Edit tour

Linux Analysis Report
sync.mipsel.elf

Overview

General Information

Sample name:sync.mipsel.elf
Analysis ID:1642592
MD5:fc7c52e33e3799e7812a5219e6cd940f
SHA1:8bd768ae5b18ebc20607a2e1b119bdb91d5820c6
SHA256:357fb15fbe4c79ecee5fb7a0b0f889afc254badfe1c6b3ccb4fc600c57b22410
Tags:elfuser-abuse_ch
Infos:

Detection

Score:64
Range:0 - 100

Signatures

Multi AV Scanner detection for submitted file
Suricata IDS alerts for network traffic
Performs DNS TXT record lookups
Sample deletes itself
Detected TCP or UDP traffic on non-standard ports
Sample has stripped symbol table
Sleeps for long times indicative of sandbox evasion
Tries to connect to HTTP servers, but all servers are down (expired dropper behavior)
Tries to resolve domain names, but no domain seems valid (expired dropper behavior)
Uses the "uname" system call to query kernel version information (possible evasion)

Classification

RansomwareSpreadingPhishingBankerTrojan / BotAdwareSpywareExploiterEvaderMinercleansuspiciousmalicious
Joe Sandbox version:42.0.0 Malachite
Analysis ID:1642592
Start date and time:2025-03-19 08:24:37 +01:00
Joe Sandbox product:CloudBasic
Overall analysis duration:0h 4m 27s
Hypervisor based Inspection enabled:false
Report type:full
Cookbook file name:defaultlinuxfilecookbook.jbs
Analysis system description:Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11)
Analysis Mode:default
Sample name:sync.mipsel.elf
Detection:MAL
Classification:mal64.evad.linELF@0/0@78/0
Command:/tmp/sync.mipsel.elf
PID:5429
Exit Code:1
Exit Code Info:
Killed:False
Standard Output:
sync
Standard Error:
  • system is lnxubuntu20
  • cleanup
No yara matches
TimestampSIDSeverityClasstypeSource IPSource PortDestination IPDestination PortProtocol
2025-03-19T08:26:11.666606+010020135141A Network Trojan was detected192.168.2.13547101.1.1.153UDP

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: sync.mipsel.elfVirustotal: Detection: 44%Perma Link
Source: sync.mipsel.elfReversingLabs: Detection: 47%

Networking

barindex
Source: Network trafficSuricata IDS: 2013514 - Severity 1 - ET MALWARE Potential DNS Command and Control via TXT queries : 192.168.2.13:54710 -> 1.1.1.1:53
Source: global trafficTCP traffic: 192.168.2.13:54290 -> 185.194.205.79:61005
Source: global trafficTCP traffic: 192.168.2.13:48202 -> 185.125.190.26:443
Source: unknownDNS traffic detected: query: dnsresolve.socialgains.cf replaycode: Name error (3)
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.125.190.26
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.125.190.26
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: global trafficDNS traffic detected: DNS query: dnsresolve.socialgains.cf
Source: unknownNetwork traffic detected: HTTP traffic on port 48202 -> 443
Source: ELF static info symbol of initial sample.symtab present: no
Source: classification engineClassification label: mal64.evad.linELF@0/0@78/0

