Loading Joe Sandbox Report ...

Edit tour

Linux Analysis Report
sh4.elf

Overview

General Information

Sample name:sh4.elf
Analysis ID:1588738
MD5:1c58def720c57a0061a2b0135b64b47d
SHA1:b02ad906ede8ecbf6c73e7fb491dd78bcb1cfd3d
SHA256:b08f4de964d1964a50347333c41f9331eaee225e62ffe6fae101f92aa688fc84
Tags:elfuser-abuse_ch
Infos:

Detection

Score:56
Range:0 - 100
Whitelisted:false

Signatures

Malicious sample detected (through community Yara rule)
Multi AV Scanner detection for submitted file
Detected TCP or UDP traffic on non-standard ports
Sample has stripped symbol table
Sample listens on a socket
Uses the "uname" system call to query kernel version information (possible evasion)
Yara signature match

Classification

Joe Sandbox version:42.0.0 Malachite
Analysis ID:1588738
Start date and time:2025-01-11 04:51:41 +01:00
Joe Sandbox product:CloudBasic
Overall analysis duration:0h 4m 28s
Hypervisor based Inspection enabled:false
Report type:full
Cookbook file name:defaultlinuxfilecookbook.jbs
Analysis system description:Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11)
Analysis Mode:default
Sample name:sh4.elf
Detection:MAL
Classification:mal56.linELF@0/0@0/0
Command:/tmp/sh4.elf
PID:5496
Exit Code:0
Exit Code Info:
Killed:False
Standard Output:
wormbot
Standard Error:
  • system is lnxubuntu20
  • sh4.elf (PID: 5496, Parent: 5419, MD5: 8943e5f8f8c280467b4472c15ae93ba9) Arguments: /tmp/sh4.elf
    • sh4.elf New Fork (PID: 5498, Parent: 5496)
  • cleanup
SourceRuleDescriptionAuthorStrings
sh4.elfLinux_Trojan_Gafgyt_28a2fe0cunknownunknown
  • 0xb680:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb694:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb6a8:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb6bc:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb6d0:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb6e4:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb6f8:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb70c:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb720:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb734:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb748:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb75c:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb770:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb784:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb798:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb7ac:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb7c0:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb7d4:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb7e8:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb7fc:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb810:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
SourceRuleDescriptionAuthorStrings
5496.1.00007f7558400000.00007f755840d000.r-x.sdmpLinux_Trojan_Gafgyt_28a2fe0cunknownunknown
  • 0xb680:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb694:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb6a8:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb6bc:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb6d0:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb6e4:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb6f8:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb70c:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb720:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb734:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb748:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb75c:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb770:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb784:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb798:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb7ac:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb7c0:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb7d4:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb7e8:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb7fc:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0xb810:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
Process Memory Space: sh4.elf PID: 5496Linux_Trojan_Gafgyt_28a2fe0cunknownunknown
  • 0x64bd:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x64d1:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x64e5:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x64f9:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x650d:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x6521:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x6535:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x6549:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x655d:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x6571:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x6585:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x6599:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x65ad:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x65c1:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x65d5:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x65e9:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x65fd:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x6611:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x6625:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x6639:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
  • 0x664d:$a: 2F 78 33 38 2F 78 46 4A 2F 78 39 33 2F 78 49 44 2F 78 39 41 2F 78 33 38 2F 78 46 4A 2F
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: sh4.elfVirustotal: Detection: 30%Perma Link
Source: sh4.elfReversingLabs: Detection: 23%
Source: global trafficTCP traffic: 192.168.2.14:49800 -> 85.239.34.134:999
Source: /tmp/sh4.elf (PID: 5496)Socket: 127.0.0.1:7567Jump to behavior
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134
Source: unknownTCP traffic detected without corresponding DNS query: 85.239.34.134

