Source: unknown | TCP traffic detected without corresponding DNS query: 91.189.91.42 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 91.189.91.43 |
Source: unknown | TCP traffic detected without corresponding DNS query: 109.202.202.202 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 94.154.35.185 |
Source: unknown | TCP traffic detected without corresponding DNS query: 91.189.91.42 |
Source: unknown | TCP traffic detected without corresponding DNS query: 91.189.91.43 |
Source: unknown | TCP traffic detected without corresponding DNS query: 109.202.202.202 |
Source: unknown | TCP traffic detected without corresponding DNS query: 91.189.91.42 |
Source: 6219.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_3a56423b Author: unknown |
Source: 6219.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_dab39a25 Author: unknown |
Source: 6219.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown |
Source: 6215.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_3a56423b Author: unknown |
Source: 6215.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_dab39a25 Author: unknown |
Source: 6215.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown |
Source: 6218.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_3a56423b Author: unknown |
Source: 6218.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_dab39a25 Author: unknown |
Source: 6218.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown |
Source: 6217.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_3a56423b Author: unknown |
Source: 6217.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_dab39a25 Author: unknown |
Source: 6217.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2018, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2077, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2078, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2079, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2080, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2083, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2084, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2114, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2156, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6218, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6219, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6224, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6225, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6228, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6229, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6230, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6231, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6247, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6258, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2018, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2077, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2078, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2079, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2080, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2083, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2084, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2114, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 2156, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6218, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6219, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6224, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6225, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6228, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6229, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6230, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6231, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6247, result: successful | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | SIGKILL sent: pid: 6258, result: successful | Jump to behavior |
Source: 6219.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_3a56423b os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 117d6eb47f000c9d475119ca0e6a1b49a91bbbece858758aaa3d7f30d0777d75, id = 3a56423b-c0cf-4483-87e3-552beb40563a, last_modified = 2021-09-16 |
Source: 6219.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_dab39a25 reference_sample = 3e02fb63803110cabde08e809cf4acc1b8fb474ace531959a311858fdd578bab, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 5a628d9af9d6dccf29e78f780bb74a2fa25167954c34d4a1529bdea5ea891ac0, id = dab39a25-852b-441f-86ab-23d945daa62c, last_modified = 2022-01-26 |
Source: 6219.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26 |
Source: 6215.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_3a56423b os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 117d6eb47f000c9d475119ca0e6a1b49a91bbbece858758aaa3d7f30d0777d75, id = 3a56423b-c0cf-4483-87e3-552beb40563a, last_modified = 2021-09-16 |
Source: 6215.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_dab39a25 reference_sample = 3e02fb63803110cabde08e809cf4acc1b8fb474ace531959a311858fdd578bab, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 5a628d9af9d6dccf29e78f780bb74a2fa25167954c34d4a1529bdea5ea891ac0, id = dab39a25-852b-441f-86ab-23d945daa62c, last_modified = 2022-01-26 |
Source: 6215.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26 |
Source: 6218.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_3a56423b os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 117d6eb47f000c9d475119ca0e6a1b49a91bbbece858758aaa3d7f30d0777d75, id = 3a56423b-c0cf-4483-87e3-552beb40563a, last_modified = 2021-09-16 |
Source: 6218.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_dab39a25 reference_sample = 3e02fb63803110cabde08e809cf4acc1b8fb474ace531959a311858fdd578bab, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 5a628d9af9d6dccf29e78f780bb74a2fa25167954c34d4a1529bdea5ea891ac0, id = dab39a25-852b-441f-86ab-23d945daa62c, last_modified = 2022-01-26 |
Source: 6218.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26 |
Source: 6217.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_3a56423b os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 117d6eb47f000c9d475119ca0e6a1b49a91bbbece858758aaa3d7f30d0777d75, id = 3a56423b-c0cf-4483-87e3-552beb40563a, last_modified = 2021-09-16 |
Source: 6217.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_dab39a25 reference_sample = 3e02fb63803110cabde08e809cf4acc1b8fb474ace531959a311858fdd578bab, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 5a628d9af9d6dccf29e78f780bb74a2fa25167954c34d4a1529bdea5ea891ac0, id = dab39a25-852b-441f-86ab-23d945daa62c, last_modified = 2022-01-26 |
Source: 6217.1.0000000008048000.0000000008050000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26 |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6224) | Directory: /home/saturnino/.Xdefaults-galassia | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) | Directory: /home/saturnino/.Xdefaults-galassia | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6228) | Directory: /home/saturnino/.Xdefaults-galassia | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6229) | Directory: /home/saturnino/.Xdefaults-galassia | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /home/saturnino/.Xdefaults-galassia | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/local/share/fonts/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /home/saturnino/.local/share/fonts/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /home/saturnino/.fonts/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/X11/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/cMap/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/cmap/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/opentype/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/truetype/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/type1/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/X11/Type1/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/X11/encodings/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/X11/misc/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/X11/util/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/cmap/adobe-cns1/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/cmap/adobe-gb1/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/cmap/adobe-japan1/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/cmap/adobe-japan2/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/cmap/adobe-korea1/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/opentype/malayalam/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/opentype/mathjax/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/opentype/noto/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/opentype/urw-base35/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/truetype/Gargi/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/truetype/Gubbi/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/truetype/Nakula/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/truetype/Navilu/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/truetype/Sahadeva/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /usr/share/fonts/truetype/Sarai/.uuid | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /home/saturnino/.cache | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /home/saturnino/.local | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6230) | Directory: /home/saturnino/.config | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6231) | Directory: /home/saturnino/.Xdefaults-galassia | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/xfconf/xfconfd (PID: 6247) | Directory: /home/saturnino/.cache | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/xfconf/xfconfd (PID: 6247) | Directory: /home/saturnino/.local | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/xfconf/xfconfd (PID: 6247) | Directory: /home/saturnino/.config | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/xfconf/xfconfd (PID: 6247) | Directory: /home/saturnino/.config | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/notifyd/xfce4-notifyd (PID: 6258) | Directory: /home/saturnino/.Xdefaults-galassia | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/notifyd/xfce4-notifyd (PID: 6258) | Directory: /home/saturnino/.cache | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/notifyd/xfce4-notifyd (PID: 6258) | Directory: /home/saturnino/.local | Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/notifyd/xfce4-notifyd (PID: 6258) | Directory: /home/saturnino/.config | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/6230/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/6199/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/6231/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1582/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2033/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2275/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/3088/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/6190/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1612/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1579/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1699/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1335/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1698/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2028/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1334/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1576/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2302/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/3236/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2025/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2146/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/910/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/4444/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/4445/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/912/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/6229/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/517/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/759/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/6228/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2307/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/918/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/6247/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1594/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2285/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2281/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1349/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1623/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/761/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1622/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/884/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1983/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2038/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1344/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1465/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1586/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1463/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2156/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/800/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/801/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1629/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1627/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1900/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/4474/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/6258/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/3021/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/491/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2294/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2050/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1877/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/772/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1633/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1599/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1632/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/774/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1477/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/654/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/896/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1476/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1872/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2048/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/655/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1475/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2289/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/656/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/777/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/657/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/658/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/4501/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/4469/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/419/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/936/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1639/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1638/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2208/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2180/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1809/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1494/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1890/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2063/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2062/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1888/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1886/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/420/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1489/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/785/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1642/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/788/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/667/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/789/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/4477/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/1648/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2078/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2077/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2074/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/2195/cmdline | Jump to behavior |
Source: /tmp/ub8ehJSePAfc9FYqZIT6.x86.elf (PID: 6216) | File opened: /proc/670/cmdline | Jump to behavior |