Hooking and other Techniques for Hiding and Protection

barindex
Source: /tmp/sync.mipsel.elf (PID: 5429)File: /tmp/sync.mipsel.elfJump to behavior
Source: /tmp/sync.mipsel.elf (PID: 5433)Sleeps longer then 60s: 60.0sJump to behavior
Source: /tmp/sync.mipsel.elf (PID: 5433)Sleeps longer then 60s: 60.0sJump to behavior
Source: /tmp/sync.mipsel.elf (PID: 5429)Queries kernel information via 'uname': Jump to behavior
Source: sync.mipsel.elf, 5429.1.00007ffc5e769000.00007ffc5e78a000.rw-.sdmpBinary or memory string: x86_64/usr/bin/qemu-mipsel/tmp/sync.mipsel.elfSUDO_USER=saturninoPATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:/snap/binDISPLAY=:1.0XAUTHORITY=/run/user/1000/gdm/XauthoritySUDO_UID=1000TERM=xterm-256colorCOLORTERM=truecolorLOGNAME=rootUSER=rootLANG=en_US.UTF-8SUDO_COMMAND=/bin/bashHOME=/rootMAIL=/var/mail/rootSUDO_GID=1000SHELL=/bin/bash/tmp/sync.mipsel.elf
Source: sync.mipsel.elf, 5429.1.000055cc04867000.000055cc048ee000.rw-.sdmpBinary or memory string: /etc/qemu-binfmt/mipsel
Source: sync.mipsel.elf, 5429.1.000055cc04867000.000055cc048ee000.rw-.sdmpBinary or memory string: U!/etc/qemu-binfmt/mipsel
Source: sync.mipsel.elf, 5429.1.00007ffc5e769000.00007ffc5e78a000.rw-.sdmpBinary or memory string: /usr/bin/qemu-mipsel

HIPS / PFW / Operating System Protection Evasion

barindex
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath InterceptionPath Interception1
Virtualization/Sandbox Evasion
OS Credential Dumping11
Security Software Discovery
Remote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization Scripts1
File Deletion
LSASS Memory1
Virtualization/Sandbox Evasion
Remote Desktop ProtocolData from Removable Media1
Non-Standard Port
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive1
Non-Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture2
Application Layer Protocol
Traffic DuplicationData Destruction
No configs have been found
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Number of created Files
  • Is malicious
  • Internet
behaviorgraph top1 dnsIp2 2 Behavior Graph ID: 1642592 Sample: sync.mipsel.elf Startdate: 19/03/2025 Architecture: LINUX Score: 64 15 dnsresolve.socialgains.cf 2->15 17 185.194.205.79, 54290, 54292, 54294 HTSENSEFR France 2->17 19 185.125.190.26, 443 CANONICAL-ASGB United Kingdom 2->19 21 Suricata IDS alerts for network traffic 2->21 23 Multi AV Scanner detection for submitted file 2->23 8 sync.mipsel.elf 2->8         started        signatures3 25 Performs DNS TXT record lookups 15->25 process4 signatures5 27 Sample deletes itself 8->27 11 sync.mipsel.elf 8->11         started        process6 process7 13 sync.mipsel.elf 11->13         started       
SourceDetectionScannerLabelLink
sync.mipsel.elf44%VirustotalBrowse
sync.mipsel.elf47%ReversingLabsLinux.Backdoor.Mirai
No Antivirus matches
No Antivirus matches
No Antivirus matches