System Summary

barindex
Source: sh4.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_28a2fe0c Author: unknown
Source: 5496.1.00007f7558400000.00007f755840d000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_28a2fe0c Author: unknown
Source: Process Memory Space: sh4.elf PID: 5496, type: MEMORYSTRMatched rule: Linux_Trojan_Gafgyt_28a2fe0c Author: unknown
Source: ELF static info symbol of initial sample.symtab present: no
Source: sh4.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_28a2fe0c os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = a2c6beaec18ca876e8487c11bcc7a29279669588aacb7d3027d8d8df8f5bcead, id = 28a2fe0c-eed5-4c79-81e6-3b11b73a4ebd, last_modified = 2021-09-16
Source: 5496.1.00007f7558400000.00007f755840d000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_28a2fe0c os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = a2c6beaec18ca876e8487c11bcc7a29279669588aacb7d3027d8d8df8f5bcead, id = 28a2fe0c-eed5-4c79-81e6-3b11b73a4ebd, last_modified = 2021-09-16
Source: Process Memory Space: sh4.elf PID: 5496, type: MEMORYSTRMatched rule: Linux_Trojan_Gafgyt_28a2fe0c os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = a2c6beaec18ca876e8487c11bcc7a29279669588aacb7d3027d8d8df8f5bcead, id = 28a2fe0c-eed5-4c79-81e6-3b11b73a4ebd, last_modified = 2021-09-16
Source: classification engineClassification label: mal56.linELF@0/0@0/0
Source: /tmp/sh4.elf (PID: 5496)Queries kernel information via 'uname': Jump to behavior
Source: sh4.elf, 5496.1.00007ffd39b8f000.00007ffd39bb0000.rw-.sdmpBinary or memory string: /usr/bin/qemu-sh4
Source: sh4.elf, 5496.1.0000557262df4000.0000557262e57000.rw-.sdmpBinary or memory string: brU5!/etc/qemu-binfmt/sh4
Source: sh4.elf, 5496.1.0000557262df4000.0000557262e57000.rw-.sdmpBinary or memory string: /etc/qemu-binfmt/sh4
Source: sh4.elf, 5496.1.00007ffd39b8f000.00007ffd39bb0000.rw-.sdmpBinary or memory string: x86_64/usr/bin/qemu-sh4/tmp/sh4.elfSUDO_USER=saturninoPATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:/snap/binDISPLAY=:1.0XAUTHORITY=/run/user/1000/gdm/XauthoritySUDO_UID=1000TERM=xterm-256colorCOLORTERM=truecolorLOGNAME=rootUSER=rootLANG=en_US.UTF-8SUDO_COMMAND=/bin/bashHOME=/rootMAIL=/var/mail/rootSUDO_GID=1000SHELL=/bin/bash/tmp/sh4.elf
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath InterceptionPath InterceptionDirect Volume AccessOS Credential Dumping11
Security Software Discovery
Remote ServicesData from Local System1
Non-Standard Port
Exfiltration Over Other Network MediumAbuse Accessibility Features
No configs have been found
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Number of created Files
  • Is malicious
  • Internet

