049896955 CET1035923192.168.2.2317.119.103.12
Jan 5, 2025 17:42:51.049901009 CET2310359209.91.136.168192.168.2.23
Jan 5, 2025 17:42:51.049911976 CET2310359110.210.46.30192.168.2.23
Jan 5, 2025 17:42:51.049921989 CET232310359105.203.131.69192.168.2.23
Jan 5, 2025 17:42:51.049931049 CET2310359120.157.221.234192.168.2.23
Jan 5, 2025 17:42:51.049935102 CET2310359200.231.114.179192.168.2.23
Jan 5, 2025 17:42:51.049935102 CET1035923192.168.2.235.64.216.149
Jan 5, 2025 17:42:51.049935102 CET1035923192.168.2.2324.109.54.109
Jan 5, 2025 17:42:51.049938917 CET1035923192.168.2.23110.210.46.30
Jan 5, 2025 17:42:51.049938917 CET2310359113.159.133.242192.168.2.23
Jan 5, 2025 17:42:51.049941063 CET1035923192.168.2.23209.91.136.168
Jan 5, 2025 17:42:51.049942970 CET2310359156.80.237.13192.168.2.23
Jan 5, 2025 17:42:51.049953938 CET2310359221.57.122.114192.168.2.23
Jan 5, 2025 17:42:51.049957991 CET1035923192.168.2.23120.157.221.234
Jan 5, 2025 17:42:51.049962997 CET231035995.129.142.111192.168.2.23
Jan 5, 2025 17:42:51.049963951 CET103592323192.168.2.23105.203.131.69
Jan 5, 2025 17:42:51.049973965 CET2310359156.176.154.213192.168.2.23
Jan 5, 2025 17:42:51.049979925 CET1035923192.168.2.23200.231.114.179
Jan 5, 2025 17:42:51.049981117 CET1035923192.168.2.23113.159.133.242
Jan 5, 2025 17:42:51.049988985 CET231035981.2.166.198192.168.2.23
Jan 5, 2025 17:42:51.049988985 CET1035923192.168.2.23156.80.237.13
Jan 5, 2025 17:42:51.049992085 CET1035923192.168.2.23221.57.122.114
Jan 5, 2025 17:42:51.049998045 CET2310359188.97.111.197192.168.2.23
Jan 5, 2025 17:42:51.050007105 CET232310359146.38.32.33192.168.2.23
Jan 5, 2025 17:42:51.050009966 CET1035923192.168.2.2395.129.142.111
Jan 5, 2025 17:42:51.050015926 CET2310359123.35.251.52192.168.2.23
Jan 5, 2025 17:42:51.050024986 CET231035938.196.127.211192.168.2.23
Jan 5, 2025 17:42:51.050025940 CET1035923192.168.2.23156.176.154.213
Jan 5, 2025 17:42:51.050035954 CET2310359196.35.10.109192.168.2.23
Jan 5, 2025 17:42:51.050036907 CET103592323192.168.2.23146.38.32.33
Jan 5, 2025 17:42:51.050038099 CET1035923192.168.2.2381.2.166.198
Jan 5, 2025 17:42:51.050041914 CET1035923192.168.2.23123.35.251.52
Jan 5, 2025 17:42:51.050045013 CET231035938.87.190.232192.168.2.23
Jan 5, 2025 17:42:51.050045967 CET1035923192.168.2.23188.97.111.197
Jan 5, 2025 17:42:51.050054073 CET231035990.5.58.221192.168.2.23
Jan 5, 2025 17:42:51.050064087 CET2310359207.194.128.93192.168.2.23
Jan 5, 2025 17:42:51.050070047 CET1035923192.168.2.23196.35.10.109
Jan 5, 2025 17:42:51.050070047 CET1035923192.168.2.2338.87.190.232
Jan 5, 2025 17:42:51.050071955 CET2310359117.80.205.90192.168.2.23
Jan 5, 2025 17:42:51.050076962 CET1035923192.168.2.2338.196.127.211
Jan 5, 2025 17:42:51.050082922 CET23103595.1.66.185192.168.2.23
Jan 5, 2025 17:42:51.050091982 CET2310359112.63.250.209192.168.2.23
Jan 5, 2025 17:42:51.050101995 CET23231035994.15.114.127192.168.2.23
Jan 5, 2025 17:42:51.050107002 CET1035923192.168.2.2390.5.58.221
Jan 5, 2025 17:42:51.050112963 CET2310359108.95.108.15192.168.2.23
Jan 5, 2025 17:42:51.050117970 CET1035923192.168.2.23117.80.205.90
Jan 5, 2025 17:42:51.050120115 CET1035923192.168.2.235.1.66.185
Jan 5, 2025 17:42:51.050121069 CET2310359202.137.195.241192.168.2.23
Jan 5, 2025 17:42:51.050129890 CET2310359179.117.54.128192.168.2.23
Jan 5, 2025 17:42:51.050137043 CET1035923192.168.2.23207.194.128.93
Jan 5, 2025 17:42:51.050137997 CET103592323192.168.2.2394.15.114.127
Jan 5, 2025 17:42:51.050137997 CET1035923192.168.2.23108.95.108.15
Jan 5, 2025 17:42:51.050138950 CET1035923192.168.2.23112.63.250.209
Jan 5, 2025 17:42:51.050138950 CET2310359210.129.108.91192.168.2.23
Jan 5, 2025 17:42:51.050148964 CET231035943.39.137.29192.168.2.23
Jan 5, 2025 17:42:51.050160885 CET231035972.239.139.184192.168.2.23
Jan 5, 2025 17:42:51.050164938 CET1035923192.168.2.23202.137.195.241
Jan 5, 2025 17:42:51.050173998 CET2310359102.127.104.191192.168.2.23
Jan 5, 2025 17:42:51.050182104 CET231035959.130.140.239192.168.2.23
Jan 5, 2025 17:42:51.050184965 CET231035991.128.36.98192.168.2.23
Jan 5, 2025 17:42:51.050184965 CET1035923192.168.2.23179.117.54.128
Jan 5, 2025 17:42:51.050190926 CET1035923192.168.2.2343.39.137.29
Jan 5, 2025 17:42:51.050194979 CET232310359207.162.18.203192.168.2.23
Jan 5, 2025 17:42:51.050203085 CET1035923192.168.2.23210.129.108.91
Jan 5, 2025 17:42:51.050209999 CET1035923192.168.2.2372.239.139.184
Jan 5, 2025 17:42:51.050213099 CET2310359173.110.243.45192.168.2.23
Jan 5, 2025 17:42:51.050215006 CET1035923192.168.2.23102.127.104.191
Jan 5, 2025 17:42:51.050221920 CET231035931.109.187.8192.168.2.23
Jan 5, 2025 17:42:51.050224066 CET1035923192.168.2.2359.130.140.239
Jan 5, 2025 17:42:51.050229073 CET1035923192.168.2.2391.128.36.98
Jan 5, 2025 17:42:51.050231934 CET2310359155.92.113.22192.168.2.23
Jan 5, 2025 17:42:51.050236940 CET103592323192.168.2.23207.162.18.203
Jan 5, 2025 17:42:51.050240993 CET2310359101.43.141.247192.168.2.23
Jan 5, 2025 17:42:51.050251007 CET2310359196.126.126.38192.168.2.23
Jan 5, 2025 17:42:51.050260067 CET2310359147.78.222.166192.168.2.23
Jan 5, 2025 17:42:51.050263882 CET1035923192.168.2.23155.92.113.22
Jan 5, 2025 17:42:51.050263882 CET1035923192.168.2.2331.109.187.8
Jan 5, 2025 17:42:51.050265074 CET231035958.245.106.225192.168.2.23
Jan 5, 2025 17:42:51.050270081 CET2310359163.77.105.57192.168.2.23
Jan 5, 2025 17:42:51.050280094 CET23103594.210.84.218192.168.2.23
Jan 5, 2025 17:42:51.050288916 CET23231035914.171.90.125192.168.2.23
Jan 5, 2025 17:42:51.050293922 CET1035923192.168.2.23147.78.222.166
Jan 5, 2025 17:42:51.050297022 CET1035923192.168.2.23173.110.243.45
Jan 5, 2025 17:42:51.050297022 CET2310359172.56.194.180192.168.2.23
Jan 5, 2025 17:42:51.050297976 CET1035923192.168.2.23101.43.141.247
Jan 5, 2025 17:42:51.050297976 CET1035923192.168.2.23196.126.126.38
Jan 5, 2025 17:42:51.050308943 CET2310359222.143.85.173192.168.2.23
Jan 5, 2025 17:42:51.050309896 CET1035923192.168.2.234.210.84.218
Jan 5, 2025 17:42:51.050312996 CET1035923192.168.2.2358.245.106.225
Jan 5, 2025 17:42:51.050312996 CET103592323192.168.2.2314.171.90.125
Jan 5, 2025 17:42:51.050314903 CET1035923192.168.2.23163.77.105.57
Jan 5, 2025 17:42:51.050323963 CET2310359219.172.47.16192.168.2.23
Jan 5, 2025 17:42:51.050333977 CET2310359206.91.176.238192.168.2.23
Jan 5, 2025 17:42:51.050340891 CET2310359165.201.239.89192.168.2.23
Jan 5, 2025 17:42:51.050344944 CET1035923192.168.2.23172.56.194.180
Jan 5, 2025 17:42:51.050350904 CET1035923192.168.2.23222.143.85.173
Jan 5, 2025 17:42:51.050354958 CET231035919.12.109.70192.168.2.23
Jan 5, 2025 17:42:51.050355911 CET1035923192.168.2.23219.172.47.16
Jan 5, 2025 17:42:51.050364971 CET2310359200.119.220.10192.168.2.23
Jan 5, 2025 17:42:51.050369024 CET231035999.236.88.56192.168.2.23
Jan 5, 2025 17:42:51.050376892 CET2310359103.202.41.121192.168.2.23
Jan 5, 2025 17:42:51.050385952 CET232310359154.73.102.221192.168.2.23
Jan 5, 2025 17:42:51.050389051 CET1035923192.168.2.23206.91.176.238
Jan 5, 2025 17:42:51.050395966 CET2310359104.65.102.131192.168.2.23
Jan 5, 2025 17:42:51.050404072 CET2310359159.72.16.217192.168.2.23
Jan 5, 2025 17:42:51.050405025 CET1035923192.168.2.23165.201.239.89
Jan 5, 2025 17:42:51.050405979 CET1035923192.168.2.2319.12.109.70
Jan 5, 2025 17:42:51.050404072 CET1035923192.168.2.23200.119.220.10
Jan 5, 2025 17:42:51.050404072 CET1035923192.168.2.23103.202.41.121
Jan 5, 2025 17:42:51.050414085 CET231035992.240.226.27192.168.2.23
Jan 5, 2025 17:42:51.050421953 CET1035923192.168.2.2399.236.88.56
Jan 5, 2025 17:42:51.050421953 CET103592323192.168.2.23154.73.102.221
Jan 5, 2025 17:42:51.050422907 CET2310359205.194.249.216192.168.2.23
Jan 5, 2025 17:42:51.050436974 CET1035923192.168.2.23104.65.102.131
Jan 5, 2025 17:42:51.050436974 CET1035923192.168.2.23159.72.16.217
Jan 5, 2025 17:42:51.050448895 CET1035923192.168.2.2392.240.226.27
Jan 5, 2025 17:42:51.050487041 CET1035923192.168.2.23205.194.249.216
Jan 5, 2025 17:42:51.054430008 CET231035967.6.162.135192.168.2.23
Jan 5, 2025 17:42:51.054444075 CET231035919.174.212.159192.168.2.23
Jan 5, 2025 17:42:51.054455996 CET2310359203.253.142.147192.168.2.23
Jan 5, 2025 17:42:51.054465055 CET231035919.161.108.127192.168.2.23
