Edit tour

Linux Analysis Report
loki.m68k.elf

Overview

General Information

Sample name:loki.m68k.elf
Analysis ID:1594480
MD5:dc673d6531337eeaf48bc2eaf766961e
SHA1:2b391e2effbaf528f1427689df98743754db8d18
SHA256:fc4ea830e3fc2afe5c6501c5549272fa3774e39bd56cce90058c85d8a01a1109
Tags:elfuser-abuse_ch
Infos:

Detection

Score:48
Range:0 - 100
Whitelisted:false

Signatures

Multi AV Scanner detection for submitted file
Detected TCP or UDP traffic on non-standard ports
Sample has stripped symbol table
Sample listens on a socket
Suricata IDS alerts with low severity for network traffic
Tries to connect to HTTP servers, but all servers are down (expired dropper behavior)
Uses the "uname" system call to query kernel version information (possible evasion)

Classification

RansomwareSpreadingPhishingBankerTrojan / BotAdwareSpywareExploiterEvaderMinercleansuspiciousmalicious
Joe Sandbox version:42.0.0 Malachite
Analysis ID:1594480
Start date and time:2025-01-19 02:57:10 +01:00
Joe Sandbox product:CloudBasic
Overall analysis duration:0h 4m 51s
Hypervisor based Inspection enabled:false
Report type:full
Cookbook file name:defaultlinuxfilecookbook.jbs
Analysis system description:Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11)
Analysis Mode:default
Sample name:loki.m68k.elf
Detection:MAL
Classification:mal48.linELF@0/0@1/0
Command:/tmp/loki.m68k.elf
PID:5481
Exit Code:0
Exit Code Info:
Killed:False
Standard Output:
suka
Standard Error:
  • system is lnxubuntu20
  • loki.m68k.elf (PID: 5481, Parent: 5407, MD5: cd177594338c77b895ae27c33f8f86cc) Arguments: /tmp/loki.m68k.elf
  • cleanup
No yara matches
TimestampSIDSeverityClasstypeSource IPSource PortDestination IPDestination PortProtocol
2025-01-19T02:57:54.350623+010025000342Misc Attack83.222.191.9013566192.168.2.1456536TCP