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
sh4.elf30%VirustotalBrowse
sh4.elf24%ReversingLabsLinux.Trojan.Mirai
No Antivirus matches
No Antivirus matches
No Antivirus matches
No contacted domains info
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs
IPDomainCountryFlagASNASN NameMalicious
85.239.34.134
unknownRussian Federation
134121RAINBOW-HKRainbownetworklimitedHKfalse
MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
85.239.34.134ppc.elfGet hashmaliciousUnknownBrowse
    arm6.elfGet hashmaliciousUnknownBrowse
      arm5.elfGet hashmaliciousUnknownBrowse
        m68k.elfGet hashmaliciousUnknownBrowse
          mpsl.elfGet hashmaliciousUnknownBrowse
            harm.elfGet hashmaliciousUnknownBrowse
              mips.elfGet hashmaliciousUnknownBrowse
                spc.elfGet hashmaliciousUnknownBrowse
                  x86.elfGet hashmaliciousUnknownBrowse
                    arm.elfGet hashmaliciousUnknownBrowse
                      No context
                      MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                      RAINBOW-HKRainbownetworklimitedHKppc.elfGet hashmaliciousUnknownBrowse
                      • 85.239.34.134
                      arm6.elfGet hashmaliciousUnknownBrowse
                      • 85.239.34.134
                      arm5.elfGet hashmaliciousUnknownBrowse
                      • 85.239.34.134
                      m68k.elfGet hashmaliciousUnknownBrowse
                      • 85.239.34.134
                      mpsl.elfGet hashmaliciousUnknownBrowse
                      • 85.239.34.134
                      harm.elfGet hashmaliciousUnknownBrowse
                      • 85.239.34.134
                      mips.elfGet hashmaliciousUnknownBrowse
                      • 85.239.34.134
                      spc.elfGet hashmaliciousUnknownBrowse
                      • 85.239.34.134
                      x86.elfGet hashmaliciousUnknownBrowse
                      • 85.239.34.134
                      arm.elfGet hashmaliciousUnknownBrowse
                      • 85.239.34.134
                      No context
                      No context
                      No created / dropped files found
                      File type:ELF 32-bit LSB executable, Renesas SH, version 1 (SYSV), statically linked, stripped
                      Entropy (8bit):6.813147372098858
                      TrID:
                      • ELF Executable and Linkable format (generic) (4004/1) 100.00%
                      File name:sh4.elf
                      File size:51'464 bytes
                      MD5:1c58def720c57a0061a2b0135b64b47d
                      SHA1:b02ad906ede8ecbf6c73e7fb491dd78bcb1cfd3d
                      SHA256:b08f4de964d1964a50347333c41f9331eaee225e62ffe6fae101f92aa688fc84
                      SHA512:af8aa4d9eab852af4ff5fe4ecb31845b62f9e4d0eb0293fe9edd26e52540218761c9fcf8654f7418f1b51daa972c0a0e51aa7f20d424eb4bb8c532499ba34f2c
                      SSDEEP:768:Xr+FeRb4+SsopI3eFRR0ZdZ+V1ox0KNCJ0DjwsUKyw:7+Uzop70Zg1oxfCJ0DsKL
                      TLSH:6D336C67E4252F63C0065A796434DF3C0F2321E192567DB26E268AF81C87D5EF848FE9
                      File Content Preview:.ELF..............*.......@.4...........4. ...(...............@...@.X...X...............X...X.@.X.@.(...43....................@...@.................Q.td............................././"O.n........#.*@........#.*@l....o&O.n...l.............................