Jan 5, 2025 17:42:51.054475069 CET636454907241.216.189.127192.168.2.23
Jan 5, 2025 17:42:51.054483891 CET231035986.230.52.32192.168.2.23
Jan 5, 2025 17:42:51.054493904 CET23231035986.120.131.79192.168.2.23
Jan 5, 2025 17:42:51.054503918 CET1035923192.168.2.23203.253.142.147
Jan 5, 2025 17:42:51.054503918 CET231035932.108.110.16192.168.2.23
Jan 5, 2025 17:42:51.054507017 CET1035923192.168.2.2319.174.212.159
Jan 5, 2025 17:42:51.054507017 CET1035923192.168.2.2319.161.108.127
Jan 5, 2025 17:42:51.054512978 CET1035923192.168.2.2386.230.52.32
Jan 5, 2025 17:42:51.054514885 CET2310359222.6.51.22192.168.2.23
Jan 5, 2025 17:42:51.054524899 CET231035966.234.50.141192.168.2.23
Jan 5, 2025 17:42:51.054533958 CET231035940.170.82.141192.168.2.23
Jan 5, 2025 17:42:51.054543972 CET2310359219.83.157.198192.168.2.23
Jan 5, 2025 17:42:51.054553986 CET23103598.9.144.227192.168.2.23
Jan 5, 2025 17:42:51.054563046 CET2310359159.220.253.207192.168.2.23
Jan 5, 2025 17:42:51.054569006 CET1035923192.168.2.2340.170.82.141
Jan 5, 2025 17:42:51.054570913 CET2310359217.201.149.173192.168.2.23
Jan 5, 2025 17:42:51.054573059 CET1035923192.168.2.2366.234.50.141
Jan 5, 2025 17:42:51.054580927 CET2310359115.3.166.241192.168.2.23
Jan 5, 2025 17:42:51.054586887 CET232310359112.38.252.211192.168.2.23
Jan 5, 2025 17:42:51.054596901 CET1035923192.168.2.238.9.144.227
Jan 5, 2025 17:42:51.054596901 CET231035934.17.223.197192.168.2.23
Jan 5, 2025 17:42:51.054608107 CET2310359101.85.81.242192.168.2.23
Jan 5, 2025 17:42:51.054615021 CET1035923192.168.2.23115.3.166.241
Jan 5, 2025 17:42:51.054615974 CET103592323192.168.2.23112.38.252.211
Jan 5, 2025 17:42:51.054617882 CET231035946.234.204.43192.168.2.23
Jan 5, 2025 17:42:51.054622889 CET1035923192.168.2.2334.17.223.197
Jan 5, 2025 17:42:51.054626942 CET2310359121.137.50.87192.168.2.23
Jan 5, 2025 17:42:51.054636002 CET231035913.165.145.48192.168.2.23
Jan 5, 2025 17:42:51.054645061 CET231035996.208.56.37192.168.2.23
Jan 5, 2025 17:42:51.054651976 CET1035923192.168.2.23101.85.81.242
Jan 5, 2025 17:42:51.054657936 CET1035923192.168.2.2367.6.162.135
Jan 5, 2025 17:42:51.054660082 CET4907263645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:51.054661989 CET231035931.164.7.144192.168.2.23
Jan 5, 2025 17:42:51.054662943 CET103592323192.168.2.2386.120.131.79
Jan 5, 2025 17:42:51.054666042 CET1035923192.168.2.2332.108.110.16
Jan 5, 2025 17:42:51.054666042 CET1035923192.168.2.23222.6.51.22
Jan 5, 2025 17:42:51.054672956 CET1035923192.168.2.2313.165.145.48
Jan 5, 2025 17:42:51.054672956 CET1035923192.168.2.23159.220.253.207
Jan 5, 2025 17:42:51.054675102 CET2310359189.173.211.20192.168.2.23
Jan 5, 2025 17:42:51.054676056 CET1035923192.168.2.23219.83.157.198
Jan 5, 2025 17:42:51.054683924 CET1035923192.168.2.23217.201.149.173
Jan 5, 2025 17:42:51.054683924 CET1035923192.168.2.2396.208.56.37
Jan 5, 2025 17:42:51.054685116 CET231035969.154.193.16192.168.2.23
Jan 5, 2025 17:42:51.054696083 CET232310359108.47.59.237192.168.2.23
Jan 5, 2025 17:42:51.054702044 CET1035923192.168.2.2346.234.204.43
Jan 5, 2025 17:42:51.054706097 CET231035959.131.124.219192.168.2.23
Jan 5, 2025 17:42:51.054707050 CET1035923192.168.2.23121.137.50.87
Jan 5, 2025 17:42:51.054707050 CET1035923192.168.2.2331.164.7.144
Jan 5, 2025 17:42:51.054711103 CET1035923192.168.2.2369.154.193.16
Jan 5, 2025 17:42:51.054714918 CET1035923192.168.2.23189.173.211.20
Jan 5, 2025 17:42:51.054716110 CET231035984.136.241.236192.168.2.23
Jan 5, 2025 17:42:51.054728031 CET2310359138.230.197.121192.168.2.23
Jan 5, 2025 17:42:51.054728985 CET103592323192.168.2.23108.47.59.237
Jan 5, 2025 17:42:51.054735899 CET2310359136.82.227.247192.168.2.23
Jan 5, 2025 17:42:51.054744005 CET1035923192.168.2.2359.131.124.219
Jan 5, 2025 17:42:51.054744959 CET2310359172.157.110.11192.168.2.23
Jan 5, 2025 17:42:51.054754972 CET231035997.24.24.45192.168.2.23
Jan 5, 2025 17:42:51.054764032 CET231035979.224.2.216192.168.2.23
Jan 5, 2025 17:42:51.054768085 CET1035923192.168.2.2384.136.241.236
Jan 5, 2025 17:42:51.054769039 CET231035920.190.13.86192.168.2.23
Jan 5, 2025 17:42:51.054769039 CET1035923192.168.2.23138.230.197.121
Jan 5, 2025 17:42:51.054769039 CET1035923192.168.2.23136.82.227.247
Jan 5, 2025 17:42:51.054779053 CET1035923192.168.2.23172.157.110.11
Jan 5, 2025 17:42:51.054779053 CET232310359126.174.157.91192.168.2.23
Jan 5, 2025 17:42:51.054788113 CET1035923192.168.2.2379.224.2.216
Jan 5, 2025 17:42:51.054789066 CET2310359126.220.190.232192.168.2.23
Jan 5, 2025 17:42:51.054795027 CET1035923192.168.2.2320.190.13.86
Jan 5, 2025 17:42:51.054796934 CET2310359219.5.174.0192.168.2.23
Jan 5, 2025 17:42:51.054800034 CET1035923192.168.2.2397.24.24.45
Jan 5, 2025 17:42:51.054807901 CET231035996.75.28.12192.168.2.23
Jan 5, 2025 17:42:51.054816008 CET103592323192.168.2.23126.174.157.91
Jan 5, 2025 17:42:51.054817915 CET2310359121.15.222.122192.168.2.23
Jan 5, 2025 17:42:51.054820061 CET1035923192.168.2.23126.220.190.232
Jan 5, 2025 17:42:51.054827929 CET231035965.152.206.9192.168.2.23
Jan 5, 2025 17:42:51.054837942 CET2310359218.60.152.164192.168.2.23
Jan 5, 2025 17:42:51.054838896 CET1035923192.168.2.2396.75.28.12
Jan 5, 2025 17:42:51.054841042 CET1035923192.168.2.23219.5.174.0
Jan 5, 2025 17:42:51.054847002 CET231035978.168.167.62192.168.2.23
Jan 5, 2025 17:42:51.054856062 CET2310359126.172.173.45192.168.2.23
Jan 5, 2025 17:42:51.054857016 CET1035923192.168.2.2365.152.206.9
Jan 5, 2025 17:42:51.054857016 CET1035923192.168.2.23121.15.222.122
Jan 5, 2025 17:42:51.054861069 CET1035923192.168.2.23218.60.152.164
Jan 5, 2025 17:42:51.054864883 CET231035999.145.63.186192.168.2.23
Jan 5, 2025 17:42:51.054874897 CET231035986.255.65.148192.168.2.23
Jan 5, 2025 17:42:51.054883957 CET232310359154.21.87.166192.168.2.23
Jan 5, 2025 17:42:51.054891109 CET1035923192.168.2.2378.168.167.62
Jan 5, 2025 17:42:51.054891109 CET1035923192.168.2.2399.145.63.186
Jan 5, 2025 17:42:51.054893017 CET1035923192.168.2.23126.172.173.45
Jan 5, 2025 17:42:51.054897070 CET2310359102.20.79.113192.168.2.23
Jan 5, 2025 17:42:51.054905891 CET2310359156.174.130.69192.168.2.23
Jan 5, 2025 17:42:51.054909945 CET1035923192.168.2.2386.255.65.148
Jan 5, 2025 17:42:51.054914951 CET231035965.221.169.190192.168.2.23
Jan 5, 2025 17:42:51.054918051 CET103592323192.168.2.23154.21.87.166
Jan 5, 2025 17:42:51.054924965 CET2310359175.211.236.57192.168.2.23
Jan 5, 2025 17:42:51.054934978 CET1035923192.168.2.23156.174.130.69
Jan 5, 2025 17:42:51.054934978 CET1035923192.168.2.23102.20.79.113
Jan 5, 2025 17:42:51.054941893 CET231035999.248.132.98192.168.2.23
Jan 5, 2025 17:42:51.054951906 CET2310359218.71.38.14192.168.2.23
Jan 5, 2025 17:42:51.054959059 CET2310359155.167.150.238192.168.2.23
Jan 5, 2025 17:42:51.054968119 CET2310359157.165.31.253192.168.2.23
Jan 5, 2025 17:42:51.054980040 CET2310359196.71.162.178192.168.2.23
Jan 5, 2025 17:42:51.054995060 CET231035972.119.73.55192.168.2.23
Jan 5, 2025 17:42:51.055003881 CET232310359101.235.242.12192.168.2.23
Jan 5, 2025 17:42:51.055013895 CET23103591.155.227.112192.168.2.23
Jan 5, 2025 17:42:51.055023909 CET2310359161.71.62.70192.168.2.23
Jan 5, 2025 17:42:51.055032015 CET2310359141.97.190.94192.168.2.23
Jan 5, 2025 17:42:51.055033922 CET103592323192.168.2.23101.235.242.12
Jan 5, 2025 17:42:51.055037022 CET1035923192.168.2.2372.119.73.55
Jan 5, 2025 17:42:51.055042028 CET231035998.212.178.68192.168.2.23
Jan 5, 2025 17:42:51.055051088 CET231035967.180.90.149192.168.2.23
Jan 5, 2025 17:42:51.055058956 CET2310359139.160.32.197192.168.2.23
Jan 5, 2025 17:42:51.055061102 CET1035923192.168.2.23161.71.62.70
Jan 5, 2025 17:42:51.055068970 CET2310359151.247.106.7192.168.2.23
Jan 5, 2025 17:42:51.055078030 CET2310359223.181.220.51192.168.2.23
Jan 5, 2025 17:42:51.055099010 CET1035923192.168.2.23151.247.106.7
Jan 5, 2025 17:42:51.055238008 CET1035923192.168.2.2365.221.169.190
Jan 5, 2025 17:42:51.055244923 CET1035923192.168.2.2399.248.132.98
Jan 5, 2025 17:42:51.055247068 CET1035923192.168.2.23218.71.38.14
Jan 5, 2025 17:42:51.055248022 CET1035923192.168.2.23155.167.150.238
Jan 5, 2025 17:42:51.055247068 CET1035923192.168.2.23175.211.236.57
Jan 5, 2025 17:42:51.055252075 CET1035923192.168.2.23157.165.31.253
Jan 5, 2025 17:42:51.055255890 CET1035923192.168.2.23196.71.162.178