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: loki.m68k.elfVirustotal: Detection: 33%Perma Link
Source: loki.m68k.elfReversingLabs: Detection: 36%
Source: global trafficTCP traffic: 192.168.2.14:36694 -> 83.222.80.215:13566
Source: global trafficTCP traffic: 192.168.2.14:49666 -> 83.222.253.192:13566
Source: global trafficTCP traffic: 192.168.2.14:43002 -> 83.222.86.239:13566
Source: global trafficTCP traffic: 192.168.2.14:37270 -> 83.222.185.71:13566
Source: global trafficTCP traffic: 192.168.2.14:45550 -> 83.222.39.110:13566
Source: global trafficTCP traffic: 192.168.2.14:51608 -> 83.222.202.43:13566
Source: global trafficTCP traffic: 192.168.2.14:40132 -> 83.222.58.246:13566
Source: global trafficTCP traffic: 192.168.2.14:36284 -> 83.222.86.35:13566
Source: global trafficTCP traffic: 192.168.2.14:44580 -> 83.222.51.72:13566
Source: global trafficTCP traffic: 192.168.2.14:51714 -> 83.222.14.120:13566
Source: global trafficTCP traffic: 192.168.2.14:58878 -> 83.222.172.245:13566
Source: global trafficTCP traffic: 192.168.2.14:43526 -> 83.222.19.12:13566
Source: global trafficTCP traffic: 192.168.2.14:48648 -> 83.222.240.133:13566
Source: global trafficTCP traffic: 192.168.2.14:47376 -> 83.222.71.222:13566
Source: global trafficTCP traffic: 192.168.2.14:34002 -> 83.222.4.236:13566
Source: global trafficTCP traffic: 192.168.2.14:36788 -> 83.222.172.84:13566
Source: global trafficTCP traffic: 192.168.2.14:56376 -> 83.222.195.169:13566
Source: global trafficTCP traffic: 192.168.2.14:48476 -> 83.222.21.26:13566
Source: global trafficTCP traffic: 192.168.2.14:47058 -> 83.222.152.206:13566
Source: global trafficTCP traffic: 192.168.2.14:41554 -> 83.222.97.192:13566
Source: global trafficTCP traffic: 192.168.2.14:46704 -> 83.222.60.43:13566
Source: global trafficTCP traffic: 192.168.2.14:35404 -> 83.222.235.119:13566
Source: global trafficTCP traffic: 192.168.2.14:40886 -> 83.222.33.65:13566
Source: global trafficTCP traffic: 192.168.2.14:44224 -> 83.222.154.85:13566
Source: global trafficTCP traffic: 192.168.2.14:54398 -> 83.222.137.168:13566
Source: global trafficTCP traffic: 192.168.2.14:40886 -> 83.222.205.53:13566
Source: global trafficTCP traffic: 192.168.2.14:37972 -> 83.222.157.224:13566
Source: global trafficTCP traffic: 192.168.2.14:44554 -> 83.222.65.142:13566
Source: global trafficTCP traffic: 192.168.2.14:52466 -> 83.222.101.137:13566
Source: global trafficTCP traffic: 192.168.2.14:60258 -> 83.222.108.105:13566
Source: global trafficTCP traffic: 192.168.2.14:48446 -> 83.222.117.24:13566
Source: global trafficTCP traffic: 192.168.2.14:56986 -> 83.222.190.56:13566
Source: global trafficTCP traffic: 192.168.2.14:40156 -> 83.222.193.211:13566
Source: global trafficTCP traffic: 192.168.2.14:40990 -> 83.222.82.90:13566
Source: global trafficTCP traffic: 192.168.2.14:55664 -> 83.222.161.180:13566
Source: global trafficTCP traffic: 192.168.2.14:52942 -> 83.222.26.221:13566
Source: global trafficTCP traffic: 192.168.2.14:52380 -> 83.222.223.5:13566
Source: global trafficTCP traffic: 192.168.2.14:47702 -> 83.222.84.1:13566
Source: global trafficTCP traffic: 192.168.2.14:44642 -> 83.222.70.239:13566
Source: global trafficTCP traffic: 192.168.2.14:53318 -> 83.222.86.208:13566
Source: global trafficTCP traffic: 192.168.2.14:41368 -> 83.222.151.35:13566
Source: global trafficTCP traffic: 192.168.2.14:55544 -> 83.222.5.53:13566
Source: global trafficTCP traffic: 192.168.2.14:35060 -> 83.222.4.71:13566
Source: global trafficTCP traffic: 192.168.2.14:35598 -> 83.222.195.105:13566
Source: global trafficTCP traffic: 192.168.2.14:46904 -> 83.222.208.47:13566
Source: global trafficTCP traffic: 192.168.2.14:54438 -> 83.222.211.69:13566
Source: global trafficTCP traffic: 192.168.2.14:46306 -> 83.222.71.145:13566
Source: global trafficTCP traffic: 192.168.2.14:37178 -> 83.222.125.8:13566
Source: global trafficTCP traffic: 192.168.2.14:39148 -> 83.222.100.208:13566
Source: global trafficTCP traffic: 192.168.2.14:33986 -> 83.222.98.5:13566
Source: global trafficTCP traffic: 192.168.2.14:34386 -> 83.222.132.124:13566
Source: global trafficTCP traffic: 192.168.2.14:52468 -> 83.222.226.99:13566
Source: global trafficTCP traffic: 192.168.2.14:58940 -> 83.222.129.55:13566
Source: global trafficTCP traffic: 192.168.2.14:59776 -> 83.222.100.200:13566
Source: global trafficTCP traffic: 192.168.2.14:41402 -> 83.222.38.186:13566
Source: global trafficTCP traffic: 192.168.2.14:44714 -> 83.222.152.189:13566
Source: global trafficTCP traffic: 192.168.2.14:59196 -> 83.222.222.157:13566
Source: global trafficTCP traffic: 192.168.2.14:40742 -> 83.222.242.226:13566
Source: global trafficTCP traffic: 192.168.2.14:50456 -> 83.222.228.181:13566
Source: global trafficTCP traffic: 192.168.2.14:34780 -> 83.222.75.180:13566
Source: global trafficTCP traffic: 192.168.2.14:55978 -> 83.222.228.30:13566
Source: global trafficTCP traffic: 192.168.2.14:35358 -> 83.222.249.43:13566
Source: global trafficTCP traffic: 192.168.2.14:54600 -> 83.222.175.119:13566
Source: global trafficTCP traffic: 192.168.2.14:55738 -> 83.222.52.19:13566
Source: global trafficTCP traffic: 192.168.2.14:34980 -> 83.222.71.150:13566
Source: global trafficTCP traffic: 192.168.2.14:46522 -> 83.222.24.203:13566
Source: global trafficTCP traffic: 192.168.2.14:36582 -> 83.222.19.251:13566
Source: global trafficTCP traffic: 192.168.2.14:53288 -> 83.222.46.148:13566
Source: global trafficTCP traffic: 192.168.2.14:48316 -> 83.222.50.147:13566
Source: global trafficTCP traffic: 192.168.2.14:42524 -> 83.222.92.88:13566
Source: global trafficTCP traffic: 192.168.2.14:44168 -> 83.222.77.244:13566
Source: global trafficTCP traffic: 192.168.2.14:35754 -> 83.222.21.43:13566
Source: global trafficTCP traffic: 192.168.2.14:37370 -> 83.222.146.8:13566
Source: global trafficTCP traffic: 192.168.2.14:40728 -> 83.222.13.118:13566
Source: global trafficTCP traffic: 192.168.2.14:56528 -> 83.222.189.89:13566
Source: global trafficTCP traffic: 192.168.2.14:40086 -> 83.222.43.162:13566
Source: global trafficTCP traffic: 192.168.2.14:42758 -> 83.222.119.36:13566
Source: global trafficTCP traffic: 192.168.2.14:48754 -> 83.222.205.39:13566
Source: global trafficTCP traffic: 192.168.2.14:60960 -> 83.222.155.1:13566
Source: global trafficTCP traffic: 192.168.2.14:39834 -> 83.222.58.226:13566
Source: global trafficTCP traffic: 192.168.2.14:36054 -> 83.222.152.83:13566
Source: global trafficTCP traffic: 192.168.2.14:58600 -> 83.222.173.171:13566
Source: global trafficTCP traffic: 192.168.2.14:46328 -> 83.222.78.220:13566
Source: global trafficTCP traffic: 192.168.2.14:40988 -> 83.222.63.128:13566
Source: global trafficTCP traffic: 192.168.2.14:36916 -> 83.222.111.156:13566
Source: global trafficTCP traffic: 192.168.2.14:52058 -> 83.222.216.188:13566
Source: global trafficTCP traffic: 192.168.2.14:43830 -> 83.222.144.237:13566
Source: global trafficTCP traffic: 192.168.2.14:55912 -> 83.222.232.34:13566
Source: global trafficTCP traffic: 192.168.2.14:39412 -> 83.222.245.245:13566
Source: global trafficTCP traffic: 192.168.2.14:55932 -> 83.222.153.179:13566
Source: global trafficTCP traffic: 192.168.2.14:33172 -> 83.222.78.196:13566
Source: global trafficTCP traffic: 192.168.2.14:55900 -> 83.222.85.198:13566
Source: global trafficTCP traffic: 192.168.2.14:42984 -> 83.222.237.132:13566
Source: global trafficTCP traffic: 192.168.2.14:53028 -> 83.222.36.39:13566
Source: global trafficTCP traffic: 192.168.2.14:60218 -> 83.222.102.188:13566
Source: global trafficTCP traffic: 192.168.2.14:50436 -> 83.222.122.20:13566
Source: global trafficTCP traffic: 192.168.2.14:45222 -> 83.222.103.200:13566
Source: global trafficTCP traffic: 192.168.2.14:56536 -> 83.222.191.90:13566
Source: /tmp/loki.m68k.elf (PID: 5481)Socket: 127.0.0.1:14435Jump to behavior
Source: Network trafficSuricata IDS: 2500034 - Severity 2 - ET COMPROMISED Known Compromised or Hostile Host Traffic group 18 : 83.222.191.90:13566 -> 192.168.2.14:56536
Source: global trafficTCP traffic: 192.168.2.14:46540 -> 185.125.190.26:443
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.80.215
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.80.215
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.253.192
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.253.192
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.86.239
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.86.239
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.185.71
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.185.71
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.185.71
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.39.110
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.185.71
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.202.43
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.39.110
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.202.43
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.202.43
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.58.246
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.202.43
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.58.246
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.86.35
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.51.72
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.86.35
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.14.120
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.51.72
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.172.245
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.14.120
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.19.12
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.172.245
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.240.133
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.19.12
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.71.222
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.240.133
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.4.236
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.71.222
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.4.236
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.172.84
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.172.84
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.195.169
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.21.26
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.195.169
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.21.26
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.21.26
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.152.206
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.97.192
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.21.26
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.152.206
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.97.192
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.97.192
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.60.43
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.235.119
Source: unknownTCP traffic detected without corresponding DNS query: 83.222.97.192
Source: global trafficDNS traffic detected: DNS query: secure-network-rebirthltd.ru
Source: unknownNetwork traffic detected: HTTP traffic on port 46540 -> 443
Source: ELF static info symbol of initial sample.symtab present: no
Source: classification engineClassification label: mal48.linELF@0/0@1/0
Source: /tmp/loki.m68k.elf (PID: 5481)Queries kernel information via 'uname': Jump to behavior
Source: loki.m68k.elf, 5481.1.00007ffc8cfd2000.00007ffc8cff3000.rw-.sdmp, loki.m68k.elf, 5483.1.00007ffc8cfd2000.00007ffc8cff3000.rw-.sdmpBinary or memory string: x86_64/usr/bin/qemu-m68k/tmp/loki.m68k.elfSUDO_USER=saturninoPATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:/snap/binDISPLAY=:1.0XAUTHORITY=/run/user/1000/gdm/XauthoritySUDO_UID=1000TERM=xterm-256colorCOLORTERM=truecolorLOGNAME=rootUSER=rootLANG=en_US.UTF-8SUDO_COMMAND=/bin/bashHOME=/rootMAIL=/var/mail/rootSUDO_GID=1000SHELL=/bin/bash/tmp/loki.m68k.elf
Source: loki.m68k.elf, 5481.1.000055a603ed5000.000055a603f5e000.rw-.sdmp, loki.m68k.elf, 5483.1.000055a603ed5000.000055a603f39000.rw-.sdmpBinary or memory string: U!/etc/qemu-binfmt/m68k
Source: loki.m68k.elf, 5481.1.00007ffc8cfd2000.00007ffc8cff3000.rw-.sdmp, loki.m68k.elf, 5483.1.00007ffc8cfd2000.00007ffc8cff3000.rw-.sdmpBinary or memory string: /usr/bin/qemu-m68k
Source: loki.m68k.elf, 5481.1.000055a603ed5000.000055a603f5e000.rw-.sdmp, loki.m68k.elf, 5483.1.000055a603ed5000.000055a603f39000.rw-.sdmpBinary or memory string: /etc/qemu-binfmt/m68k
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath InterceptionPath InterceptionDirect Volume AccessOS Credential Dumping11
Security Software Discovery
Remote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization ScriptsRootkitLSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media1
Non-Standard Port
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive1
Non-Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture2
Application Layer Protocol
Traffic DuplicationData Destruction
No configs have been found
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Number of created Files
  • Is malicious
  • Internet
behaviorgraph top1 dnsIp2 2 Behavior Graph ID: 1594480 Sample: loki.m68k.elf Startdate: 19/01/2025 Architecture: LINUX Score: 48 13 83.222.125.8, 13566, 37178 TRI-ASTrueRecordsIncES Russian Federation 2->13 15 83.222.193.211, 13566, 40156 SYNTERRA-ASRU Russian Federation 2->15 17 97 other IPs or domains 2->17 19 Multi AV Scanner detection for submitted file 2->19 7 loki.m68k.elf 2->7         started        signatures3 process4 process5 9 loki.m68k.elf 7->9         started        11 loki.m68k.elf 7->11         started       

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
loki.m68k.elf33%VirustotalBrowse
loki.m68k.elf37%ReversingLabsLinux.Backdoor.Mirai
No Antivirus matches
No Antivirus matches
No Antivirus matches