                      ELF header

                      Class:ELF32
                      Data:2's complement, little endian
                      Version:1 (current)
                      Machine:<unknown>
                      Version Number:0x1
                      Type:EXEC (Executable file)
                      OS/ABI:UNIX - System V
                      ABI Version:0
                      Entry Point Address:0x4001c0
                      Flags:0x9
                      ELF Header Size:52
                      Program Header Offset:52
                      Program Header Size:32
                      Number of Program Headers:4
                      Section Header Offset:50904
                      Section Header Size:40
                      Number of Section Headers:14
                      Header String Table Index:13
                      NameTypeAddressOffsetSizeEntSizeFlagsFlags DescriptionLinkInfoAlign
                      NULL0x00x00x00x00x0000
                      .initPROGBITS0x4000b40xb40x300x00x6AX004
                      .textPROGBITS0x4001000x1000xb4800x00x6AX0032
                      .finiPROGBITS0x40b5800xb5800x240x00x6AX004
                      .rodataPROGBITS0x40b5a40xb5a40xcb40x00x2A004
                      .eh_framePROGBITS0x40d2580xc2580x7c0x00x3WA004
                      .tbssNOBITS0x40d2d40xc2d40x80x00x403WAT004
                      .ctorsPROGBITS0x40d2d40xc2d40x80x00x3WA004
                      .dtorsPROGBITS0x40d2dc0xc2dc0x80x00x3WA004
                      .jcrPROGBITS0x40d2e40xc2e40x40x00x3WA004
                      .dataPROGBITS0x40d2e80xc2e80x3840x00x3WA004
                      .gotPROGBITS0x40d66c0xc66c0x140x40x3WA004
                      .bssNOBITS0x40d6800xc6800x2f0c0x00x3WA004
                      .shstrtabSTRTAB0x00xc6800x580x00x0001
                      TypeOffsetVirtual AddressPhysical AddressFile SizeMemory SizeEntropyFlagsFlags DescriptionAlignProg InterpreterSection Mappings
                      LOAD0x00x4000000x4000000xc2580xc2586.85570x5R E0x1000.init .text .fini .rodata
                      LOAD0xc2580x40d2580x40d2580x4280x33344.93950x6RW 0x1000.eh_frame .tbss .ctors .dtors .jcr .data .got .bss
                      TLS0xc2d40x40d2d40x40d2d40x00x80.00000x4R 0x4.tbss
                      GNU_STACK0x00x00x00x00x00.00000x7RWE0x4
                      TimestampSource PortDest PortSource IPDest IP
                      Jan 11, 2025 04:52:29.978451014 CET49800999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:29.983470917 CET9994980085.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:29.983531952 CET49800999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:30.004822016 CET49800999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:30.009689093 CET9994980085.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:30.009743929 CET49800999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:30.014596939 CET9994980085.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:31.737190962 CET9994980085.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:31.737684965 CET49800999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:31.742639065 CET9994980085.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:32.740674973 CET49802999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:32.745708942 CET9994980285.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:32.745918036 CET49802999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:32.746133089 CET49802999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:32.750915051 CET9994980285.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:32.751087904 CET49802999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:32.757065058 CET9994980285.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:34.487221003 CET9994980285.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:34.487732887 CET49802999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:34.492716074 CET9994980285.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:35.489556074 CET49804999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:35.494553089 CET9994980485.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:35.494653940 CET49804999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:35.494684935 CET49804999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:35.499515057 CET9994980485.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:35.499566078 CET49804999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:35.504417896 CET9994980485.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:37.252521992 CET9994980485.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:37.252935886 CET49804999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:37.257776022 CET9994980485.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:38.255049944 CET49806999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:38.260334015 CET9994980685.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:38.260525942 CET49806999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:38.262871027 CET49806999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:38.267745972 CET9994980685.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:38.267801046 CET49806999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:38.272659063 CET9994980685.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:40.021965027 CET9994980685.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:40.022203922 CET49806999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:40.027127981 CET9994980685.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:41.024317026 CET49808999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:41.029241085 CET9994980885.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:41.029301882 CET49808999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:41.029324055 CET49808999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:41.034132004 CET9994980885.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:41.034276962 CET49808999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:41.039077044 CET9994980885.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:42.768748045 CET9994980885.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:42.769376993 CET49808999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:42.775152922 CET9994980885.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:43.772110939 CET49810999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:43.777235985 CET9994981085.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:43.777379036 CET49810999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:43.777415991 CET49810999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:43.782293081 CET9994981085.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:43.782424927 CET49810999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:43.787348032 CET9994981085.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:45.535815001 CET9994981085.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:45.536228895 CET49810999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:45.541063070 CET9994981085.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:46.539242029 CET49812999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:46.545444965 CET9994981285.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:46.545526981 CET49812999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:46.545574903 CET49812999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:46.550390005 CET9994981285.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:46.550467014 CET49812999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:46.555278063 CET9994981285.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:48.321966887 CET9994981285.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:48.322391033 CET49812999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:48.328705072 CET9994981285.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:49.324183941 CET49814999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:49.329936981 CET9994981485.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:49.330029964 CET49814999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:49.330046892 CET49814999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:49.335565090 CET9994981485.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:49.335614920 CET49814999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:49.341176033 CET9994981485.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:51.910877943 CET9994981485.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:51.910948992 CET9994981485.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:51.911057949 CET49814999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:51.911087036 CET9994981485.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:51.911144018 CET49814999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:51.911144018 CET49814999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:51.916003942 CET9994981485.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:52.913111925 CET49816999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:52.918178082 CET9994981685.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:52.918320894 CET49816999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:52.918387890 CET49816999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:52.923249006 CET9994981685.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:52.923345089 CET49816999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:52.928241968 CET9994981685.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:54.673693895 CET9994981685.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:54.673957109 CET49816999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:54.678848028 CET9994981685.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:55.675822973 CET49818999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:55.680838108 CET9994981885.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:55.680986881 CET49818999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:55.681008101 CET49818999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:55.685882092 CET9994981885.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:55.685986996 CET49818999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:55.690912962 CET9994981885.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:57.485450983 CET9994981885.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:57.485788107 CET49818999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:57.490741014 CET9994981885.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:58.488358974 CET49820999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:58.494184971 CET9994982085.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:58.494364977 CET49820999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:58.494411945 CET49820999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:58.500592947 CET9994982085.239.34.134192.168.2.14