Jan 5, 2025 17:42:51.055270910 CET1035923192.168.2.231.155.227.112
Jan 5, 2025 17:42:51.055270910 CET1035923192.168.2.23141.97.190.94
Jan 5, 2025 17:42:51.055274963 CET1035923192.168.2.2367.180.90.149
Jan 5, 2025 17:42:51.055277109 CET1035923192.168.2.2398.212.178.68
Jan 5, 2025 17:42:51.055278063 CET1035923192.168.2.23223.181.220.51
Jan 5, 2025 17:42:51.055280924 CET1035923192.168.2.23139.160.32.197
Jan 5, 2025 17:42:51.059937000 CET636454907241.216.189.127192.168.2.23
Jan 5, 2025 17:42:51.747476101 CET636454907241.216.189.127192.168.2.23
Jan 5, 2025 17:42:51.747719049 CET4907263645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:51.747719049 CET4907263645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:51.751008034 CET4907463645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:51.757884979 CET636454907441.216.189.127192.168.2.23
Jan 5, 2025 17:42:51.757965088 CET4907463645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:51.767935991 CET4907463645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:51.772864103 CET636454907441.216.189.127192.168.2.23
Jan 5, 2025 17:42:51.772902012 CET4907463645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:51.777686119 CET636454907441.216.189.127192.168.2.23
Jan 5, 2025 17:42:52.039302111 CET1035923192.168.2.23190.80.134.167
Jan 5, 2025 17:42:52.039304972 CET103592323192.168.2.2348.224.212.96
Jan 5, 2025 17:42:52.039330959 CET1035923192.168.2.2368.149.0.150
Jan 5, 2025 17:42:52.039334059 CET1035923192.168.2.23206.17.250.183
Jan 5, 2025 17:42:52.039335012 CET1035923192.168.2.2386.163.114.176
Jan 5, 2025 17:42:52.039350033 CET1035923192.168.2.23135.25.196.201
Jan 5, 2025 17:42:52.039413929 CET1035923192.168.2.23122.142.68.207
Jan 5, 2025 17:42:52.039414883 CET1035923192.168.2.23192.198.127.46
Jan 5, 2025 17:42:52.039417028 CET1035923192.168.2.23176.200.62.76
Jan 5, 2025 17:42:52.039423943 CET1035923192.168.2.23193.58.82.130
Jan 5, 2025 17:42:52.039460897 CET1035923192.168.2.2331.237.126.163
Jan 5, 2025 17:42:52.039462090 CET103592323192.168.2.2361.228.7.71
Jan 5, 2025 17:42:52.039462090 CET1035923192.168.2.2341.94.79.171
Jan 5, 2025 17:42:52.039467096 CET1035923192.168.2.2388.1.113.5
Jan 5, 2025 17:42:52.039519072 CET1035923192.168.2.23164.243.202.203
Jan 5, 2025 17:42:52.039527893 CET1035923192.168.2.2320.122.32.192
Jan 5, 2025 17:42:52.039530993 CET1035923192.168.2.23164.126.36.140
Jan 5, 2025 17:42:52.039530993 CET103592323192.168.2.2331.168.180.141
Jan 5, 2025 17:42:52.039531946 CET1035923192.168.2.2383.176.152.59
Jan 5, 2025 17:42:52.039531946 CET1035923192.168.2.2314.219.236.251
Jan 5, 2025 17:42:52.039535999 CET1035923192.168.2.23186.104.179.215
Jan 5, 2025 17:42:52.039599895 CET1035923192.168.2.23180.173.160.131
Jan 5, 2025 17:42:52.039609909 CET1035923192.168.2.23121.160.234.29
Jan 5, 2025 17:42:52.039612055 CET1035923192.168.2.23150.91.53.82
Jan 5, 2025 17:42:52.039627075 CET1035923192.168.2.23146.77.114.208
Jan 5, 2025 17:42:52.039628983 CET1035923192.168.2.2379.146.37.120
Jan 5, 2025 17:42:52.039633036 CET1035923192.168.2.2388.163.229.160
Jan 5, 2025 17:42:52.039635897 CET1035923192.168.2.2344.158.32.60
Jan 5, 2025 17:42:52.039685965 CET1035923192.168.2.23198.28.195.129
Jan 5, 2025 17:42:52.039695024 CET1035923192.168.2.23105.168.79.207
Jan 5, 2025 17:42:52.039699078 CET103592323192.168.2.232.27.16.190
Jan 5, 2025 17:42:52.039724112 CET1035923192.168.2.23115.192.35.232
Jan 5, 2025 17:42:52.039729118 CET1035923192.168.2.23190.21.29.13
Jan 5, 2025 17:42:52.039743900 CET1035923192.168.2.2378.48.119.212
Jan 5, 2025 17:42:52.039743900 CET1035923192.168.2.2379.25.218.173
Jan 5, 2025 17:42:52.039752007 CET1035923192.168.2.23167.70.91.4
Jan 5, 2025 17:42:52.039752007 CET1035923192.168.2.2359.133.7.27
Jan 5, 2025 17:42:52.039760113 CET1035923192.168.2.23188.130.146.26
Jan 5, 2025 17:42:52.039794922 CET1035923192.168.2.2363.177.121.133
Jan 5, 2025 17:42:52.039794922 CET103592323192.168.2.2334.207.128.241
Jan 5, 2025 17:42:52.039794922 CET1035923192.168.2.2388.65.129.210
Jan 5, 2025 17:42:52.039803982 CET1035923192.168.2.2318.247.240.208
Jan 5, 2025 17:42:52.039803982 CET1035923192.168.2.23155.54.25.124
Jan 5, 2025 17:42:52.039829969 CET1035923192.168.2.23114.13.34.172
Jan 5, 2025 17:42:52.039830923 CET1035923192.168.2.2380.75.171.156
Jan 5, 2025 17:42:52.039834023 CET1035923192.168.2.232.191.80.57
Jan 5, 2025 17:42:52.039834023 CET1035923192.168.2.23157.244.201.211
Jan 5, 2025 17:42:52.039839983 CET1035923192.168.2.2347.198.217.33
Jan 5, 2025 17:42:52.039844990 CET1035923192.168.2.23201.234.205.29
Jan 5, 2025 17:42:52.039844990 CET103592323192.168.2.23156.124.8.62
Jan 5, 2025 17:42:52.039849997 CET1035923192.168.2.23194.23.184.174
Jan 5, 2025 17:42:52.039849997 CET1035923192.168.2.23109.133.42.129
Jan 5, 2025 17:42:52.039863110 CET1035923192.168.2.2368.95.158.162
Jan 5, 2025 17:42:52.039871931 CET1035923192.168.2.23221.207.38.133
Jan 5, 2025 17:42:52.039875031 CET1035923192.168.2.23213.147.108.133
Jan 5, 2025 17:42:52.039875031 CET1035923192.168.2.2391.75.127.70
Jan 5, 2025 17:42:52.039881945 CET1035923192.168.2.2383.44.31.228
Jan 5, 2025 17:42:52.039920092 CET1035923192.168.2.23154.254.73.2
Jan 5, 2025 17:42:52.039936066 CET1035923192.168.2.2354.60.167.108
Jan 5, 2025 17:42:52.039937019 CET1035923192.168.2.23179.90.118.205
Jan 5, 2025 17:42:52.039977074 CET1035923192.168.2.2338.149.112.246
Jan 5, 2025 17:42:52.039984941 CET1035923192.168.2.2380.219.52.22
Jan 5, 2025 17:42:52.039987087 CET103592323192.168.2.2397.189.135.25
Jan 5, 2025 17:42:52.039988041 CET1035923192.168.2.23160.213.9.21
Jan 5, 2025 17:42:52.039988041 CET1035923192.168.2.23178.106.8.232
Jan 5, 2025 17:42:52.039994955 CET1035923192.168.2.2381.239.206.232
Jan 5, 2025 17:42:52.040000916 CET1035923192.168.2.23182.217.214.220
Jan 5, 2025 17:42:52.040004015 CET1035923192.168.2.23125.17.212.245
Jan 5, 2025 17:42:52.040004015 CET1035923192.168.2.23181.157.215.173
Jan 5, 2025 17:42:52.040005922 CET1035923192.168.2.23109.97.74.9
Jan 5, 2025 17:42:52.040005922 CET103592323192.168.2.23221.64.198.4
Jan 5, 2025 17:42:52.040009022 CET1035923192.168.2.23217.241.218.182
Jan 5, 2025 17:42:52.040036917 CET1035923192.168.2.23128.28.152.126
Jan 5, 2025 17:42:52.040036917 CET1035923192.168.2.23132.251.135.169
Jan 5, 2025 17:42:52.040043116 CET1035923192.168.2.23212.151.55.251
Jan 5, 2025 17:42:52.040046930 CET1035923192.168.2.23142.26.184.49
Jan 5, 2025 17:42:52.040050030 CET1035923192.168.2.2381.34.224.203
Jan 5, 2025 17:42:52.040061951 CET1035923192.168.2.2368.137.4.102
Jan 5, 2025 17:42:52.040074110 CET1035923192.168.2.23116.38.167.77
Jan 5, 2025 17:42:52.040077925 CET1035923192.168.2.23170.188.131.84
Jan 5, 2025 17:42:52.040082932 CET1035923192.168.2.2390.116.215.96
Jan 5, 2025 17:42:52.040085077 CET103592323192.168.2.2391.100.206.69
Jan 5, 2025 17:42:52.040105104 CET1035923192.168.2.23168.94.147.85
Jan 5, 2025 17:42:52.040108919 CET1035923192.168.2.23155.152.132.33
Jan 5, 2025 17:42:52.040148020 CET1035923192.168.2.23175.141.201.193
Jan 5, 2025 17:42:52.040155888 CET1035923192.168.2.2387.143.94.197
Jan 5, 2025 17:42:52.040158033 CET1035923192.168.2.23192.117.155.50
Jan 5, 2025 17:42:52.040158987 CET1035923192.168.2.2372.22.223.221
Jan 5, 2025 17:42:52.040158987 CET1035923192.168.2.2313.10.3.88
Jan 5, 2025 17:42:52.040174961 CET103592323192.168.2.2367.199.218.44
Jan 5, 2025 17:42:52.040177107 CET1035923192.168.2.23175.228.233.245
Jan 5, 2025 17:42:52.040188074 CET1035923192.168.2.231.222.217.202
Jan 5, 2025 17:42:52.040193081 CET1035923192.168.2.2341.58.93.194
Jan 5, 2025 17:42:52.040208101 CET1035923192.168.2.23167.206.24.183
Jan 5, 2025 17:42:52.040208101 CET1035923192.168.2.2323.64.64.25
Jan 5, 2025 17:42:52.040210009 CET1035923192.168.2.23197.44.206.193
Jan 5, 2025 17:42:52.040210009 CET1035923192.168.2.2378.240.160.233
Jan 5, 2025 17:42:52.040215969 CET1035923192.168.2.23159.231.33.248
Jan 5, 2025 17:42:52.040229082 CET1035923192.168.2.2390.89.151.223
Jan 5, 2025 17:42:52.040234089 CET1035923192.168.2.2384.132.46.25
Jan 5, 2025 17:42:52.040234089 CET103592323192.168.2.2340.198.172.74
Jan 5, 2025 17:42:52.040246964 CET1035923192.168.2.23174.160.9.42
Jan 5, 2025 17:42:52.040249109 CET1035923192.168.2.23145.119.221.237