Download Network PCAP: filteredfull

NameIPActiveMaliciousAntivirus DetectionReputation
secure-network-rebirthltd.ru
83.222.191.90
truefalse
    high
    • No. of IPs < 25%
    • 25% < No. of IPs < 50%
    • 50% < No. of IPs < 75%
    • 75% < No. of IPs
    IPDomainCountryFlagASNASN NameMalicious
    83.222.26.221
    unknownRussian Federation
    25532MASTERHOST-ASMoscowRussiaRUfalse
    83.222.228.30
    unknownUnited Kingdom
    13768COGECO-PEER1CAfalse
    83.222.226.99
    unknownUnited Kingdom
    13768COGECO-PEER1CAfalse
    83.222.205.39
    unknownRussian Federation
    6854SYNTERRA-ASRUfalse
    83.222.202.43
    unknownRussian Federation
    6854SYNTERRA-ASRUfalse
    83.222.71.150
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.111.156
    unknownRussian Federation
    42632MNOGOBYTE-ASMoscowRussiaRUfalse
    83.222.84.1
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.70.239
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.21.43
    unknownRussian Federation
    25532MASTERHOST-ASMoscowRussiaRUfalse
    83.222.97.192
    unknownRussian Federation
    42632MNOGOBYTE-ASMoscowRussiaRUfalse
    83.222.24.203
    unknownRussian Federation
    25532MASTERHOST-ASMoscowRussiaRUfalse
    83.222.242.226
    unknownUnited Kingdom
    13768COGECO-PEER1CAfalse
    83.222.75.180
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.185.71
    unknownBulgaria
    43561NET1-ASBGfalse
    83.222.85.198
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.13.118
    unknownRussian Federation
    25532MASTERHOST-ASMoscowRussiaRUfalse
    83.222.102.188
    unknownRussian Federation
    42632MNOGOBYTE-ASMoscowRussiaRUfalse
    83.222.119.36
    unknownRussian Federation
    42632MNOGOBYTE-ASMoscowRussiaRUfalse
    83.222.4.71
    unknownRussian Federation
    25532MASTERHOST-ASMoscowRussiaRUfalse
    83.222.19.12
    unknownRussian Federation
    25532MASTERHOST-ASMoscowRussiaRUfalse
    83.222.153.179
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.175.119
    unknownBulgaria
    12615GCN-ASGCNAD-SofiaBulgariaBGfalse
    83.222.253.192
    unknownUnited Kingdom
    13768COGECO-PEER1CAfalse
    83.222.51.72
    unknownLuxembourg
    8632LOL-ASluLUfalse
    83.222.152.206
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.228.181
    unknownUnited Kingdom
    13768COGECO-PEER1CAfalse
    83.222.80.215
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.195.169
    unknownRussian Federation
    6854SYNTERRA-ASRUfalse
    83.222.38.186
    unknownLuxembourg
    8632LOL-ASluLUfalse
    83.222.157.224
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.65.142
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.117.24
    unknownRussian Federation
    42632MNOGOBYTE-ASMoscowRussiaRUfalse
    83.222.161.180
    unknownBulgaria
    12615GCN-ASGCNAD-SofiaBulgariaBGfalse
    83.222.77.244
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.172.84
    unknownBulgaria
    49040KIG-UNISAT-TVBGfalse
    83.222.21.26
    unknownRussian Federation
    25532MASTERHOST-ASMoscowRussiaRUfalse
    83.222.151.35
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.92.88
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.191.90
    secure-network-rebirthltd.ruBulgaria
    43561NET1-ASBGfalse
    83.222.58.246
    unknownLuxembourg
    8632LOL-ASluLUfalse
    83.222.132.124
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.4.236
    unknownRussian Federation
    25532MASTERHOST-ASMoscowRussiaRUfalse
    83.222.237.132
    unknownUnited Kingdom
    13768COGECO-PEER1CAfalse
    83.222.146.8
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.103.200
    unknownRussian Federation
    42632MNOGOBYTE-ASMoscowRussiaRUfalse
    83.222.60.43
    unknownLuxembourg
    8632LOL-ASluLUfalse
    83.222.71.145
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.152.83
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.172.245
    unknownBulgaria
    49040KIG-UNISAT-TVBGfalse
    83.222.52.19
    unknownLuxembourg
    8632LOL-ASluLUfalse
    83.222.78.220
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.173.171
    unknownBulgaria
    12615GCN-ASGCNAD-SofiaBulgariaBGfalse
    83.222.144.237
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.33.65
    unknownLuxembourg
    8632LOL-ASluLUfalse
    83.222.223.5
    unknownRussian Federation
    25159SONICDUO-ASRUfalse
    83.222.195.105
    unknownRussian Federation
    6854SYNTERRA-ASRUfalse
    83.222.108.105
    unknownRussian Federation
    42632MNOGOBYTE-ASMoscowRussiaRUfalse
    83.222.193.211
    unknownRussian Federation
    6854SYNTERRA-ASRUfalse
    83.222.152.189
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.249.43
    unknownUnited Kingdom
    13768COGECO-PEER1CAfalse
    83.222.190.56
    unknownBulgaria
    43561NET1-ASBGfalse
    83.222.245.245
    unknownUnited Kingdom
    13768COGECO-PEER1CAfalse
    83.222.39.110
    unknownLuxembourg
    8632LOL-ASluLUfalse
    83.222.86.239
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.46.148
    unknownLuxembourg
    8632LOL-ASluLUfalse
    83.222.222.157
    unknownRussian Federation
    25159SONICDUO-ASRUfalse
    83.222.58.226
    unknownLuxembourg
    8632LOL-ASluLUfalse
    83.222.50.147
    unknownLuxembourg
    8632LOL-ASluLUfalse
    83.222.235.119
    unknownUnited Kingdom
    13768COGECO-PEER1CAfalse
    83.222.86.35
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.137.168
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.154.85
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.205.53
    unknownRussian Federation
    6854SYNTERRA-ASRUfalse
    83.222.232.34
    unknownUnited Kingdom
    13768COGECO-PEER1CAfalse
    83.222.122.20
    unknownRussian Federation
    42632MNOGOBYTE-ASMoscowRussiaRUfalse
    83.222.208.47
    unknownRussian Federation
    6854SYNTERRA-ASRUfalse
    83.222.82.90
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.101.137
    unknownRussian Federation
    42632MNOGOBYTE-ASMoscowRussiaRUfalse
    83.222.129.55
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.86.208
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.189.89
    unknownBulgaria
    43561NET1-ASBGfalse
    83.222.100.200
    unknownRussian Federation
    42632MNOGOBYTE-ASMoscowRussiaRUfalse
    83.222.43.162
    unknownLuxembourg
    8632LOL-ASluLUfalse
    185.125.190.26
    unknownUnited Kingdom
    41231CANONICAL-ASGBfalse
    83.222.100.208
    unknownRussian Federation
    42632MNOGOBYTE-ASMoscowRussiaRUfalse
    83.222.5.53
    unknownRussian Federation
    25532MASTERHOST-ASMoscowRussiaRUfalse
    83.222.19.251
    unknownRussian Federation
    25532MASTERHOST-ASMoscowRussiaRUfalse
    83.222.155.1
    unknownSwitzerland
    31736SENSELAN-ASsenseLANGmbHCHfalse
    83.222.98.5
    unknownRussian Federation
    42632MNOGOBYTE-ASMoscowRussiaRUfalse
    83.222.78.196
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.63.128
    unknownLuxembourg
    8632LOL-ASluLUfalse
    83.222.240.133
    unknownUnited Kingdom
    13768COGECO-PEER1CAfalse
    83.222.216.188
    unknownRussian Federation
    25159SONICDUO-ASRUfalse
    83.222.36.39
    unknownLuxembourg
    8632LOL-ASluLUfalse
    83.222.14.120
    unknownRussian Federation
    25532MASTERHOST-ASMoscowRussiaRUfalse
    83.222.125.8
    unknownRussian Federation
    47328TRI-ASTrueRecordsIncESfalse
    83.222.71.222
    unknownRussian Federation
    16285ASN-UMNTechnicheskayaStr18bYekaterinburgRussiaRUfalse
    83.222.211.69
    unknownRussian Federation
    6854SYNTERRA-ASRUfalse
    MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
    83.222.19.12Kloki.arm4.elfGet hashmaliciousUnknownBrowse
      83.222.153.179Kloki.spc.elfGet hashmaliciousUnknownBrowse
        MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
        secure-network-rebirthltd.ruKloki.arm5.elfGet hashmaliciousUnknownBrowse
        • 83.222.191.90
        Kloki.spc.elfGet hashmaliciousUnknownBrowse
        • 83.222.191.90
        Kloki.arm7.elfGet hashmaliciousMiraiBrowse
        • 83.222.191.90
        loki.x86_64.elfGet hashmaliciousUnknownBrowse
        • 83.222.191.90
        Kloki.x86_64.elfGet hashmaliciousUnknownBrowse
        • 83.222.191.90
        Kloki.i686.elfGet hashmaliciousUnknownBrowse
        • 83.222.191.90
        loki.spc.elfGet hashmaliciousUnknownBrowse
        • 83.222.191.90
        loki.arm4.elfGet hashmaliciousUnknownBrowse
        • 83.222.191.90
        loki.mpsl.elfGet hashmaliciousUnknownBrowse
        • 83.222.191.90
        loki.m68k.elfGet hashmaliciousUnknownBrowse
        • 83.222.191.90
        MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
        MASTERHOST-ASMoscowRussiaRUKloki.arm5.elfGet hashmaliciousUnknownBrowse
        • 83.222.31.12
        Kloki.spc.elfGet hashmaliciousUnknownBrowse
        • 83.222.18.54
        Kloki.arm7.elfGet hashmaliciousMiraiBrowse
        • 83.222.3.229
        loki.x86_64.elfGet hashmaliciousUnknownBrowse
        • 83.222.2.99
        Kloki.x86_64.elfGet hashmaliciousUnknownBrowse
        • 83.222.31.9
        Kloki.i686.elfGet hashmaliciousUnknownBrowse
        • 83.222.17.31
        loki.spc.elfGet hashmaliciousUnknownBrowse
        • 83.222.22.234
        loki.arm4.elfGet hashmaliciousUnknownBrowse
        • 83.222.3.82
        loki.mpsl.elfGet hashmaliciousUnknownBrowse
        • 83.222.3.82
        loki.m68k.elfGet hashmaliciousUnknownBrowse
        • 83.222.20.187
        COGECO-PEER1CAKloki.arm5.elfGet hashmaliciousUnknownBrowse
        • 83.222.240.144
        Kloki.spc.elfGet hashmaliciousUnknownBrowse
        • 83.222.229.189
        Kloki.arm7.elfGet hashmaliciousMiraiBrowse
        • 83.222.243.179
        loki.x86_64.elfGet hashmaliciousUnknownBrowse
        • 83.222.234.133
        Kloki.x86_64.elfGet hashmaliciousUnknownBrowse
        • 83.222.245.50
        https://dat1-ochre.vercel.app/intest.htmlGet hashmaliciousHTMLPhisherBrowse
        • 64.29.17.65
        https://34t43y345gargasrgawe4h3w4h4ergergre-1701.vercel.app/global/rpticket12.htmlGet hashmaliciousHTMLPhisherBrowse
        • 64.29.17.129
        http://argentpropertiesvb.com/?helpbusiness-100078883Get hashmaliciousHTMLPhisherBrowse
        • 64.29.17.129
        http://case-id-100084633.argentpropertiesvb.com/Get hashmaliciousHTMLPhisherBrowse
        • 64.29.17.1
        http://case-id-100078883.argentpropertiesvb.com/?helpbusiness-100078883Get hashmaliciousHTMLPhisherBrowse
        • 64.29.17.65
        COGECO-PEER1CAKloki.arm5.elfGet hashmaliciousUnknownBrowse
        • 83.222.240.144
        Kloki.spc.elfGet hashmaliciousUnknownBrowse
        • 83.222.229.189
        Kloki.arm7.elfGet hashmaliciousMiraiBrowse
        • 83.222.243.179
        loki.x86_64.elfGet hashmaliciousUnknownBrowse
        • 83.222.234.133
        Kloki.x86_64.elfGet hashmaliciousUnknownBrowse
        • 83.222.245.50
        https://dat1-ochre.vercel.app/intest.htmlGet hashmaliciousHTMLPhisherBrowse
        • 64.29.17.65
        https://34t43y345gargasrgawe4h3w4h4ergergre-1701.vercel.app/global/rpticket12.htmlGet hashmaliciousHTMLPhisherBrowse
        • 64.29.17.129
        http://argentpropertiesvb.com/?helpbusiness-100078883Get hashmaliciousHTMLPhisherBrowse
        • 64.29.17.129
        http://case-id-100084633.argentpropertiesvb.com/Get hashmaliciousHTMLPhisherBrowse
        • 64.29.17.1
        http://case-id-100078883.argentpropertiesvb.com/?helpbusiness-100078883Get hashmaliciousHTMLPhisherBrowse
        • 64.29.17.65
        SYNTERRA-ASRUKloki.arm5.elfGet hashmaliciousUnknownBrowse
        • 83.222.200.226
        Kloki.spc.elfGet hashmaliciousUnknownBrowse
        • 83.222.205.255
        Kloki.arm7.elfGet hashmaliciousMiraiBrowse
        • 83.222.194.159
        loki.x86_64.elfGet hashmaliciousUnknownBrowse
        • 83.222.200.182
        Kloki.x86_64.elfGet hashmaliciousUnknownBrowse
        • 83.222.192.170
        Kloki.i686.elfGet hashmaliciousUnknownBrowse
        • 83.222.201.96
        loki.spc.elfGet hashmaliciousUnknownBrowse
        • 83.222.210.254
        loki.arm4.elfGet hashmaliciousUnknownBrowse
        • 83.222.200.164
        loki.mpsl.elfGet hashmaliciousUnknownBrowse
        • 83.222.200.164
        loki.m68k.elfGet hashmaliciousUnknownBrowse
        • 83.222.205.55
        No context
        No context
        No created / dropped files found
        File type:ELF 32-bit MSB executable, Motorola m68k, 68020, version 1 (SYSV), statically linked, stripped
        Entropy (8bit):6.1985637884806035
        TrID:
        • ELF Executable and Linkable format (generic) (4004/1) 100.00%
        File name:loki.m68k.elf
        File size:48'704 bytes
        MD5:dc673d6531337eeaf48bc2eaf766961e
        SHA1:2b391e2effbaf528f1427689df98743754db8d18
        SHA256:fc4ea830e3fc2afe5c6501c5549272fa3774e39bd56cce90058c85d8a01a1109
        SHA512:79d1de4ee543abf84e566497a307d26cdb18b0c21fa911d2731b53f83b91517b26ada34bc281acd8a0b2b8a294b4442209d166396ffff7f0883163acc1be4767
        SSDEEP:768:rZEeqT7/rP9tzVekdvXn5rm3rCKODZ8uxTxbUpfY8mIUutUOx:rCBT7znVvn5rMCzF8uxpUpfYpIUM1x
        TLSH:DC2318DAB8119D7CF80AEB7E94130A0AB661774511D30B3657BFFDA36D322940D62E83
        File Content Preview:.ELF.......................D...4.........4. ...(....................... ... ...... ........$...$...$...L.......... .dt.Q............................NV..a....da....hN^NuNV..J9...pf>"y...< QJ.g.X.#....<N."y...< QJ.f.A.....J.g.Hy... N.X........pN^NuNV..N^NuN