                      Jan 11, 2025 04:52:58.500782013 CET49820999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:52:58.506019115 CET9994982085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:00.278696060 CET9994982085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:00.278866053 CET49820999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:00.283684015 CET9994982085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:01.281052113 CET49822999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:01.286005020 CET9994982285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:01.286183119 CET49822999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:01.286228895 CET49822999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:01.290947914 CET9994982285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:01.291035891 CET49822999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:01.295794964 CET9994982285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:03.180382013 CET9994982285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:03.180700064 CET49822999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:03.185651064 CET9994982285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:04.182806969 CET49824999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:04.187726974 CET9994982485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:04.187912941 CET49824999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:04.187949896 CET49824999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:04.192797899 CET9994982485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:04.192898989 CET49824999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:04.197633982 CET9994982485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:05.942095041 CET9994982485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:05.942552090 CET49824999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:05.948573112 CET9994982485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:06.945415974 CET49826999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:06.950649023 CET9994982685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:06.950752974 CET49826999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:06.950794935 CET49826999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:06.955732107 CET9994982685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:06.955804110 CET49826999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:06.960650921 CET9994982685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:08.707789898 CET9994982685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:08.708034039 CET49826999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:08.713018894 CET9994982685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:09.709672928 CET49828999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:09.714682102 CET9994982885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:09.714802027 CET49828999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:09.714829922 CET49828999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:09.719599009 CET9994982885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:09.719669104 CET49828999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:09.724488020 CET9994982885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:11.473589897 CET9994982885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:11.473782063 CET49828999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:11.478771925 CET9994982885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:12.476105928 CET49830999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:12.481183052 CET9994983085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:12.481272936 CET49830999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:12.481319904 CET49830999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:12.486148119 CET9994983085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:12.486217976 CET49830999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:12.491000891 CET9994983085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:14.256980896 CET9994983085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:14.257296085 CET49830999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:14.262330055 CET9994983085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:15.260313034 CET49832999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:15.265458107 CET9994983285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:15.265607119 CET49832999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:15.265727043 CET49832999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:15.270540953 CET9994983285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:15.270642042 CET49832999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:15.275559902 CET9994983285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:17.018457890 CET9994983285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:17.018950939 CET49832999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:17.023966074 CET9994983285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:18.021457911 CET49834999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:18.027458906 CET9994983485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:18.027586937 CET49834999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:18.027628899 CET49834999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:18.033278942 CET9994983485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:18.033375025 CET49834999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:18.038980007 CET9994983485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:19.822293997 CET9994983485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:19.822666883 CET49834999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:19.828200102 CET9994983485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:20.825221062 CET49836999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:20.831068993 CET9994983685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:20.831228018 CET49836999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:20.831264973 CET49836999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:20.836040974 CET9994983685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:20.836133957 CET49836999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:20.841523886 CET9994983685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:22.580971003 CET9994983685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:22.581538916 CET49836999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:22.586432934 CET9994983685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:23.584525108 CET49838999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:23.589561939 CET9994983885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:23.589652061 CET49838999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:23.589668036 CET49838999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:23.594525099 CET9994983885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:23.594629049 CET49838999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:23.599450111 CET9994983885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:25.331937075 CET9994983885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:25.332134008 CET49838999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:25.337029934 CET9994983885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:26.333914042 CET49840999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:26.338881016 CET9994984085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:26.338987112 CET49840999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:26.339039087 CET49840999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:26.343780041 CET9994984085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:26.343837976 CET49840999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:26.348608971 CET9994984085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:28.096731901 CET9994984085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:28.097018003 CET49840999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:28.101886034 CET9994984085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:29.099222898 CET49842999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:29.104289055 CET9994984285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:29.104435921 CET49842999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:29.104496956 CET49842999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:29.109340906 CET9994984285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:29.109419107 