Jan 5, 2025 17:42:52.040257931 CET1035923192.168.2.23102.31.188.137
Jan 5, 2025 17:42:52.040258884 CET1035923192.168.2.2359.109.19.164
Jan 5, 2025 17:42:52.040258884 CET1035923192.168.2.238.90.203.18
Jan 5, 2025 17:42:52.040261030 CET1035923192.168.2.23163.55.230.180
Jan 5, 2025 17:42:52.040266991 CET1035923192.168.2.23198.232.208.252
Jan 5, 2025 17:42:52.040267944 CET1035923192.168.2.23126.7.100.142
Jan 5, 2025 17:42:52.040297985 CET1035923192.168.2.23184.46.10.86
Jan 5, 2025 17:42:52.040323973 CET103592323192.168.2.23147.171.13.60
Jan 5, 2025 17:42:52.040338039 CET1035923192.168.2.2331.220.215.45
Jan 5, 2025 17:42:52.040348053 CET1035923192.168.2.2367.17.193.253
Jan 5, 2025 17:42:52.040358067 CET1035923192.168.2.235.136.131.174
Jan 5, 2025 17:42:52.040360928 CET1035923192.168.2.2396.146.104.252
Jan 5, 2025 17:42:52.040378094 CET1035923192.168.2.23189.213.98.29
Jan 5, 2025 17:42:52.040381908 CET1035923192.168.2.23171.46.213.10
Jan 5, 2025 17:42:52.040381908 CET1035923192.168.2.231.21.146.26
Jan 5, 2025 17:42:52.040381908 CET1035923192.168.2.23105.134.109.214
Jan 5, 2025 17:42:52.040385962 CET103592323192.168.2.2340.88.198.29
Jan 5, 2025 17:42:52.040385962 CET1035923192.168.2.23197.144.58.62
Jan 5, 2025 17:42:52.040393114 CET1035923192.168.2.2319.159.168.15
Jan 5, 2025 17:42:52.040400028 CET1035923192.168.2.23114.188.131.217
Jan 5, 2025 17:42:52.040400028 CET1035923192.168.2.23209.78.227.175
Jan 5, 2025 17:42:52.040415049 CET1035923192.168.2.2376.20.150.189
Jan 5, 2025 17:42:52.040416956 CET1035923192.168.2.2324.195.65.240
Jan 5, 2025 17:42:52.040422916 CET1035923192.168.2.2394.29.46.44
Jan 5, 2025 17:42:52.040425062 CET1035923192.168.2.2390.36.107.240
Jan 5, 2025 17:42:52.040425062 CET1035923192.168.2.23195.233.37.229
Jan 5, 2025 17:42:52.040433884 CET1035923192.168.2.2372.139.253.83
Jan 5, 2025 17:42:52.040440083 CET1035923192.168.2.232.78.110.173
Jan 5, 2025 17:42:52.040442944 CET103592323192.168.2.23119.138.62.22
Jan 5, 2025 17:42:52.040452957 CET1035923192.168.2.2370.3.255.206
Jan 5, 2025 17:42:52.040468931 CET1035923192.168.2.2379.134.164.131
Jan 5, 2025 17:42:52.040477991 CET1035923192.168.2.2368.200.101.27
Jan 5, 2025 17:42:52.040481091 CET1035923192.168.2.2371.131.125.87
Jan 5, 2025 17:42:52.040482044 CET1035923192.168.2.23109.79.0.255
Jan 5, 2025 17:42:52.040486097 CET1035923192.168.2.23223.139.123.244
Jan 5, 2025 17:42:52.040486097 CET1035923192.168.2.2363.171.211.216
Jan 5, 2025 17:42:52.040502071 CET103592323192.168.2.23135.255.36.150
Jan 5, 2025 17:42:52.040509939 CET1035923192.168.2.2374.47.113.23
Jan 5, 2025 17:42:52.040549040 CET1035923192.168.2.2313.87.121.49
Jan 5, 2025 17:42:52.040553093 CET1035923192.168.2.23148.136.129.51
Jan 5, 2025 17:42:52.040565968 CET1035923192.168.2.23166.210.22.6
Jan 5, 2025 17:42:52.040575027 CET1035923192.168.2.23136.250.233.71
Jan 5, 2025 17:42:52.040575027 CET1035923192.168.2.231.237.152.175
Jan 5, 2025 17:42:52.040575027 CET1035923192.168.2.2367.160.125.132
Jan 5, 2025 17:42:52.040587902 CET1035923192.168.2.23164.243.206.168
Jan 5, 2025 17:42:52.040617943 CET103592323192.168.2.23196.2.209.201
Jan 5, 2025 17:42:52.040620089 CET1035923192.168.2.23142.47.57.123
Jan 5, 2025 17:42:52.040620089 CET1035923192.168.2.23204.66.182.38
Jan 5, 2025 17:42:52.040621996 CET1035923192.168.2.23211.96.93.84
Jan 5, 2025 17:42:52.040626049 CET1035923192.168.2.23161.142.13.94
Jan 5, 2025 17:42:52.040644884 CET1035923192.168.2.2338.254.222.110
Jan 5, 2025 17:42:52.040646076 CET1035923192.168.2.2341.189.231.12
Jan 5, 2025 17:42:52.040648937 CET1035923192.168.2.23192.9.30.27
Jan 5, 2025 17:42:52.040652037 CET1035923192.168.2.2397.9.6.41
Jan 5, 2025 17:42:52.040652990 CET1035923192.168.2.2363.237.252.183
Jan 5, 2025 17:42:52.040653944 CET1035923192.168.2.2366.91.77.86
Jan 5, 2025 17:42:52.040653944 CET1035923192.168.2.2394.177.5.92
Jan 5, 2025 17:42:52.044132948 CET403802323192.168.2.23119.238.14.180
Jan 5, 2025 17:42:52.044413090 CET2310359190.80.134.167192.168.2.23
Jan 5, 2025 17:42:52.044425011 CET23231035948.224.212.96192.168.2.23
Jan 5, 2025 17:42:52.044434071 CET2310359206.17.250.183192.168.2.23
Jan 5, 2025 17:42:52.044442892 CET231035968.149.0.150192.168.2.23
Jan 5, 2025 17:42:52.044461012 CET231035986.163.114.176192.168.2.23
Jan 5, 2025 17:42:52.044462919 CET1035923192.168.2.23190.80.134.167
Jan 5, 2025 17:42:52.044472933 CET2310359135.25.196.201192.168.2.23
Jan 5, 2025 17:42:52.044478893 CET103592323192.168.2.2348.224.212.96
Jan 5, 2025 17:42:52.044481039 CET1035923192.168.2.23206.17.250.183
Jan 5, 2025 17:42:52.044485092 CET2310359122.142.68.207192.168.2.23
Jan 5, 2025 17:42:52.044490099 CET1035923192.168.2.2368.149.0.150
Jan 5, 2025 17:42:52.044503927 CET1035923192.168.2.2386.163.114.176
Jan 5, 2025 17:42:52.044512987 CET1035923192.168.2.23135.25.196.201
Jan 5, 2025 17:42:52.044526100 CET1035923192.168.2.23122.142.68.207
Jan 5, 2025 17:42:52.044928074 CET2310359176.200.62.76192.168.2.23
Jan 5, 2025 17:42:52.044938087 CET2310359193.58.82.130192.168.2.23
Jan 5, 2025 17:42:52.044953108 CET2310359192.198.127.46192.168.2.23
Jan 5, 2025 17:42:52.044965029 CET231035931.237.126.163192.168.2.23
Jan 5, 2025 17:42:52.044965982 CET1035923192.168.2.23193.58.82.130
Jan 5, 2025 17:42:52.044975996 CET23231035961.228.7.71192.168.2.23
Jan 5, 2025 17:42:52.044991970 CET1035923192.168.2.23192.198.127.46
Jan 5, 2025 17:42:52.044992924 CET1035923192.168.2.23176.200.62.76
Jan 5, 2025 17:42:52.044992924 CET1035923192.168.2.2331.237.126.163
Jan 5, 2025 17:42:52.045018911 CET103592323192.168.2.2361.228.7.71
Jan 5, 2025 17:42:52.045057058 CET231035941.94.79.171192.168.2.23
Jan 5, 2025 17:42:52.045067072 CET231035988.1.113.5192.168.2.23
Jan 5, 2025 17:42:52.045074940 CET231035920.122.32.192192.168.2.23
Jan 5, 2025 17:42:52.045084953 CET2310359164.126.36.140192.168.2.23
Jan 5, 2025 17:42:52.045094967 CET1035923192.168.2.2388.1.113.5
Jan 5, 2025 17:42:52.045095921 CET2310359164.243.202.203192.168.2.23
Jan 5, 2025 17:42:52.045106888 CET23231035931.168.180.141192.168.2.23
Jan 5, 2025 17:42:52.045109987 CET1035923192.168.2.2341.94.79.171
Jan 5, 2025 17:42:52.045109987 CET1035923192.168.2.2320.122.32.192
Jan 5, 2025 17:42:52.045118093 CET2310359186.104.179.215192.168.2.23
Jan 5, 2025 17:42:52.045128107 CET1035923192.168.2.23164.243.202.203
Jan 5, 2025 17:42:52.045130968 CET231035983.176.152.59192.168.2.23
Jan 5, 2025 17:42:52.045131922 CET1035923192.168.2.23164.126.36.140
Jan 5, 2025 17:42:52.045157909 CET231035914.219.236.251192.168.2.23
Jan 5, 2025 17:42:52.045161009 CET103592323192.168.2.2331.168.180.141
Jan 5, 2025 17:42:52.045161009 CET1035923192.168.2.23186.104.179.215
Jan 5, 2025 17:42:52.045166016 CET1035923192.168.2.2383.176.152.59
Jan 5, 2025 17:42:52.045170069 CET2310359180.173.160.131192.168.2.23
Jan 5, 2025 17:42:52.045180082 CET2310359121.160.234.29192.168.2.23
Jan 5, 2025 17:42:52.045192003 CET2310359150.91.53.82192.168.2.23
Jan 5, 2025 17:42:52.045195103 CET1035923192.168.2.2314.219.236.251
Jan 5, 2025 17:42:52.045201063 CET1035923192.168.2.23180.173.160.131
Jan 5, 2025 17:42:52.045202017 CET231035979.146.37.120192.168.2.23
Jan 5, 2025 17:42:52.045218945 CET2310359146.77.114.208192.168.2.23
Jan 5, 2025 17:42:52.045224905 CET1035923192.168.2.23121.160.234.29
Jan 5, 2025 17:42:52.045229912 CET231035944.158.32.60192.168.2.23
Jan 5, 2025 17:42:52.045241117 CET1035923192.168.2.2379.146.37.120
Jan 5, 2025 17:42:52.045242071 CET231035988.163.229.160192.168.2.23
Jan 5, 2025 17:42:52.045243979 CET1035923192.168.2.23150.91.53.82
Jan 5, 2025 17:42:52.045254946 CET1035923192.168.2.23146.77.114.208
Jan 5, 2025 17:42:52.045254946 CET2310359198.28.195.129192.168.2.23
Jan 5, 2025 17:42:52.045267105 CET2310359105.168.79.207192.168.2.23
Jan 5, 2025 17:42:52.045269966 CET1035923192.168.2.2344.158.32.60
Jan 5, 2025 17:42:52.045278072 CET2323103592.27.16.190192.168.2.23
Jan 5, 2025 17:42:52.045288086 CET1035923192.168.2.23198.28.195.129
Jan 5, 2025 17:42:52.045290947 CET2310359115.192.35.232192.168.2.23
Jan 5, 2025 17:42:52.045295954 CET1035923192.168.2.2388.163.229.160
Jan 5, 2025 17:42:52.045300961 CET2310359190.21.29.13192.168.2.23
Jan 5, 2025 17:42:52.045312881 CET103592323192.168.2.232.27.16.190