        ELF header

        Class:ELF32
        Data:2's complement, big endian
        Version:1 (current)
        Machine:MC68000
        Version Number:0x1
        Type:EXEC (Executable file)
        OS/ABI:UNIX - System V
        ABI Version:0
        Entry Point Address:0x80000144
        Flags:0x0
        ELF Header Size:52
        Program Header Offset:52
        Program Header Size:32
        Number of Program Headers:3
        Section Header Offset:48304
        Section Header Size:40
        Number of Section Headers:10
        Header String Table Index:9
        NameTypeAddressOffsetSizeEntSizeFlagsFlags DescriptionLinkInfoAlign
        NULL0x00x00x00x00x0000
        .initPROGBITS0x800000940x940x140x00x6AX002
        .textPROGBITS0x800000a80xa80xb4920x00x6AX004
        .finiPROGBITS0x8000b53a0xb53a0xe0x00x6AX002
        .rodataPROGBITS0x8000b5480xb5480x4d80x00x2A002
        .ctorsPROGBITS0x8000da240xba240x80x00x3WA004
        .dtorsPROGBITS0x8000da2c0xba2c0x80x00x3WA004
        .dataPROGBITS0x8000da380xba380x2380x00x3WA004
        .bssNOBITS0x8000dc700xbc700x11600x00x3WA004
        .shstrtabSTRTAB0x00xbc700x3e0x00x0001
        TypeOffsetVirtual AddressPhysical AddressFile SizeMemory SizeEntropyFlagsFlags DescriptionAlignProg InterpreterSection Mappings
        LOAD0x00x800000000x800000000xba200xba206.23650x5R E0x2000.init .text .fini .rodata
        LOAD0xba240x8000da240x8000da240x24c0x13ac3.19970x6RW 0x2000.ctors .dtors .data .bss
        GNU_STACK0x00x00x00x00x00.00000x6RW 0x4