CET49842999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:29.114195108 CET9994984285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:30.867878914 CET9994984285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:30.868258953 CET49842999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:30.873004913 CET9994984285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:31.870095015 CET49844999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:31.875456095 CET9994984485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:31.875559092 CET49844999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:31.875622988 CET49844999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:31.880548000 CET9994984485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:31.880635977 CET49844999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:31.885484934 CET9994984485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:33.611856937 CET9994984485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:33.612126112 CET49844999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:33.617069960 CET9994984485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:34.616221905 CET49846999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:34.621331930 CET9994984685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:34.621437073 CET49846999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:34.621478081 CET49846999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:34.626329899 CET9994984685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:34.626394033 CET49846999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:34.631407976 CET9994984685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:36.381876945 CET9994984685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:36.382289886 CET49846999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:36.387145996 CET9994984685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:37.384253025 CET49848999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:37.389061928 CET9994984885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:37.389148951 CET49848999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:37.389185905 CET49848999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:37.393991947 CET9994984885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:37.394145012 CET49848999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:37.398950100 CET9994984885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:39.145436049 CET9994984885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:39.145682096 CET49848999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:39.150439024 CET9994984885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:40.147186041 CET49850999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:40.152008057 CET9994985085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:40.152131081 CET49850999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:40.152153969 CET49850999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:40.156933069 CET9994985085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:40.156997919 CET49850999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:40.161811113 CET9994985085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:41.895731926 CET9994985085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:41.896126986 CET49850999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:41.900969982 CET9994985085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:42.897468090 CET49852999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:42.902378082 CET9994985285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:42.902456045 CET49852999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:42.902489901 CET49852999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:42.907290936 CET9994985285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:42.907345057 CET49852999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:42.912221909 CET9994985285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:44.663642883 CET9994985285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:44.663937092 CET49852999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:44.669162989 CET9994985285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:45.667220116 CET49854999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:45.677131891 CET9994985485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:45.677221060 CET49854999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:45.677284956 CET49854999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:45.682111979 CET9994985485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:45.682166100 CET49854999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:45.687041044 CET9994985485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:47.440984011 CET9994985485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:47.441395044 CET49854999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:47.446314096 CET9994985485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:48.444246054 CET49856999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:48.449418068 CET9994985685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:48.449546099 CET49856999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:48.449666977 CET49856999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:48.454569101 CET9994985685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:48.454632998 CET49856999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:48.459532976 CET9994985685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:50.192720890 CET9994985685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:50.192941904 CET49856999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:50.197814941 CET9994985685.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:51.195137978 CET49858999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:51.200237989 CET9994985885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:51.200315952 CET49858999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:51.200370073 CET49858999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:51.205216885 CET9994985885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:51.205260992 CET49858999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:51.210222960 CET9994985885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:52.955710888 CET9994985885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:52.956001997 CET49858999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:52.960890055 CET9994985885.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:53.958077908 CET49860999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:53.963030100 CET9994986085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:53.963157892 CET49860999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:53.963177919 CET49860999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:53.967946053 CET9994986085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:53.968018055 CET49860999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:53.972790956 CET9994986085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:55.743396997 CET9994986085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:55.743947983 CET49860999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:55.748886108 CET9994986085.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:56.746496916 CET49862999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:56.751514912 CET9994986285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:56.751578093 CET49862999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:56.751595020 CET49862999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:56.756372929 CET9994986285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:56.756427050 CET49862999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:56.761204004 CET9994986285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:58.489775896 CET9994986285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:58.489976883 CET49862999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:58.494947910 CET9994986285.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:59.492779970 CET49864999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:59.497857094 CET9994986485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:59.497952938 CET49864999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:59.497988939 CET49864999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:59.503458023 CET9994986485.239.34.134192.168.2.14