Jan 5, 2025 17:42:52.045315027 CET231035978.48.119.212192.168.2.23
Jan 5, 2025 17:42:52.045320988 CET1035923192.168.2.23115.192.35.232
Jan 5, 2025 17:42:52.045325994 CET231035979.25.218.173192.168.2.23
Jan 5, 2025 17:42:52.045329094 CET1035923192.168.2.23105.168.79.207
Jan 5, 2025 17:42:52.045337915 CET2310359167.70.91.4192.168.2.23
Jan 5, 2025 17:42:52.045339108 CET1035923192.168.2.23190.21.29.13
Jan 5, 2025 17:42:52.045347929 CET231035959.133.7.27192.168.2.23
Jan 5, 2025 17:42:52.045351028 CET1035923192.168.2.2378.48.119.212
Jan 5, 2025 17:42:52.045360088 CET2310359188.130.146.26192.168.2.23
Jan 5, 2025 17:42:52.045371056 CET231035963.177.121.133192.168.2.23
Jan 5, 2025 17:42:52.045378923 CET23231035934.207.128.241192.168.2.23
Jan 5, 2025 17:42:52.045389891 CET231035918.247.240.208192.168.2.23
Jan 5, 2025 17:42:52.045401096 CET231035988.65.129.210192.168.2.23
Jan 5, 2025 17:42:52.045406103 CET1035923192.168.2.23167.70.91.4
Jan 5, 2025 17:42:52.045406103 CET1035923192.168.2.2359.133.7.27
Jan 5, 2025 17:42:52.045414925 CET1035923192.168.2.2379.25.218.173
Jan 5, 2025 17:42:52.045416117 CET2310359155.54.25.124192.168.2.23
Jan 5, 2025 17:42:52.045417070 CET1035923192.168.2.23188.130.146.26
Jan 5, 2025 17:42:52.045424938 CET1035923192.168.2.2363.177.121.133
Jan 5, 2025 17:42:52.045424938 CET103592323192.168.2.2334.207.128.241
Jan 5, 2025 17:42:52.045433044 CET1035923192.168.2.2388.65.129.210
Jan 5, 2025 17:42:52.045439005 CET2310359114.13.34.172192.168.2.23
Jan 5, 2025 17:42:52.045440912 CET1035923192.168.2.2318.247.240.208
Jan 5, 2025 17:42:52.045449972 CET231035980.75.171.156192.168.2.23
Jan 5, 2025 17:42:52.045449972 CET1035923192.168.2.23155.54.25.124
Jan 5, 2025 17:42:52.045459986 CET23103592.191.80.57192.168.2.23
Jan 5, 2025 17:42:52.045473099 CET2310359157.244.201.211192.168.2.23
Jan 5, 2025 17:42:52.045479059 CET1035923192.168.2.23114.13.34.172
Jan 5, 2025 17:42:52.045480013 CET1035923192.168.2.2380.75.171.156
Jan 5, 2025 17:42:52.045485020 CET231035947.198.217.33192.168.2.23
Jan 5, 2025 17:42:52.045496941 CET2310359201.234.205.29192.168.2.23
Jan 5, 2025 17:42:52.045497894 CET1035923192.168.2.232.191.80.57
Jan 5, 2025 17:42:52.045516014 CET1035923192.168.2.23157.244.201.211
Jan 5, 2025 17:42:52.045648098 CET2310359194.23.184.174192.168.2.23
Jan 5, 2025 17:42:52.045658112 CET2310359109.133.42.129192.168.2.23
Jan 5, 2025 17:42:52.045661926 CET232310359156.124.8.62192.168.2.23
Jan 5, 2025 17:42:52.045665026 CET231035968.95.158.162192.168.2.23
Jan 5, 2025 17:42:52.045670033 CET2310359221.207.38.133192.168.2.23
Jan 5, 2025 17:42:52.045674086 CET2310359213.147.108.133192.168.2.23
Jan 5, 2025 17:42:52.045677900 CET231035991.75.127.70192.168.2.23
Jan 5, 2025 17:42:52.045681953 CET231035983.44.31.228192.168.2.23
Jan 5, 2025 17:42:52.045686007 CET2310359154.254.73.2192.168.2.23
Jan 5, 2025 17:42:52.045690060 CET231035954.60.167.108192.168.2.23
Jan 5, 2025 17:42:52.045692921 CET2310359179.90.118.205192.168.2.23
Jan 5, 2025 17:42:52.045696974 CET231035938.149.112.246192.168.2.23
Jan 5, 2025 17:42:52.045701027 CET231035980.219.52.22192.168.2.23
Jan 5, 2025 17:42:52.045705080 CET23231035997.189.135.25192.168.2.23
Jan 5, 2025 17:42:52.045711994 CET2310359160.213.9.21192.168.2.23
Jan 5, 2025 17:42:52.045715094 CET2310359178.106.8.232192.168.2.23
Jan 5, 2025 17:42:52.045720100 CET231035981.239.206.232192.168.2.23
Jan 5, 2025 17:42:52.045723915 CET2310359182.217.214.220192.168.2.23
Jan 5, 2025 17:42:52.045753002 CET1035923192.168.2.2347.198.217.33
Jan 5, 2025 17:42:52.045764923 CET1035923192.168.2.23201.234.205.29
Jan 5, 2025 17:42:52.045784950 CET1035923192.168.2.2368.95.158.162
Jan 5, 2025 17:42:52.045787096 CET2310359109.97.74.9192.168.2.23
Jan 5, 2025 17:42:52.045789003 CET1035923192.168.2.23221.207.38.133
Jan 5, 2025 17:42:52.045789003 CET103592323192.168.2.23156.124.8.62
Jan 5, 2025 17:42:52.045790911 CET1035923192.168.2.23109.133.42.129
Jan 5, 2025 17:42:52.045790911 CET1035923192.168.2.23194.23.184.174
Jan 5, 2025 17:42:52.045794010 CET1035923192.168.2.23213.147.108.133
Jan 5, 2025 17:42:52.045794010 CET1035923192.168.2.2391.75.127.70
Jan 5, 2025 17:42:52.045797110 CET2310359125.17.212.245192.168.2.23
Jan 5, 2025 17:42:52.045805931 CET1035923192.168.2.23179.90.118.205
Jan 5, 2025 17:42:52.045805931 CET1035923192.168.2.23178.106.8.232
Jan 5, 2025 17:42:52.045808077 CET1035923192.168.2.2383.44.31.228
Jan 5, 2025 17:42:52.045808077 CET1035923192.168.2.23154.254.73.2
Jan 5, 2025 17:42:52.045809984 CET2310359217.241.218.182192.168.2.23
Jan 5, 2025 17:42:52.045815945 CET1035923192.168.2.2354.60.167.108
Jan 5, 2025 17:42:52.045816898 CET1035923192.168.2.2338.149.112.246
Jan 5, 2025 17:42:52.045816898 CET1035923192.168.2.23182.217.214.220
Jan 5, 2025 17:42:52.045818090 CET1035923192.168.2.2380.219.52.22
Jan 5, 2025 17:42:52.045818090 CET1035923192.168.2.2381.239.206.232
Jan 5, 2025 17:42:52.045820951 CET1035923192.168.2.23160.213.9.21
Jan 5, 2025 17:42:52.045821905 CET232310359221.64.198.4192.168.2.23
Jan 5, 2025 17:42:52.045833111 CET103592323192.168.2.2397.189.135.25
Jan 5, 2025 17:42:52.045834064 CET2310359181.157.215.173192.168.2.23
Jan 5, 2025 17:42:52.045838118 CET1035923192.168.2.23125.17.212.245
Jan 5, 2025 17:42:52.045842886 CET1035923192.168.2.23217.241.218.182
Jan 5, 2025 17:42:52.045849085 CET2310359128.28.152.126192.168.2.23
Jan 5, 2025 17:42:52.045850039 CET1035923192.168.2.23109.97.74.9
Jan 5, 2025 17:42:52.045856953 CET103592323192.168.2.23221.64.198.4
Jan 5, 2025 17:42:52.045861959 CET2310359212.151.55.251192.168.2.23
Jan 5, 2025 17:42:52.045874119 CET2310359132.251.135.169192.168.2.23
Jan 5, 2025 17:42:52.045892000 CET2310359142.26.184.49192.168.2.23
Jan 5, 2025 17:42:52.045897007 CET1035923192.168.2.23128.28.152.126
Jan 5, 2025 17:42:52.045905113 CET1035923192.168.2.23181.157.215.173
Jan 5, 2025 17:42:52.045907974 CET1035923192.168.2.23212.151.55.251
Jan 5, 2025 17:42:52.045909882 CET1035923192.168.2.23132.251.135.169
Jan 5, 2025 17:42:52.045936108 CET1035923192.168.2.23142.26.184.49
Jan 5, 2025 17:42:52.045938969 CET231035981.34.224.203192.168.2.23
Jan 5, 2025 17:42:52.045948029 CET231035968.137.4.102192.168.2.23
Jan 5, 2025 17:42:52.045959949 CET2310359116.38.167.77192.168.2.23
Jan 5, 2025 17:42:52.045969963 CET2310359170.188.131.84192.168.2.23
Jan 5, 2025 17:42:52.045973063 CET1035923192.168.2.2381.34.224.203
Jan 5, 2025 17:42:52.045981884 CET231035990.116.215.96192.168.2.23
Jan 5, 2025 17:42:52.045994043 CET23231035991.100.206.69192.168.2.23
Jan 5, 2025 17:42:52.045996904 CET1035923192.168.2.2368.137.4.102
Jan 5, 2025 17:42:52.046004057 CET1035923192.168.2.23116.38.167.77
Jan 5, 2025 17:42:52.046005964 CET2310359168.94.147.85192.168.2.23
Jan 5, 2025 17:42:52.046015978 CET1035923192.168.2.23170.188.131.84
Jan 5, 2025 17:42:52.046017885 CET2310359155.152.132.33192.168.2.23
Jan 5, 2025 17:42:52.046032906 CET1035923192.168.2.2390.116.215.96
Jan 5, 2025 17:42:52.046039104 CET1035923192.168.2.23168.94.147.85
Jan 5, 2025 17:42:52.046046972 CET103592323192.168.2.2391.100.206.69
Jan 5, 2025 17:42:52.046051025 CET1035923192.168.2.23155.152.132.33
Jan 5, 2025 17:42:52.049401045 CET2310359175.141.201.193192.168.2.23
Jan 5, 2025 17:42:52.049411058 CET231035987.143.94.197192.168.2.23
Jan 5, 2025 17:42:52.049422026 CET2310359192.117.155.50192.168.2.23
Jan 5, 2025 17:42:52.049432993 CET231035972.22.223.221192.168.2.23
Jan 5, 2025 17:42:52.049441099 CET1035923192.168.2.23175.141.201.193
Jan 5, 2025 17:42:52.049443960 CET231035913.10.3.88192.168.2.23
Jan 5, 2025 17:42:52.049444914 CET1035923192.168.2.2387.143.94.197
Jan 5, 2025 17:42:52.049454927 CET23231035967.199.218.44192.168.2.23
Jan 5, 2025 17:42:52.049464941 CET1035923192.168.2.23192.117.155.50
Jan 5, 2025 17:42:52.049465895 CET2310359175.228.233.245192.168.2.23
Jan 5, 2025 17:42:52.049468994 CET1035923192.168.2.2372.22.223.221
Jan 5, 2025 17:42:52.049480915 CET1035923192.168.2.2313.10.3.88
Jan 5, 2025 17:42:52.049480915 CET23103591.222.217.202192.168.2.23
Jan 5, 2025 17:42:52.049491882 CET231035941.58.93.194192.168.2.23
Jan 5, 2025 17:42:52.049493074 CET103592323192.168.2.2367.199.218.44
Jan 5, 2025 17:42:52.049501896 CET2310359167.206.24.183192.168.2.23
Jan 5, 2025 17:42:52.049508095 CET1035923192.168.2.23175.228.233.245