        Download Network PCAP: filteredfull

        TimestampSIDSignatureSeveritySource IPSource PortDest IPDest PortProtocol
        2025-01-19T02:57:54.350623+01002500034ET COMPROMISED Known Compromised or Hostile Host Traffic group 18283.222.191.9013566192.168.2.1456536TCP
        • Total Packets: 219
        • 13566 undefined
        • 443 (HTTPS)
        • 53 (DNS)
        TimestampSource PortDest PortSource IPDest IP
        Jan 19, 2025 02:57:54.041194916 CET3669413566192.168.2.1483.222.80.215
        Jan 19, 2025 02:57:54.046400070 CET135663669483.222.80.215192.168.2.14
        Jan 19, 2025 02:57:54.046482086 CET3669413566192.168.2.1483.222.80.215
        Jan 19, 2025 02:57:54.065949917 CET4966613566192.168.2.1483.222.253.192
        Jan 19, 2025 02:57:54.070892096 CET135664966683.222.253.192192.168.2.14
        Jan 19, 2025 02:57:54.070947886 CET4966613566192.168.2.1483.222.253.192
        Jan 19, 2025 02:57:54.088119030 CET4300213566192.168.2.1483.222.86.239
        Jan 19, 2025 02:57:54.093009949 CET135664300283.222.86.239192.168.2.14
        Jan 19, 2025 02:57:54.093067884 CET4300213566192.168.2.1483.222.86.239
        Jan 19, 2025 02:57:54.107630014 CET3727013566192.168.2.1483.222.185.71
        Jan 19, 2025 02:57:54.112518072 CET135663727083.222.185.71192.168.2.14
        Jan 19, 2025 02:57:54.112569094 CET3727013566192.168.2.1483.222.185.71
        Jan 19, 2025 02:57:54.113940001 CET3727013566192.168.2.1483.222.185.71
        Jan 19, 2025 02:57:54.117230892 CET4555013566192.168.2.1483.222.39.110
        Jan 19, 2025 02:57:54.118853092 CET135663727083.222.185.71192.168.2.14
        Jan 19, 2025 02:57:54.118906021 CET3727013566192.168.2.1483.222.185.71
        Jan 19, 2025 02:57:54.120440960 CET5160813566192.168.2.1483.222.202.43
        Jan 19, 2025 02:57:54.122145891 CET135664555083.222.39.110192.168.2.14
        Jan 19, 2025 02:57:54.122231960 CET4555013566192.168.2.1483.222.39.110
        Jan 19, 2025 02:57:54.125438929 CET135665160883.222.202.43192.168.2.14
        Jan 19, 2025 02:57:54.125509024 CET5160813566192.168.2.1483.222.202.43
        Jan 19, 2025 02:57:54.135324955 CET5160813566192.168.2.1483.222.202.43
        Jan 19, 2025 02:57:54.137902021 CET4013213566192.168.2.1483.222.58.246
        Jan 19, 2025 02:57:54.140237093 CET135665160883.222.202.43192.168.2.14
        Jan 19, 2025 02:57:54.140300035 CET5160813566192.168.2.1483.222.202.43
        Jan 19, 2025 02:57:54.142760992 CET135664013283.222.58.246192.168.2.14
        Jan 19, 2025 02:57:54.142817020 CET4013213566192.168.2.1483.222.58.246
        Jan 19, 2025 02:57:54.152484894 CET3628413566192.168.2.1483.222.86.35
        Jan 19, 2025 02:57:54.156239986 CET4458013566192.168.2.1483.222.51.72
        Jan 19, 2025 02:57:54.158740997 CET135663628483.222.86.35192.168.2.14
        Jan 19, 2025 02:57:54.158802986 CET3628413566192.168.2.1483.222.86.35
        Jan 19, 2025 02:57:54.159849882 CET5171413566192.168.2.1483.222.14.120
        Jan 19, 2025 02:57:54.161648035 CET135664458083.222.51.72192.168.2.14
        Jan 19, 2025 02:57:54.161700964 CET4458013566192.168.2.1483.222.51.72
        Jan 19, 2025 02:57:54.163079023 CET5887813566192.168.2.1483.222.172.245
        Jan 19, 2025 02:57:54.164701939 CET135665171483.222.14.120192.168.2.14
        Jan 19, 2025 02:57:54.164753914 CET5171413566192.168.2.1483.222.14.120
        Jan 19, 2025 02:57:54.167258978 CET4352613566192.168.2.1483.222.19.12
        Jan 19, 2025 02:57:54.168370962 CET135665887883.222.172.245192.168.2.14
        Jan 19, 2025 02:57:54.168421030 CET5887813566192.168.2.1483.222.172.245
        Jan 19, 2025 02:57:54.170874119 CET4864813566192.168.2.1483.222.240.133
        Jan 19, 2025 02:57:54.172142029 CET135664352683.222.19.12192.168.2.14
        Jan 19, 2025 02:57:54.172192097 CET4352613566192.168.2.1483.222.19.12
        Jan 19, 2025 02:57:54.174886942 CET4737613566192.168.2.1483.222.71.222
        Jan 19, 2025 02:57:54.176445007 CET135664864883.222.240.133192.168.2.14
        Jan 19, 2025 02:57:54.176506996 CET4864813566192.168.2.1483.222.240.133
        Jan 19, 2025 02:57:54.178868055 CET3400213566192.168.2.1483.222.4.236
        Jan 19, 2025 02:57:54.180758953 CET135664737683.222.71.222192.168.2.14
        Jan 19, 2025 02:57:54.180900097 CET4737613566192.168.2.1483.222.71.222
        Jan 19, 2025 02:57:54.183659077 CET135663400283.222.4.236192.168.2.14
        Jan 19, 2025 02:57:54.183720112 CET3400213566192.168.2.1483.222.4.236
        Jan 19, 2025 02:57:54.185401917 CET3678813566192.168.2.1483.222.172.84
        Jan 19, 2025 02:57:54.190299034 CET135663678883.222.172.84192.168.2.14
        Jan 19, 2025 02:57:54.190342903 CET3678813566192.168.2.1483.222.172.84
        Jan 19, 2025 02:57:54.190500975 CET5637613566192.168.2.1483.222.195.169
        Jan 19, 2025 02:57:54.195183039 CET4847613566192.168.2.1483.222.21.26
        Jan 19, 2025 02:57:54.195404053 CET135665637683.222.195.169192.168.2.14
        Jan 19, 2025 02:57:54.195463896 CET5637613566192.168.2.1483.222.195.169
        Jan 19, 2025 02:57:54.200066090 CET135664847683.222.21.26192.168.2.14
        Jan 19, 2025 02:57:54.200112104 CET4847613566192.168.2.1483.222.21.26
        Jan 19, 2025 02:57:54.211638927 CET4847613566192.168.2.1483.222.21.26
        Jan 19, 2025 02:57:54.211925983 CET4705813566192.168.2.1483.222.152.206
        Jan 19, 2025 02:57:54.212565899 CET4155413566192.168.2.1483.222.97.192
        Jan 19, 2025 02:57:54.216531992 CET135664847683.222.21.26192.168.2.14
        Jan 19, 2025 02:57:54.216582060 CET4847613566192.168.2.1483.222.21.26
        Jan 19, 2025 02:57:54.216780901 CET135664705883.222.152.206192.168.2.14
        Jan 19, 2025 02:57:54.216841936 CET4705813566192.168.2.1483.222.152.206
        Jan 19, 2025 02:57:54.217489958 CET135664155483.222.97.192192.168.2.14
        Jan 19, 2025 02:57:54.217597961 CET4155413566192.168.2.1483.222.97.192
        Jan 19, 2025 02:57:54.225804090 CET4155413566192.168.2.1483.222.97.192
        Jan 19, 2025 02:57:54.229330063 CET4670413566192.168.2.1483.222.60.43
        Jan 19, 2025 02:57:54.230074883 CET3540413566192.168.2.1483.222.235.119
        Jan 19, 2025 02:57:54.230643988 CET135664155483.222.97.192192.168.2.14
        Jan 19, 2025 02:57:54.230700970 CET4155413566192.168.2.1483.222.97.192
        Jan 19, 2025 02:57:54.234229088 CET135664670483.222.60.43192.168.2.14
        Jan 19, 2025 02:57:54.234277964 CET4670413566192.168.2.1483.222.60.43
        Jan 19, 2025 02:57:54.234947920 CET135663540483.222.235.119192.168.2.14
        Jan 19, 2025 02:57:54.235131979 CET3540413566192.168.2.1483.222.235.119
        Jan 19, 2025 02:57:54.245379925 CET4088613566192.168.2.1483.222.33.65
        Jan 19, 2025 02:57:54.248760939 CET4422413566192.168.2.1483.222.154.85
        Jan 19, 2025 02:57:54.250264883 CET135664088683.222.33.65192.168.2.14
        Jan 19, 2025 02:57:54.250319004 CET4088613566192.168.2.1483.222.33.65
        Jan 19, 2025 02:57:54.250689983 CET5439813566192.168.2.1483.222.137.168