                      Jan 11, 2025 04:53:59.503510952 CET49864999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:53:59.508291960 CET9994986485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:01.275310040 CET9994986485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:01.275568008 CET49864999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:01.281044960 CET9994986485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:02.277503014 CET49866999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:02.282387018 CET9994986685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:02.282465935 CET49866999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:02.282466888 CET49866999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:02.287337065 CET9994986685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:02.287450075 CET49866999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:02.292294025 CET9994986685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:04.066035032 CET9994986685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:04.066209078 CET49866999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:04.071052074 CET9994986685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:05.067785978 CET49868999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:05.072844982 CET9994986885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:05.073055983 CET49868999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:05.073100090 CET49868999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:05.077955008 CET9994986885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:05.078038931 CET49868999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:05.082916975 CET9994986885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:06.816019058 CET9994986885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:06.816457033 CET49868999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:06.821418047 CET9994986885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:07.817882061 CET49870999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:07.822788000 CET9994987085.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:07.822849035 CET49870999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:07.822874069 CET49870999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:07.827630997 CET9994987085.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:07.827713966 CET49870999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:07.832585096 CET9994987085.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:09.585494041 CET9994987085.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:09.585746050 CET49870999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:09.590589046 CET9994987085.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:10.587258101 CET49872999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:10.592241049 CET9994987285.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:10.592310905 CET49872999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:10.592343092 CET49872999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:10.597120047 CET9994987285.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:10.597172022 CET49872999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:10.602008104 CET9994987285.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:12.347918987 CET9994987285.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:12.348285913 CET49872999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:12.353085041 CET9994987285.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:13.350409031 CET49874999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:13.355391979 CET9994987485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:13.355483055 CET49874999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:13.355509996 CET49874999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:13.360404968 CET9994987485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:13.360461950 CET49874999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:13.365578890 CET9994987485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:15.112776041 CET9994987485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:15.113017082 CET49874999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:15.117847919 CET9994987485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:16.114744902 CET49876999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:16.119637966 CET9994987685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:16.119690895 CET49876999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:16.119709015 CET49876999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:16.124511957 CET9994987685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:16.124563932 CET49876999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:16.129337072 CET9994987685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:17.882417917 CET9994987685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:17.882795095 CET49876999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:17.887664080 CET9994987685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:18.885329962 CET49878999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:18.896615028 CET9994987885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:18.896742105 CET49878999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:18.896775961 CET49878999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:18.901544094 CET9994987885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:18.901612997 CET49878999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:18.906408072 CET9994987885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:20.664191008 CET9994987885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:20.664448023 CET49878999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:20.669327974 CET9994987885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:21.666254044 CET49880999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:21.671132088 CET9994988085.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:21.671271086 CET49880999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:21.671271086 CET49880999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:21.676129103 CET9994988085.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:21.676359892 CET49880999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:21.681191921 CET9994988085.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:23.445147991 CET9994988085.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:23.445322990 CET49880999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:23.450242996 CET9994988085.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:24.447335005 CET49882999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:24.452225924 CET9994988285.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:24.452404022 CET49882999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:24.452694893 CET49882999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:24.457468987 CET9994988285.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:24.457570076 CET49882999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:24.462361097 CET9994988285.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:26.226746082 CET9994988285.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:26.227152109 CET49882999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:26.232161999 CET9994988285.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:27.229123116 CET49884999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:27.234091043 CET9994988485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:27.234185934 CET49884999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:27.234231949 CET49884999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:27.239005089 CET9994988485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:27.239068985 CET49884999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:27.243927002 CET9994988485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:28.992008924 CET9994988485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:28.992409945 CET49884999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:28.997925043 CET9994988485.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:29.993968964 CET49886999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:29.999275923 CET9994988685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:29.999406099 CET49886999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:29.999406099 CET49886999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:30.004278898 CET9994988685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:30.004357100 CET49886999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:30.009213924 CET9994988685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:31.757313967 CET9994988685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:31.757544041 CET49886999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:31.762407064 CET9994988685.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:32.759610891 CET49888999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:32.764484882 CET9994988885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:32.764612913 CET49888999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:32.764612913 CET49888999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:32.769450903 CET9994988885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:32.769557953 CET49888999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:32.774393082 CET9994988885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:34.538873911 CET9994988885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:34.539215088 CET49888999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:34.544044971 CET9994988885.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:35.541090965 CET49890999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:35.545994997 CET9994989085.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:35.546067953 CET49890999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:35.546103954 CET49890999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:35.550894022 CET9994989085.239.34.134192.168.2.14
                      Jan 11, 2025 04:54:35.550962925 CET49890999192.168.2.1485.239.34.134
                      Jan 11, 2025 04:54:35.555756092 CET9994989085.239.34.134192.168.2.14

                      System Behavior

                      Start time (UTC):03:52:29
                      Start date (UTC):11/01/2025
                      Path:/tmp/sh4.elf
                      Arguments:/tmp/sh4.elf
                      File size:4139976 bytes
                      MD5 hash:8943e5f8f8c280467b4472c15ae93ba9

                      Start time (UTC):03:52:29
                      Start date (UTC):11/01/2025
                      Path:/tmp/sh4.elf
                      Arguments:-
                      File size:4139976 bytes
                      MD5 hash:8943e5f8f8c280467b4472c15ae93ba9