Jan 5, 2025 17:42:52.049513102 CET1035923192.168.2.231.222.217.202
Jan 5, 2025 17:42:52.049518108 CET231035923.64.64.25192.168.2.23
Jan 5, 2025 17:42:52.049540043 CET2310359159.231.33.248192.168.2.23
Jan 5, 2025 17:42:52.049542904 CET1035923192.168.2.23167.206.24.183
Jan 5, 2025 17:42:52.049542904 CET1035923192.168.2.2323.64.64.25
Jan 5, 2025 17:42:52.049547911 CET1035923192.168.2.2341.58.93.194
Jan 5, 2025 17:42:52.049550056 CET2310359197.44.206.193192.168.2.23
Jan 5, 2025 17:42:52.049559116 CET231035978.240.160.233192.168.2.23
Jan 5, 2025 17:42:52.049575090 CET1035923192.168.2.23159.231.33.248
Jan 5, 2025 17:42:52.049614906 CET1035923192.168.2.2378.240.160.233
Jan 5, 2025 17:42:52.049614906 CET1035923192.168.2.23197.44.206.193
Jan 5, 2025 17:42:52.049710989 CET231035990.89.151.223192.168.2.23
Jan 5, 2025 17:42:52.049719095 CET231035984.132.46.25192.168.2.23
Jan 5, 2025 17:42:52.049724102 CET23231035940.198.172.74192.168.2.23
Jan 5, 2025 17:42:52.049726963 CET2310359145.119.221.237192.168.2.23
Jan 5, 2025 17:42:52.049736023 CET2310359174.160.9.42192.168.2.23
Jan 5, 2025 17:42:52.049746037 CET231035959.109.19.164192.168.2.23
Jan 5, 2025 17:42:52.049757004 CET2310359163.55.230.180192.168.2.23
Jan 5, 2025 17:42:52.049758911 CET1035923192.168.2.23174.160.9.42
Jan 5, 2025 17:42:52.049761057 CET1035923192.168.2.2390.89.151.223
Jan 5, 2025 17:42:52.049767971 CET2310359102.31.188.137192.168.2.23
Jan 5, 2025 17:42:52.049768925 CET1035923192.168.2.23145.119.221.237
Jan 5, 2025 17:42:52.049770117 CET1035923192.168.2.2384.132.46.25
Jan 5, 2025 17:42:52.049770117 CET103592323192.168.2.2340.198.172.74
Jan 5, 2025 17:42:52.049779892 CET2310359198.232.208.252192.168.2.23
Jan 5, 2025 17:42:52.049783945 CET1035923192.168.2.23163.55.230.180
Jan 5, 2025 17:42:52.049796104 CET1035923192.168.2.2359.109.19.164
Jan 5, 2025 17:42:52.049817085 CET1035923192.168.2.23198.232.208.252
Jan 5, 2025 17:42:52.049827099 CET1035923192.168.2.23102.31.188.137
Jan 5, 2025 17:42:52.049875021 CET2310359126.7.100.142192.168.2.23
Jan 5, 2025 17:42:52.049885035 CET23103598.90.203.18192.168.2.23
Jan 5, 2025 17:42:52.049922943 CET1035923192.168.2.238.90.203.18
Jan 5, 2025 17:42:52.049926043 CET1035923192.168.2.23126.7.100.142
Jan 5, 2025 17:42:52.050020933 CET2310359184.46.10.86192.168.2.23
Jan 5, 2025 17:42:52.050030947 CET232310359147.171.13.60192.168.2.23
Jan 5, 2025 17:42:52.050043106 CET231035931.220.215.45192.168.2.23
Jan 5, 2025 17:42:52.050054073 CET231035967.17.193.253192.168.2.23
Jan 5, 2025 17:42:52.050069094 CET103592323192.168.2.23147.171.13.60
Jan 5, 2025 17:42:52.050071955 CET1035923192.168.2.23184.46.10.86
Jan 5, 2025 17:42:52.050084114 CET1035923192.168.2.2331.220.215.45
Jan 5, 2025 17:42:52.050096989 CET1035923192.168.2.2367.17.193.253
Jan 5, 2025 17:42:52.050106049 CET23103595.136.131.174192.168.2.23
Jan 5, 2025 17:42:52.050116062 CET231035996.146.104.252192.168.2.23
Jan 5, 2025 17:42:52.050127029 CET2310359189.213.98.29192.168.2.23
Jan 5, 2025 17:42:52.050137043 CET2310359171.46.213.10192.168.2.23
Jan 5, 2025 17:42:52.050144911 CET1035923192.168.2.2396.146.104.252
Jan 5, 2025 17:42:52.050146103 CET1035923192.168.2.235.136.131.174
Jan 5, 2025 17:42:52.050148010 CET23103591.21.146.26192.168.2.23
Jan 5, 2025 17:42:52.050158024 CET23231035940.88.198.29192.168.2.23
Jan 5, 2025 17:42:52.050168991 CET2310359105.134.109.214192.168.2.23
Jan 5, 2025 17:42:52.050175905 CET1035923192.168.2.23189.213.98.29
Jan 5, 2025 17:42:52.050179958 CET2310359197.144.58.62192.168.2.23
Jan 5, 2025 17:42:52.050182104 CET1035923192.168.2.231.21.146.26
Jan 5, 2025 17:42:52.050184011 CET1035923192.168.2.23171.46.213.10
Jan 5, 2025 17:42:52.050190926 CET231035919.159.168.15192.168.2.23
Jan 5, 2025 17:42:52.050200939 CET103592323192.168.2.2340.88.198.29
Jan 5, 2025 17:42:52.050208092 CET1035923192.168.2.23105.134.109.214
Jan 5, 2025 17:42:52.050220013 CET2310359114.188.131.217192.168.2.23
Jan 5, 2025 17:42:52.050220013 CET1035923192.168.2.23197.144.58.62
Jan 5, 2025 17:42:52.050230980 CET2310359209.78.227.175192.168.2.23
Jan 5, 2025 17:42:52.050242901 CET231035924.195.65.240192.168.2.23
Jan 5, 2025 17:42:52.050254107 CET231035976.20.150.189192.168.2.23
Jan 5, 2025 17:42:52.050255060 CET1035923192.168.2.23114.188.131.217
Jan 5, 2025 17:42:52.050260067 CET1035923192.168.2.2319.159.168.15
Jan 5, 2025 17:42:52.050263882 CET1035923192.168.2.23209.78.227.175
Jan 5, 2025 17:42:52.050265074 CET231035994.29.46.44192.168.2.23
Jan 5, 2025 17:42:52.050276041 CET231035990.36.107.240192.168.2.23
Jan 5, 2025 17:42:52.050287008 CET2310359195.233.37.229192.168.2.23
Jan 5, 2025 17:42:52.050291061 CET1035923192.168.2.2376.20.150.189
Jan 5, 2025 17:42:52.050292969 CET1035923192.168.2.2324.195.65.240
Jan 5, 2025 17:42:52.050296068 CET1035923192.168.2.2394.29.46.44
Jan 5, 2025 17:42:52.050308943 CET231035972.139.253.83192.168.2.23
Jan 5, 2025 17:42:52.050311089 CET1035923192.168.2.2390.36.107.240
Jan 5, 2025 17:42:52.050323009 CET23103592.78.110.173192.168.2.23
Jan 5, 2025 17:42:52.050331116 CET1035923192.168.2.23195.233.37.229
Jan 5, 2025 17:42:52.050333977 CET232310359119.138.62.22192.168.2.23
Jan 5, 2025 17:42:52.050340891 CET1035923192.168.2.2372.139.253.83
Jan 5, 2025 17:42:52.050343990 CET231035970.3.255.206192.168.2.23
Jan 5, 2025 17:42:52.050353050 CET231035979.134.164.131192.168.2.23
Jan 5, 2025 17:42:52.050364017 CET231035968.200.101.27192.168.2.23
Jan 5, 2025 17:42:52.050370932 CET1035923192.168.2.232.78.110.173
Jan 5, 2025 17:42:52.050374985 CET1035923192.168.2.2370.3.255.206
Jan 5, 2025 17:42:52.050390005 CET231035971.131.125.87192.168.2.23
Jan 5, 2025 17:42:52.050393105 CET1035923192.168.2.2379.134.164.131
Jan 5, 2025 17:42:52.050400019 CET2310359109.79.0.255192.168.2.23
Jan 5, 2025 17:42:52.050405025 CET1035923192.168.2.2368.200.101.27
Jan 5, 2025 17:42:52.050410986 CET103592323192.168.2.23119.138.62.22
Jan 5, 2025 17:42:52.050411940 CET2310359223.139.123.244192.168.2.23
Jan 5, 2025 17:42:52.050419092 CET1035923192.168.2.2371.131.125.87
Jan 5, 2025 17:42:52.050447941 CET1035923192.168.2.23109.79.0.255
Jan 5, 2025 17:42:52.050468922 CET231035963.171.211.216192.168.2.23
Jan 5, 2025 17:42:52.050477982 CET232310359135.255.36.150192.168.2.23
Jan 5, 2025 17:42:52.050487041 CET231035974.47.113.23192.168.2.23
Jan 5, 2025 17:42:52.050498962 CET231035913.87.121.49192.168.2.23
Jan 5, 2025 17:42:52.050499916 CET1035923192.168.2.23223.139.123.244
Jan 5, 2025 17:42:52.050508022 CET1035923192.168.2.2363.171.211.216
Jan 5, 2025 17:42:52.050510883 CET2310359148.136.129.51192.168.2.23
Jan 5, 2025 17:42:52.050518036 CET103592323192.168.2.23135.255.36.150
Jan 5, 2025 17:42:52.050520897 CET1035923192.168.2.2374.47.113.23
Jan 5, 2025 17:42:52.050520897 CET2310359166.210.22.6192.168.2.23
Jan 5, 2025 17:42:52.050534010 CET23103591.237.152.175192.168.2.23
Jan 5, 2025 17:42:52.050540924 CET1035923192.168.2.2313.87.121.49
Jan 5, 2025 17:42:52.050543070 CET2310359136.250.233.71192.168.2.23
Jan 5, 2025 17:42:52.050553083 CET231035967.160.125.132192.168.2.23
Jan 5, 2025 17:42:52.050560951 CET1035923192.168.2.231.237.152.175
Jan 5, 2025 17:42:52.050560951 CET1035923192.168.2.23148.136.129.51
Jan 5, 2025 17:42:52.050564051 CET2310359164.243.206.168192.168.2.23
Jan 5, 2025 17:42:52.050575972 CET232310359196.2.209.201192.168.2.23
Jan 5, 2025 17:42:52.050575972 CET5009623192.168.2.23189.219.82.231
Jan 5, 2025 17:42:52.050575972 CET1035923192.168.2.23136.250.233.71
Jan 5, 2025 17:42:52.050585985 CET1035923192.168.2.2367.160.125.132
Jan 5, 2025 17:42:52.050587893 CET2310359142.47.57.123192.168.2.23
Jan 5, 2025 17:42:52.050599098 CET2310359211.96.93.84192.168.2.23
Jan 5, 2025 17:42:52.050600052 CET1035923192.168.2.23166.210.22.6
Jan 5, 2025 17:42:52.050611973 CET1035923192.168.2.23164.243.206.168
Jan 5, 2025 17:42:52.050621033 CET2310359204.66.182.38192.168.2.23
Jan 5, 2025 17:42:52.050631046 CET1035923192.168.2.23142.47.57.123
Jan 5, 2025 17:42:52.050631046 CET103592323192.168.2.23196.2.209.201
Jan 5, 2025 17:42:52.050632954 CET2310359161.142.13.94192.168.2.23
Jan 5, 2025 17:42:52.050637960 CET1035923192.168.2.23211.96.93.84
Jan 5, 2025 17:42:52.050642967 CET231035938.254.222.110192.168.2.23
Jan 5, 2025 17:42:52.050654888 CET2310359192.9.30.27192.168.2.23