        Jan 19, 2025 02:57:54.252454996 CET4088613566192.168.2.1483.222.205.53
        Jan 19, 2025 02:57:54.253683090 CET135664422483.222.154.85192.168.2.14
        Jan 19, 2025 02:57:54.253725052 CET4422413566192.168.2.1483.222.154.85
        Jan 19, 2025 02:57:54.253901005 CET3797213566192.168.2.1483.222.157.224
        Jan 19, 2025 02:57:54.254782915 CET4455413566192.168.2.1483.222.65.142
        Jan 19, 2025 02:57:54.255332947 CET5246613566192.168.2.1483.222.101.137
        Jan 19, 2025 02:57:54.255503893 CET135665439883.222.137.168192.168.2.14
        Jan 19, 2025 02:57:54.255584955 CET5439813566192.168.2.1483.222.137.168
        Jan 19, 2025 02:57:54.255856991 CET6025813566192.168.2.1483.222.108.105
        Jan 19, 2025 02:57:54.257325888 CET135664088683.222.205.53192.168.2.14
        Jan 19, 2025 02:57:54.257395029 CET4088613566192.168.2.1483.222.205.53
        Jan 19, 2025 02:57:54.258847952 CET135663797283.222.157.224192.168.2.14
        Jan 19, 2025 02:57:54.258918047 CET3797213566192.168.2.1483.222.157.224
        Jan 19, 2025 02:57:54.259670019 CET135664455483.222.65.142192.168.2.14
        Jan 19, 2025 02:57:54.259820938 CET4455413566192.168.2.1483.222.65.142
        Jan 19, 2025 02:57:54.260097027 CET135665246683.222.101.137192.168.2.14
        Jan 19, 2025 02:57:54.260185003 CET5246613566192.168.2.1483.222.101.137
        Jan 19, 2025 02:57:54.260643959 CET135666025883.222.108.105192.168.2.14
        Jan 19, 2025 02:57:54.260690928 CET6025813566192.168.2.1483.222.108.105
        Jan 19, 2025 02:57:54.267915964 CET4844613566192.168.2.1483.222.117.24
        Jan 19, 2025 02:57:54.269670010 CET5698613566192.168.2.1483.222.190.56
        Jan 19, 2025 02:57:54.271069050 CET4015613566192.168.2.1483.222.193.211
        Jan 19, 2025 02:57:54.271698952 CET4099013566192.168.2.1483.222.82.90
        Jan 19, 2025 02:57:54.272315025 CET5566413566192.168.2.1483.222.161.180
        Jan 19, 2025 02:57:54.272825956 CET135664844683.222.117.24192.168.2.14
        Jan 19, 2025 02:57:54.272878885 CET4844613566192.168.2.1483.222.117.24
        Jan 19, 2025 02:57:54.273144960 CET5294213566192.168.2.1483.222.26.221
        Jan 19, 2025 02:57:54.274589062 CET135665698683.222.190.56192.168.2.14
        Jan 19, 2025 02:57:54.274712086 CET5698613566192.168.2.1483.222.190.56
        Jan 19, 2025 02:57:54.276022911 CET135664015683.222.193.211192.168.2.14
        Jan 19, 2025 02:57:54.276073933 CET4015613566192.168.2.1483.222.193.211
        Jan 19, 2025 02:57:54.276536942 CET135664099083.222.82.90192.168.2.14
        Jan 19, 2025 02:57:54.276658058 CET4099013566192.168.2.1483.222.82.90
        Jan 19, 2025 02:57:54.277195930 CET135665566483.222.161.180192.168.2.14
        Jan 19, 2025 02:57:54.277482033 CET5566413566192.168.2.1483.222.161.180
        Jan 19, 2025 02:57:54.278034925 CET135665294283.222.26.221192.168.2.14
        Jan 19, 2025 02:57:54.278136015 CET5294213566192.168.2.1483.222.26.221
        Jan 19, 2025 02:57:54.284832954 CET5294213566192.168.2.1483.222.26.221
        Jan 19, 2025 02:57:54.285219908 CET5238013566192.168.2.1483.222.223.5
        Jan 19, 2025 02:57:54.286437988 CET4770213566192.168.2.1483.222.84.1
        Jan 19, 2025 02:57:54.287348032 CET4464213566192.168.2.1483.222.70.239
        Jan 19, 2025 02:57:54.288286924 CET5331813566192.168.2.1483.222.86.208
        Jan 19, 2025 02:57:54.289181948 CET4136813566192.168.2.1483.222.151.35
        Jan 19, 2025 02:57:54.289745092 CET135665294283.222.26.221192.168.2.14
        Jan 19, 2025 02:57:54.289803982 CET5294213566192.168.2.1483.222.26.221
        Jan 19, 2025 02:57:54.290159941 CET135665238083.222.223.5192.168.2.14
        Jan 19, 2025 02:57:54.290210962 CET5238013566192.168.2.1483.222.223.5
        Jan 19, 2025 02:57:54.290301085 CET5554413566192.168.2.1483.222.5.53
        Jan 19, 2025 02:57:54.291266918 CET3506013566192.168.2.1483.222.4.71
        Jan 19, 2025 02:57:54.291351080 CET135664770283.222.84.1192.168.2.14
        Jan 19, 2025 02:57:54.291397095 CET4770213566192.168.2.1483.222.84.1
        Jan 19, 2025 02:57:54.292164087 CET135664464283.222.70.239192.168.2.14
        Jan 19, 2025 02:57:54.292201996 CET3559813566192.168.2.1483.222.195.105
        Jan 19, 2025 02:57:54.292284012 CET4464213566192.168.2.1483.222.70.239
        Jan 19, 2025 02:57:54.293076992 CET4690413566192.168.2.1483.222.208.47
        Jan 19, 2025 02:57:54.293270111 CET135665331883.222.86.208192.168.2.14
        Jan 19, 2025 02:57:54.293329000 CET5331813566192.168.2.1483.222.86.208
        Jan 19, 2025 02:57:54.293984890 CET5443813566192.168.2.1483.222.211.69
        Jan 19, 2025 02:57:54.294045925 CET135664136883.222.151.35192.168.2.14
        Jan 19, 2025 02:57:54.294095993 CET4136813566192.168.2.1483.222.151.35
        Jan 19, 2025 02:57:54.295131922 CET135665554483.222.5.53192.168.2.14
        Jan 19, 2025 02:57:54.295170069 CET5554413566192.168.2.1483.222.5.53
        Jan 19, 2025 02:57:54.295198917 CET4630613566192.168.2.1483.222.71.145
        Jan 19, 2025 02:57:54.296128988 CET135663506083.222.4.71192.168.2.14
        Jan 19, 2025 02:57:54.296185017 CET3506013566192.168.2.1483.222.4.71
        Jan 19, 2025 02:57:54.296336889 CET3717813566192.168.2.1483.222.125.8
        Jan 19, 2025 02:57:54.297120094 CET135663559883.222.195.105192.168.2.14
        Jan 19, 2025 02:57:54.297197104 CET3559813566192.168.2.1483.222.195.105
        Jan 19, 2025 02:57:54.297245979 CET3914813566192.168.2.1483.222.100.208
        Jan 19, 2025 02:57:54.297940969 CET135664690483.222.208.47192.168.2.14
        Jan 19, 2025 02:57:54.297986984 CET4690413566192.168.2.1483.222.208.47
        Jan 19, 2025 02:57:54.298151016 CET3398613566192.168.2.1483.222.98.5
        Jan 19, 2025 02:57:54.298886061 CET135665443883.222.211.69192.168.2.14
        Jan 19, 2025 02:57:54.298933983 CET5443813566192.168.2.1483.222.211.69
        Jan 19, 2025 02:57:54.299257040 CET3438613566192.168.2.1483.222.132.124
        Jan 19, 2025 02:57:54.300003052 CET135664630683.222.71.145192.168.2.14
        Jan 19, 2025 02:57:54.300041914 CET4630613566192.168.2.1483.222.71.145
        Jan 19, 2025 02:57:54.300187111 CET5246813566192.168.2.1483.222.226.99
        Jan 19, 2025 02:57:54.301161051 CET135663717883.222.125.8192.168.2.14
        Jan 19, 2025 02:57:54.301294088 CET3717813566192.168.2.1483.222.125.8
        Jan 19, 2025 02:57:54.301386118 CET5894013566192.168.2.1483.222.129.55
        Jan 19, 2025 02:57:54.302037001 CET135663914883.222.100.208192.168.2.14
        Jan 19, 2025 02:57:54.302088976 CET3914813566192.168.2.1483.222.100.208
        Jan 19, 2025 02:57:54.302505016 CET5977613566192.168.2.1483.222.100.200
        Jan 19, 2025 02:57:54.303002119 CET135663398683.222.98.5192.168.2.14
        Jan 19, 2025 02:57:54.303061008 CET3398613566192.168.2.1483.222.98.5
        Jan 19, 2025 02:57:54.303929090 CET4140213566192.168.2.1483.222.38.186
        Jan 19, 2025 02:57:54.304081917 CET135663438683.222.132.124192.168.2.14