Jan 5, 2025 17:42:52.050658941 CET1035923192.168.2.23204.66.182.38
Jan 5, 2025 17:42:52.050666094 CET231035997.9.6.41192.168.2.23
Jan 5, 2025 17:42:52.050674915 CET231035963.237.252.183192.168.2.23
Jan 5, 2025 17:42:52.050684929 CET231035966.91.77.86192.168.2.23
Jan 5, 2025 17:42:52.050685883 CET1035923192.168.2.23161.142.13.94
Jan 5, 2025 17:42:52.050695896 CET1035923192.168.2.2397.9.6.41
Jan 5, 2025 17:42:52.050700903 CET231035994.177.5.92192.168.2.23
Jan 5, 2025 17:42:52.050709009 CET1035923192.168.2.23192.9.30.27
Jan 5, 2025 17:42:52.050709009 CET1035923192.168.2.2363.237.252.183
Jan 5, 2025 17:42:52.050712109 CET231035941.189.231.12192.168.2.23
Jan 5, 2025 17:42:52.050723076 CET232340380119.238.14.180192.168.2.23
Jan 5, 2025 17:42:52.050726891 CET1035923192.168.2.2366.91.77.86
Jan 5, 2025 17:42:52.050730944 CET1035923192.168.2.2338.254.222.110
Jan 5, 2025 17:42:52.050734997 CET1035923192.168.2.2394.177.5.92
Jan 5, 2025 17:42:52.050765991 CET1035923192.168.2.2341.189.231.12
Jan 5, 2025 17:42:52.051615953 CET403802323192.168.2.23119.238.14.180
Jan 5, 2025 17:42:52.055979967 CET2350096189.219.82.231192.168.2.23
Jan 5, 2025 17:42:52.056025028 CET5009623192.168.2.23189.219.82.231
Jan 5, 2025 17:42:52.057636976 CET4814423192.168.2.23173.68.136.134
Jan 5, 2025 17:42:52.062407017 CET2348144173.68.136.134192.168.2.23
Jan 5, 2025 17:42:52.062455893 CET4814423192.168.2.23173.68.136.134
Jan 5, 2025 17:42:52.064562082 CET5248423192.168.2.23175.210.143.16
Jan 5, 2025 17:42:52.069576979 CET2352484175.210.143.16192.168.2.23
Jan 5, 2025 17:42:52.069643974 CET5248423192.168.2.23175.210.143.16
Jan 5, 2025 17:42:52.071104050 CET4816223192.168.2.23174.70.103.211
Jan 5, 2025 17:42:52.075920105 CET2348162174.70.103.211192.168.2.23
Jan 5, 2025 17:42:52.075958967 CET4816223192.168.2.23174.70.103.211
Jan 5, 2025 17:42:52.077510118 CET5452423192.168.2.2347.183.98.253
Jan 5, 2025 17:42:52.082407951 CET235452447.183.98.253192.168.2.23
Jan 5, 2025 17:42:52.082452059 CET5452423192.168.2.2347.183.98.253
Jan 5, 2025 17:42:52.083574057 CET3346223192.168.2.2374.173.7.86
Jan 5, 2025 17:42:52.088572979 CET233346274.173.7.86192.168.2.23
Jan 5, 2025 17:42:52.088622093 CET3346223192.168.2.2374.173.7.86
Jan 5, 2025 17:42:52.088850021 CET4303423192.168.2.23169.149.125.59
Jan 5, 2025 17:42:52.093760014 CET2343034169.149.125.59192.168.2.23
Jan 5, 2025 17:42:52.094754934 CET4303423192.168.2.23169.149.125.59
Jan 5, 2025 17:42:52.104310989 CET4304423192.168.2.23189.57.170.142
Jan 5, 2025 17:42:52.109097004 CET2343044189.57.170.142192.168.2.23
Jan 5, 2025 17:42:52.109142065 CET4304423192.168.2.23189.57.170.142
Jan 5, 2025 17:42:52.112095118 CET3553423192.168.2.23133.9.36.55
Jan 5, 2025 17:42:52.116980076 CET2335534133.9.36.55192.168.2.23
Jan 5, 2025 17:42:52.117043018 CET3553423192.168.2.23133.9.36.55
Jan 5, 2025 17:42:52.120038033 CET3431423192.168.2.23121.226.120.33
Jan 5, 2025 17:42:52.124957085 CET2334314121.226.120.33192.168.2.23
Jan 5, 2025 17:42:52.124999046 CET3431423192.168.2.23121.226.120.33
Jan 5, 2025 17:42:52.127985001 CET415802323192.168.2.23222.233.39.68
Jan 5, 2025 17:42:52.132745981 CET232341580222.233.39.68192.168.2.23
Jan 5, 2025 17:42:52.132792950 CET415802323192.168.2.23222.233.39.68
Jan 5, 2025 17:42:52.135509014 CET5565223192.168.2.238.35.242.59
Jan 5, 2025 17:42:52.140219927 CET23556528.35.242.59192.168.2.23
Jan 5, 2025 17:42:52.140264034 CET5565223192.168.2.238.35.242.59
Jan 5, 2025 17:42:52.143017054 CET3573423192.168.2.23111.73.27.214
Jan 5, 2025 17:42:52.147763014 CET2335734111.73.27.214192.168.2.23
Jan 5, 2025 17:42:52.147808075 CET3573423192.168.2.23111.73.27.214
Jan 5, 2025 17:42:52.464240074 CET636454907441.216.189.127192.168.2.23
Jan 5, 2025 17:42:52.465127945 CET4907463645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:52.465127945 CET4907463645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:52.468348980 CET4910663645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:52.473198891 CET636454910641.216.189.127192.168.2.23
Jan 5, 2025 17:42:52.473268032 CET4910663645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:52.480082989 CET4910663645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:52.484935999 CET636454910641.216.189.127192.168.2.23
Jan 5, 2025 17:42:52.484978914 CET4910663645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:52.490083933 CET636454910641.216.189.127192.168.2.23
Jan 5, 2025 17:42:52.782346964 CET4910663645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:52.829516888 CET636454910641.216.189.127192.168.2.23
Jan 5, 2025 17:42:52.958369970 CET636454910641.216.189.127192.168.2.23
Jan 5, 2025 17:42:52.958422899 CET4910663645192.168.2.2341.216.189.127
Jan 5, 2025 17:42:53.074197054 CET3573423192.168.2.23111.73.27.214
Jan 5, 2025 17:42:53.074213982 CET5565223192.168.2.238.35.242.59
Jan 5, 2025 17:42:53.074213982 CET415802323192.168.2.23222.233.39.68
Jan 5, 2025 17:42:53.074238062 CET3431423192.168.2.23121.226.120.33
Jan 5, 2025 17:42:53.074239969 CET3553423192.168.2.23133.9.36.55
Jan 5, 2025 17:42:53.074239016 CET4304423192.168.2.23189.57.170.142
Jan 5, 2025 17:42:53.074255943 CET4816223192.168.2.23174.70.103.211
Jan 5, 2025 17:42:53.074258089 CET4303423192.168.2.23169.149.125.59
Jan 5, 2025 17:42:53.074258089 CET3346223192.168.2.2374.173.7.86
Jan 5, 2025 17:42:53.074265957 CET5452423192.168.2.2347.183.98.253
Jan 5, 2025 17:42:53.074265957 CET4814423192.168.2.23173.68.136.134
Jan 5, 2025 17:42:53.074279070 CET5248423192.168.2.23175.210.143.16
Jan 5, 2025 17:42:53.074294090 CET5009623192.168.2.23189.219.82.231
Jan 5, 2025 17:42:53.074440956 CET403802323192.168.2.23119.238.14.180
Jan 5, 2025 17:42:53.079152107 CET2335734111.73.27.214192.168.2.23
Jan 5, 2025 17:42:53.079193115 CET3573423192.168.2.23111.73.27.214
Jan 5, 2025 17:42:53.079258919 CET23556528.35.242.59192.168.2.23
Jan 5, 2025 17:42:53.079272985 CET232341580222.233.39.68192.168.2.23
Jan 5, 2025 17:42:53.079282999 CET2335534133.9.36.55192.168.2.23
Jan 5, 2025 17:42:53.079304934 CET2348162174.70.103.211192.168.2.23
Jan 5, 2025 17:42:53.079307079 CET5565223192.168.2.238.35.242.59
Jan 5, 2025 17:42:53.079307079 CET415802323192.168.2.23222.233.39.68
Jan 5, 2025 17:42:53.079324961 CET2334314121.226.120.33192.168.2.23
Jan 5, 2025 17:42:53.079329014 CET3553423192.168.2.23133.9.36.55
Jan 5, 2025 17:42:53.079333067 CET4816223192.168.2.23174.70.103.211
Jan 5, 2025 17:42:53.079344988 CET2343044189.57.170.142192.168.2.23
Jan 5, 2025 17:42:53.079354048 CET2343034169.149.125.59192.168.2.23
Jan 5, 2025 17:42:53.079368114 CET3431423192.168.2.23121.226.120.33
Jan 5, 2025 17:42:53.079379082 CET4304423192.168.2.23189.57.170.142
Jan 5, 2025 17:42:53.079391003 CET4303423192.168.2.23169.149.125.59
Jan 5, 2025 17:42:53.079391956 CET233346274.173.7.86192.168.2.23
Jan 5, 2025 17:42:53.079401016 CET2352484175.210.143.16192.168.2.23
Jan 5, 2025 17:42:53.079437017 CET5248423192.168.2.23175.210.143.16
Jan 5, 2025 17:42:53.079437971 CET3346223192.168.2.2374.173.7.86
Jan 5, 2025 17:42:53.079930067 CET235452447.183.98.253192.168.2.23
Jan 5, 2025 17:42:53.079940081 CET2348144173.68.136.134192.168.2.23
Jan 5, 2025 17:42:53.079957008 CET2350096189.219.82.231192.168.2.23
Jan 5, 2025 17:42:53.079957962 CET5452423192.168.2.2347.183.98.253
Jan 5, 2025 17:42:53.080001116 CET4814423192.168.2.23173.68.136.134
Jan 5, 2025 17:42:53.080008984 CET5009623192.168.2.23189.219.82.231
Jan 5, 2025 17:42:53.080024958 CET232340380119.238.14.180192.168.2.23
Jan 5, 2025 17:42:53.080070972 CET403802323192.168.2.23119.238.14.180
Jan 5, 2025 17:42:56.511955023 CET42836443192.168.2.2391.189.91.43
Jan 5, 2025 17:42:58.047741890 CET4251680192.168.2.23109.202.202.202
Jan 5, 2025 17:43:11.358150005 CET43928443192.168.2.2391.189.91.42
Jan 5, 2025 17:43:23.644453049 CET42836443192.168.2.2391.189.91.43
Jan 5, 2025 17:43:27.739764929 CET4251680192.168.2.23109.202.202.202
Jan 5, 2025 17:43:52.312536001 CET43928443192.168.2.2391.189.91.42
TimestampSource IPDest IPChecksumCodeType
Jan 5, 2025 17:42:58.950357914 CET192.168.2.23192.168.2.18283(Port unreachable)Destination Unreachable
Jan 5, 2025 17:44:18.960700035 CET192.168.2.23192.168.2.18283(Port unreachable)Destination Unreachable