        Jan 19, 2025 02:57:54.304117918 CET3438613566192.168.2.1483.222.132.124
        Jan 19, 2025 02:57:54.304904938 CET4471413566192.168.2.1483.222.152.189
        Jan 19, 2025 02:57:54.305073023 CET135665246883.222.226.99192.168.2.14
        Jan 19, 2025 02:57:54.305118084 CET5246813566192.168.2.1483.222.226.99
        Jan 19, 2025 02:57:54.306119919 CET5919613566192.168.2.1483.222.222.157
        Jan 19, 2025 02:57:54.306257963 CET135665894083.222.129.55192.168.2.14
        Jan 19, 2025 02:57:54.306298971 CET5894013566192.168.2.1483.222.129.55
        Jan 19, 2025 02:57:54.307291985 CET135665977683.222.100.200192.168.2.14
        Jan 19, 2025 02:57:54.307349920 CET5977613566192.168.2.1483.222.100.200
        Jan 19, 2025 02:57:54.308481932 CET4074213566192.168.2.1483.222.242.226
        Jan 19, 2025 02:57:54.308737993 CET135664140283.222.38.186192.168.2.14
        Jan 19, 2025 02:57:54.308790922 CET4140213566192.168.2.1483.222.38.186
        Jan 19, 2025 02:57:54.309726954 CET135664471483.222.152.189192.168.2.14
        Jan 19, 2025 02:57:54.309772968 CET4471413566192.168.2.1483.222.152.189
        Jan 19, 2025 02:57:54.310223103 CET5045613566192.168.2.1483.222.228.181
        Jan 19, 2025 02:57:54.310779095 CET3478013566192.168.2.1483.222.75.180
        Jan 19, 2025 02:57:54.310920000 CET135665919683.222.222.157192.168.2.14
        Jan 19, 2025 02:57:54.310971975 CET5919613566192.168.2.1483.222.222.157
        Jan 19, 2025 02:57:54.311394930 CET5597813566192.168.2.1483.222.228.30
        Jan 19, 2025 02:57:54.311945915 CET3535813566192.168.2.1483.222.249.43
        Jan 19, 2025 02:57:54.312510967 CET5460013566192.168.2.1483.222.175.119
        Jan 19, 2025 02:57:54.313066959 CET5573813566192.168.2.1483.222.52.19
        Jan 19, 2025 02:57:54.313359976 CET135664074283.222.242.226192.168.2.14
        Jan 19, 2025 02:57:54.313401937 CET4074213566192.168.2.1483.222.242.226
        Jan 19, 2025 02:57:54.313617945 CET3498013566192.168.2.1483.222.71.150
        Jan 19, 2025 02:57:54.314147949 CET4652213566192.168.2.1483.222.24.203
        Jan 19, 2025 02:57:54.314696074 CET3658213566192.168.2.1483.222.19.251
        Jan 19, 2025 02:57:54.315078020 CET135665045683.222.228.181192.168.2.14
        Jan 19, 2025 02:57:54.315135002 CET5045613566192.168.2.1483.222.228.181
        Jan 19, 2025 02:57:54.315345049 CET5328813566192.168.2.1483.222.46.148
        Jan 19, 2025 02:57:54.315637112 CET135663478083.222.75.180192.168.2.14
        Jan 19, 2025 02:57:54.315680027 CET3478013566192.168.2.1483.222.75.180
        Jan 19, 2025 02:57:54.315946102 CET4831613566192.168.2.1483.222.50.147
        Jan 19, 2025 02:57:54.316232920 CET135665597883.222.228.30192.168.2.14
        Jan 19, 2025 02:57:54.316279888 CET5597813566192.168.2.1483.222.228.30
        Jan 19, 2025 02:57:54.316474915 CET4252413566192.168.2.1483.222.92.88
        Jan 19, 2025 02:57:54.316788912 CET135663535883.222.249.43192.168.2.14
        Jan 19, 2025 02:57:54.316852093 CET3535813566192.168.2.1483.222.249.43
        Jan 19, 2025 02:57:54.317037106 CET4416813566192.168.2.1483.222.77.244
        Jan 19, 2025 02:57:54.317368984 CET135665460083.222.175.119192.168.2.14
        Jan 19, 2025 02:57:54.317410946 CET5460013566192.168.2.1483.222.175.119
        Jan 19, 2025 02:57:54.317614079 CET3575413566192.168.2.1483.222.21.43
        Jan 19, 2025 02:57:54.317840099 CET135665573883.222.52.19192.168.2.14
        Jan 19, 2025 02:57:54.317881107 CET5573813566192.168.2.1483.222.52.19
        Jan 19, 2025 02:57:54.318192005 CET3737013566192.168.2.1483.222.146.8
        Jan 19, 2025 02:57:54.318494081 CET135663498083.222.71.150192.168.2.14
        Jan 19, 2025 02:57:54.318561077 CET3498013566192.168.2.1483.222.71.150
        Jan 19, 2025 02:57:54.318749905 CET4072813566192.168.2.1483.222.13.118
        Jan 19, 2025 02:57:54.319268942 CET135664652283.222.24.203192.168.2.14
        Jan 19, 2025 02:57:54.319328070 CET5652813566192.168.2.1483.222.189.89
        Jan 19, 2025 02:57:54.319338083 CET4652213566192.168.2.1483.222.24.203
        Jan 19, 2025 02:57:54.319871902 CET4008613566192.168.2.1483.222.43.162
        Jan 19, 2025 02:57:54.320432901 CET4275813566192.168.2.1483.222.119.36
        Jan 19, 2025 02:57:54.321039915 CET135663658283.222.19.251192.168.2.14
        Jan 19, 2025 02:57:54.321070910 CET135665328883.222.46.148192.168.2.14
        Jan 19, 2025 02:57:54.321077108 CET3658213566192.168.2.1483.222.19.251
        Jan 19, 2025 02:57:54.321079016 CET4875413566192.168.2.1483.222.205.39
        Jan 19, 2025 02:57:54.321108103 CET135664831683.222.50.147192.168.2.14
        Jan 19, 2025 02:57:54.321113110 CET5328813566192.168.2.1483.222.46.148
        Jan 19, 2025 02:57:54.321212053 CET4831613566192.168.2.1483.222.50.147
        Jan 19, 2025 02:57:54.321494102 CET135664252483.222.92.88192.168.2.14
        Jan 19, 2025 02:57:54.321561098 CET4252413566192.168.2.1483.222.92.88
        Jan 19, 2025 02:57:54.321710110 CET6096013566192.168.2.1483.222.155.1
        Jan 19, 2025 02:57:54.322273970 CET3983413566192.168.2.1483.222.58.226
        Jan 19, 2025 02:57:54.322299004 CET135664416883.222.77.244192.168.2.14
        Jan 19, 2025 02:57:54.322345972 CET4416813566192.168.2.1483.222.77.244
        Jan 19, 2025 02:57:54.322810888 CET3605413566192.168.2.1483.222.152.83
        Jan 19, 2025 02:57:54.323268890 CET135663575483.222.21.43192.168.2.14
        Jan 19, 2025 02:57:54.323307991 CET3575413566192.168.2.1483.222.21.43
        Jan 19, 2025 02:57:54.323415041 CET5860013566192.168.2.1483.222.173.171
        Jan 19, 2025 02:57:54.323514938 CET135663737083.222.146.8192.168.2.14
        Jan 19, 2025 02:57:54.323600054 CET3737013566192.168.2.1483.222.146.8
        Jan 19, 2025 02:57:54.323926926 CET135664072883.222.13.118192.168.2.14
        Jan 19, 2025 02:57:54.323970079 CET4072813566192.168.2.1483.222.13.118
        Jan 19, 2025 02:57:54.323968887 CET4632813566192.168.2.1483.222.78.220
        Jan 19, 2025 02:57:54.324528933 CET4098813566192.168.2.1483.222.63.128
        Jan 19, 2025 02:57:54.325083971 CET3691613566192.168.2.1483.222.111.156
        Jan 19, 2025 02:57:54.325525045 CET135665652883.222.189.89192.168.2.14
        Jan 19, 2025 02:57:54.325553894 CET135664008683.222.43.162192.168.2.14
        Jan 19, 2025 02:57:54.325572968 CET5652813566192.168.2.1483.222.189.89
        Jan 19, 2025 02:57:54.325598001 CET4008613566192.168.2.1483.222.43.162
        Jan 19, 2025 02:57:54.325659037 CET5205813566192.168.2.1483.222.216.188
        Jan 19, 2025 02:57:54.325721025 CET135664275883.222.119.36192.168.2.14
        Jan 19, 2025 02:57:54.325772047 CET4275813566192.168.2.1483.222.119.36
        Jan 19, 2025 02:57:54.326194048 CET4383013566192.168.2.1483.222.144.237
        Jan 19, 2025 02:57:54.326756001 CET5591213566192.168.2.1483.222.232.34
        Jan 19, 2025 02:57:54.326773882 CET135664875483.222.205.39192.168.2.14