System Behavior

Start time (UTC):16:42:48
Start date (UTC):05/01/2025
Path:/usr/bin/dash
Arguments:-
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:48
Start date (UTC):05/01/2025
Path:/usr/bin/rm
Arguments:rm -f /tmp/tmp.AWtkl2orJL /tmp/tmp.EwQ688Ot4L /tmp/tmp.N5aVoMdhdL
File size:72056 bytes
MD5 hash:aa2b5496fdbfd88e38791ab81f90b95b

Start time (UTC):16:42:48
Start date (UTC):05/01/2025
Path:/usr/bin/dash
Arguments:-
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:48
Start date (UTC):05/01/2025
Path:/usr/bin/rm
Arguments:rm -f /tmp/tmp.AWtkl2orJL /tmp/tmp.EwQ688Ot4L /tmp/tmp.N5aVoMdhdL
File size:72056 bytes
MD5 hash:aa2b5496fdbfd88e38791ab81f90b95b

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/tmp/Fantazy.spc.elf
Arguments:/tmp/Fantazy.spc.elf
File size:4379400 bytes
MD5 hash:7dc1c0e23cd5e102bb12e5c29403410e

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/tmp/Fantazy.spc.elf
Arguments:-
File size:4379400 bytes
MD5 hash:7dc1c0e23cd5e102bb12e5c29403410e

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/tmp/Fantazy.spc.elf
Arguments:-
File size:4379400 bytes
MD5 hash:7dc1c0e23cd5e102bb12e5c29403410e

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/tmp/Fantazy.spc.elf
Arguments:-
File size:4379400 bytes
MD5 hash:7dc1c0e23cd5e102bb12e5c29403410e

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/tmp/Fantazy.spc.elf
Arguments:-
File size:4379400 bytes
MD5 hash:7dc1c0e23cd5e102bb12e5c29403410e

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/tmp/Fantazy.spc.elf
Arguments:-
File size:4379400 bytes
MD5 hash:7dc1c0e23cd5e102bb12e5c29403410e

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/usr/bin/journalctl
Arguments:/usr/bin/journalctl --smart-relinquish-var
File size:80120 bytes
MD5 hash:bf3a987344f3bacafc44efd882abda8b

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/usr/bin/dbus-daemon
Arguments:/usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only
File size:249032 bytes
MD5 hash:3089d47e3f3ab84cd81c48fd406d7a8c

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/usr/bin/pulseaudio
Arguments:/usr/bin/pulseaudio --daemonize=no --log-target=journal
File size:100832 bytes
MD5 hash:0c3b4c789d8ffb12b25507f27e14c186

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:50
Start date (UTC):05/01/2025
Path:/usr/sbin/rsyslogd
Arguments:/usr/sbin/rsyslogd -n -iNONE
File size:727248 bytes
MD5 hash:0b8087fc907c42eb3c81a691db258e33

Start time (UTC):16:42:51
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:51
Start date (UTC):05/01/2025
Path:/lib/systemd/systemd-journald
Arguments:/lib/systemd/systemd-journald
File size:162032 bytes
MD5 hash:474667ece6cecb5e04c6eb897a1d0d9e

Start time (UTC):16:42:51
Start date (UTC):05/01/2025
Path:/usr/libexec/gvfsd-fuse
Arguments:-
File size:47632 bytes
MD5 hash:d18fbf1cbf8eb57b17fac48b7b4be933

Start time (UTC):16:42:51
Start date (UTC):05/01/2025
Path:/bin/fusermount
Arguments:fusermount -u -q -z -- /run/user/1000/gvfs
File size:39144 bytes
MD5 hash:576a1b135c82bdcbc97a91acea900566

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/bin/dbus-daemon
Arguments:/usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only
File size:249032 bytes
MD5 hash:3089d47e3f3ab84cd81c48fd406d7a8c

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/lib/systemd/systemd-journald
Arguments:/lib/systemd/systemd-journald
File size:162032 bytes
MD5 hash:474667ece6cecb5e04c6eb897a1d0d9e

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/bin/dbus-daemon
Arguments:/usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only
File size:249032 bytes
MD5 hash:3089d47e3f3ab84cd81c48fd406d7a8c

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/lib/systemd/systemd-journald
Arguments:/lib/systemd/systemd-journald
File size:162032 bytes
MD5 hash:474667ece6cecb5e04c6eb897a1d0d9e

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/sbin/rsyslogd
Arguments:/usr/sbin/rsyslogd -n -iNONE
File size:727248 bytes
MD5 hash:0b8087fc907c42eb3c81a691db258e33

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/bin/dbus-daemon
Arguments:/usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only
File size:249032 bytes
MD5 hash:3089d47e3f3ab84cd81c48fd406d7a8c

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/lib/systemd/systemd-journald
Arguments:/lib/systemd/systemd-journald
File size:162032 bytes
MD5 hash:474667ece6cecb5e04c6eb897a1d0d9e

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/bin/dbus-daemon
Arguments:/usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only
File size:249032 bytes
MD5 hash:3089d47e3f3ab84cd81c48fd406d7a8c

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/lib/systemd/systemd-journald
Arguments:/lib/systemd/systemd-journald
File size:162032 bytes
MD5 hash:474667ece6cecb5e04c6eb897a1d0d9e

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/sbin/rsyslogd
Arguments:/usr/sbin/rsyslogd -n -iNONE
File size:727248 bytes
MD5 hash:0b8087fc907c42eb3c81a691db258e33

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/sbin/gdm3
Arguments:-
File size:453296 bytes
MD5 hash:2492e2d8d34f9377e3e530a61a15674f

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/etc/gdm3/PrimeOff/Default
Arguments:/etc/gdm3/PrimeOff/Default
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/sbin/gdm3
Arguments:-
File size:453296 bytes
MD5 hash:2492e2d8d34f9377e3e530a61a15674f

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/etc/gdm3/PrimeOff/Default
Arguments:/etc/gdm3/PrimeOff/Default
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/sbin/gdm3
Arguments:-
File size:453296 bytes
MD5 hash:2492e2d8d34f9377e3e530a61a15674f

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/etc/gdm3/PrimeOff/Default
Arguments:/etc/gdm3/PrimeOff/Default
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:52
Start date (UTC):05/01/2025
Path:/usr/sbin/rsyslogd
Arguments:/usr/sbin/rsyslogd -n -iNONE
File size:727248 bytes
MD5 hash:0b8087fc907c42eb3c81a691db258e33

Start time (UTC):16:42:53
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:53
Start date (UTC):05/01/2025
Path:/usr/sbin/rsyslogd
Arguments:/usr/sbin/rsyslogd -n -iNONE
File size:727248 bytes
MD5 hash:0b8087fc907c42eb3c81a691db258e33

Start time (UTC):16:42:53
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:53
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:/usr/bin/gpu-manager --log /var/log/gpu-manager.log
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:53
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:53
Start date (UTC):05/01/2025
Path:/usr/share/gdm/generate-config
Arguments:/usr/share/gdm/generate-config
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:/usr/bin/gpu-manager --log /var/log/gpu-manager.log
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /etc/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /lib/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /etc/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /lib/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /etc/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c
Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /lib/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*nouveau[[:space:]]*$\" /etc/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:55
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*nouveau[[:space:]]*$\" /lib/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:56
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:56
Start date (UTC):05/01/2025
Path:/usr/share/gdm/generate-config
Arguments:/usr/share/gdm/generate-config
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:/usr/bin/gpu-manager --log /var/log/gpu-manager.log
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /etc/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /lib/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /lib/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /etc/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761

Start time (UTC):16:42:57
Start date (UTC):05/01/2025
Path:/bin/sh
Arguments:sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /lib/modprobe.d/*.conf"
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:42:58
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761
Start time (UTC):16:42:58
Start date (UTC):05/01/2025
Path:/usr/bin/gpu-manager
Arguments:-
File size:76616 bytes
MD5 hash:8fae9dd5dd67e1f33d873089c2fd8761
Start time (UTC):16:42:59
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:43:00
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:43:00
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:43:00
Start date (UTC):05/01/2025
Path:/usr/share/gdm/generate-config
Arguments:/usr/share/gdm/generate-config
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

Start time (UTC):16:43:00
Start date (UTC):05/01/2025
Path:/usr/share/gdm/generate-config
Arguments:-
File size:129816 bytes
MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c
Start time (UTC):16:43:02
Start date (UTC):05/01/2025
Path:/usr/lib/systemd/systemd
Arguments:-
File size:1620224 bytes
MD5 hash:9b2bec7092a40488108543f9334aab75

Start time (UTC):16:43:02
Start date (UTC):05/01/2025
Path:/bin/plymouth
Arguments:/bin/plymouth quit
File size:51352 bytes
MD5 hash:87003efd8dad470042f5e75360a8f49f