        Jan 19, 2025 02:57:54.326824903 CET4875413566192.168.2.1483.222.205.39
        Jan 19, 2025 02:57:54.327290058 CET3941213566192.168.2.1483.222.245.245
        Jan 19, 2025 02:57:54.327845097 CET135666096083.222.155.1192.168.2.14
        Jan 19, 2025 02:57:54.327893972 CET6096013566192.168.2.1483.222.155.1
        Jan 19, 2025 02:57:54.327930927 CET5593213566192.168.2.1483.222.153.179
        Jan 19, 2025 02:57:54.327989101 CET135663983483.222.58.226192.168.2.14
        Jan 19, 2025 02:57:54.328018904 CET135663605483.222.152.83192.168.2.14
        Jan 19, 2025 02:57:54.328037977 CET3983413566192.168.2.1483.222.58.226
        Jan 19, 2025 02:57:54.328061104 CET3605413566192.168.2.1483.222.152.83
        Jan 19, 2025 02:57:54.328538895 CET3317213566192.168.2.1483.222.78.196
        Jan 19, 2025 02:57:54.329050064 CET5590013566192.168.2.1483.222.85.198
        Jan 19, 2025 02:57:54.329262972 CET135665860083.222.173.171192.168.2.14
        Jan 19, 2025 02:57:54.329335928 CET5860013566192.168.2.1483.222.173.171
        Jan 19, 2025 02:57:54.329560995 CET5592213566192.168.2.1483.222.232.34
        Jan 19, 2025 02:57:54.329819918 CET135664632883.222.78.220192.168.2.14
        Jan 19, 2025 02:57:54.329895973 CET4632813566192.168.2.1483.222.78.220
        Jan 19, 2025 02:57:54.330123901 CET4298413566192.168.2.1483.222.237.132
        Jan 19, 2025 02:57:54.330306053 CET135664098883.222.63.128192.168.2.14
        Jan 19, 2025 02:57:54.330337048 CET135663691683.222.111.156192.168.2.14
        Jan 19, 2025 02:57:54.330349922 CET4098813566192.168.2.1483.222.63.128
        Jan 19, 2025 02:57:54.330387115 CET3691613566192.168.2.1483.222.111.156
        Jan 19, 2025 02:57:54.330497980 CET135665205883.222.216.188192.168.2.14
        Jan 19, 2025 02:57:54.330538988 CET5205813566192.168.2.1483.222.216.188
        Jan 19, 2025 02:57:54.330688953 CET5302813566192.168.2.1483.222.36.39
        Jan 19, 2025 02:57:54.330981016 CET135664383083.222.144.237192.168.2.14
        Jan 19, 2025 02:57:54.331026077 CET4383013566192.168.2.1483.222.144.237
        Jan 19, 2025 02:57:54.331304073 CET6021813566192.168.2.1483.222.102.188
        Jan 19, 2025 02:57:54.331610918 CET135665591283.222.232.34192.168.2.14
        Jan 19, 2025 02:57:54.331656933 CET5591213566192.168.2.1483.222.232.34
        Jan 19, 2025 02:57:54.331832886 CET5043613566192.168.2.1483.222.122.20
        Jan 19, 2025 02:57:54.332102060 CET135663941283.222.245.245192.168.2.14
        Jan 19, 2025 02:57:54.332146883 CET3941213566192.168.2.1483.222.245.245
        Jan 19, 2025 02:57:54.332396030 CET4522213566192.168.2.1483.222.103.200
        Jan 19, 2025 02:57:54.333561897 CET135665593283.222.153.179192.168.2.14
        Jan 19, 2025 02:57:54.333610058 CET5593213566192.168.2.1483.222.153.179
        Jan 19, 2025 02:57:54.334158897 CET135663317283.222.78.196192.168.2.14
        Jan 19, 2025 02:57:54.334218979 CET3317213566192.168.2.1483.222.78.196
        Jan 19, 2025 02:57:54.334393024 CET135665590083.222.85.198192.168.2.14
        Jan 19, 2025 02:57:54.334423065 CET135665592283.222.232.34192.168.2.14
        Jan 19, 2025 02:57:54.334449053 CET5590013566192.168.2.1483.222.85.198
        Jan 19, 2025 02:57:54.334458113 CET5592213566192.168.2.1483.222.232.34
        Jan 19, 2025 02:57:54.334907055 CET135664298483.222.237.132192.168.2.14
        Jan 19, 2025 02:57:54.334954023 CET4298413566192.168.2.1483.222.237.132
        Jan 19, 2025 02:57:54.335480928 CET135665302883.222.36.39192.168.2.14
        Jan 19, 2025 02:57:54.335537910 CET5302813566192.168.2.1483.222.36.39
        Jan 19, 2025 02:57:54.336154938 CET135666021883.222.102.188192.168.2.14
        Jan 19, 2025 02:57:54.336277962 CET6021813566192.168.2.1483.222.102.188
        Jan 19, 2025 02:57:54.336716890 CET135665043683.222.122.20192.168.2.14
        Jan 19, 2025 02:57:54.336766005 CET5043613566192.168.2.1483.222.122.20
        Jan 19, 2025 02:57:54.337151051 CET135664522283.222.103.200192.168.2.14
        Jan 19, 2025 02:57:54.337207079 CET4522213566192.168.2.1483.222.103.200
        Jan 19, 2025 02:57:54.345746994 CET5653613566192.168.2.1483.222.191.90
        Jan 19, 2025 02:57:54.350622892 CET135665653683.222.191.90192.168.2.14
        Jan 19, 2025 02:57:54.350692987 CET5653613566192.168.2.1483.222.191.90
        Jan 19, 2025 02:57:54.351435900 CET5653613566192.168.2.1483.222.191.90
        Jan 19, 2025 02:57:54.356303930 CET135665653683.222.191.90192.168.2.14
        Jan 19, 2025 02:57:54.356465101 CET5653613566192.168.2.1483.222.191.90
        Jan 19, 2025 02:57:54.361278057 CET135665653683.222.191.90192.168.2.14
        Jan 19, 2025 02:58:03.235112906 CET46540443192.168.2.14185.125.190.26
        Jan 19, 2025 02:58:04.361233950 CET5653613566192.168.2.1483.222.191.90
        Jan 19, 2025 02:58:04.366369963 CET135665653683.222.191.90192.168.2.14
        Jan 19, 2025 02:58:04.566375017 CET135665653683.222.191.90192.168.2.14
        Jan 19, 2025 02:58:04.566687107 CET5653613566192.168.2.1483.222.191.90
        Jan 19, 2025 02:58:04.930732965 CET135665653683.222.191.90192.168.2.14
        Jan 19, 2025 02:58:04.931170940 CET5653613566192.168.2.1483.222.191.90
        Jan 19, 2025 02:58:34.722166061 CET46540443192.168.2.14185.125.190.26
        Jan 19, 2025 02:59:04.985157967 CET5653613566192.168.2.1483.222.191.90
        Jan 19, 2025 02:59:04.989962101 CET135665653683.222.191.90192.168.2.14
        Jan 19, 2025 02:59:05.188169956 CET135665653683.222.191.90192.168.2.14
        Jan 19, 2025 02:59:05.188277006 CET5653613566192.168.2.1483.222.191.90
        Jan 19, 2025 02:59:05.930504084 CET135665653683.222.191.90192.168.2.14
        Jan 19, 2025 02:59:05.930752039 CET5653613566192.168.2.1483.222.191.90
        TimestampSource PortDest PortSource IPDest IP
        Jan 19, 2025 02:57:54.334687948 CET3971153192.168.2.148.8.8.8
        Jan 19, 2025 02:57:54.344971895 CET53397118.8.8.8192.168.2.14
        TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
        Jan 19, 2025 02:57:54.334687948 CET192.168.2.148.8.8.80x519bStandard query (0)secure-network-rebirthltd.ruA (IP address)IN (0x0001)false
        TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
        Jan 19, 2025 02:57:54.344971895 CET8.8.8.8192.168.2.140x519bNo error (0)secure-network-rebirthltd.ru83.222.191.90A (IP address)IN (0x0001)false

        System Behavior

        Start time (UTC):01:57:53
        Start date (UTC):19/01/2025
        Path:/tmp/loki.m68k.elf
        Arguments:/tmp/loki.m68k.elf
        File size:4463432 bytes
        MD5 hash:cd177594338c77b895ae27c33f8f86cc

        Start time (UTC):01:57:53
        Start date (UTC):19/01/2025
        Path:/tmp/loki.m68k.elf
        Arguments:-
        File size:4463432 bytes
        MD5 hash:cd177594338c77b895ae27c33f8f86cc

        Start time (UTC):01:57:53
        Start date (UTC):19/01/2025
        Path:/tmp/loki.m68k.elf
        Arguments:-
        File size:4463432 bytes
        MD5 hash:cd177594338c77b895ae27c33f8f86cc