Download Network PCAP: filteredfull

NameIPActiveMaliciousAntivirus DetectionReputation
dnsresolve.socialgains.cf
unknown
unknownfalse
    high
    • No. of IPs < 25%
    • 25% < No. of IPs < 50%
    • 50% < No. of IPs < 75%
    • 75% < No. of IPs
    IPDomainCountryFlagASNASN NameMalicious
    185.194.205.79
    unknownFrance
    204145HTSENSEFRfalse
    185.125.190.26
    unknownUnited Kingdom
    41231CANONICAL-ASGBfalse
    MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
    185.194.205.79sync.arm5.elfGet hashmaliciousUnknownBrowse
      sync.arm7.elfGet hashmaliciousUnknownBrowse
        sync.sparc.elfGet hashmaliciousUnknownBrowse
          sync.powerpc.elfGet hashmaliciousUnknownBrowse
            sync.superh.elfGet hashmaliciousUnknownBrowse
              sync.sh4.elfGet hashmaliciousUnknownBrowse
                sync.arm7.elfGet hashmaliciousUnknownBrowse
                  sync.arm5.elfGet hashmaliciousUnknownBrowse
                    sync.arm4.elfGet hashmaliciousUnknownBrowse
                      sync.x86_64.elfGet hashmaliciousUnknownBrowse
                        185.125.190.26na.elfGet hashmaliciousPrometeiBrowse
                          arm6.elfGet hashmaliciousUnknownBrowse
                            na.elfGet hashmaliciousPrometeiBrowse
                              Federalx86Agent.elfGet hashmaliciousMiraiBrowse
                                mpsl.elfGet hashmaliciousUnknownBrowse
                                  FederalppcAgent.elfGet hashmaliciousMiraiBrowse
                                    na.elfGet hashmaliciousPrometeiBrowse
                                      Mozi.m.elfGet hashmaliciousMiraiBrowse
                                        na.elfGet hashmaliciousPrometeiBrowse
                                          2gkeFl1jcj.elfGet hashmaliciousUnknownBrowse
                                            No context
                                            MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                            CANONICAL-ASGBna.elfGet hashmaliciousPrometeiBrowse
                                            • 91.189.91.42
                                            na.elfGet hashmaliciousPrometeiBrowse
                                            • 91.189.91.42
                                            sync.powerpc.elfGet hashmaliciousUnknownBrowse
                                            • 91.189.91.42
                                            sync.arm6.elfGet hashmaliciousUnknownBrowse
                                            • 91.189.91.42
                                            na.elfGet hashmaliciousPrometeiBrowse
                                            • 91.189.91.42
                                            na.elfGet hashmaliciousPrometeiBrowse
                                            • 91.189.91.42
                                            na.elfGet hashmaliciousPrometeiBrowse
                                            • 91.189.91.42
                                            na.elfGet hashmaliciousPrometeiBrowse
                                            • 91.189.91.42
                                            na.elfGet hashmaliciousPrometeiBrowse
                                            • 91.189.91.42
                                            miner.elfGet hashmaliciousUnknownBrowse
                                            • 91.189.91.42
                                            HTSENSEFRsync.arm5.elfGet hashmaliciousUnknownBrowse
                                            • 185.194.205.79
                                            sync.arm7.elfGet hashmaliciousUnknownBrowse
                                            • 185.194.205.79
                                            sync.sparc.elfGet hashmaliciousUnknownBrowse
                                            • 185.194.205.79
                                            sync.powerpc.elfGet hashmaliciousUnknownBrowse
                                            • 185.194.205.79
                                            sync.superh.elfGet hashmaliciousUnknownBrowse
                                            • 185.194.205.79
                                            sync.sh4.elfGet hashmaliciousUnknownBrowse
                                            • 185.194.205.79
                                            sync.arm7.elfGet hashmaliciousUnknownBrowse
                                            • 185.194.205.79
                                            sync.arm5.elfGet hashmaliciousUnknownBrowse
                                            • 185.194.205.79
                                            sync.arm4.elfGet hashmaliciousUnknownBrowse
                                            • 185.194.205.79
                                            sync.x86_64.elfGet hashmaliciousUnknownBrowse
                                            • 185.194.205.79
                                            No context
                                            No context
                                            No created / dropped files found
                                            File type:ELF 32-bit LSB executable, MIPS, MIPS-I version 1 (SYSV), statically linked, stripped
                                            Entropy (8bit):5.528605586616238
                                            TrID:
                                            • ELF Executable and Linkable format (generic) (4004/1) 100.00%
                                            File name:sync.mipsel.elf
                                            File size:80'468 bytes
                                            MD5:fc7c52e33e3799e7812a5219e6cd940f
                                            SHA1:8bd768ae5b18ebc20607a2e1b119bdb91d5820c6
                                            SHA256:357fb15fbe4c79ecee5fb7a0b0f889afc254badfe1c6b3ccb4fc600c57b22410
                                            SHA512:dba25ddc5ca4e1ffc842fcb46e2e7afc5391aafc6710c3726124c6833a9c357f2097d14fc6312ac07004321bdcced19b3a7695dc840f8c98f9095225733f504c
                                            SSDEEP:1536:yGDlE8TlC7MDATdq2Qe1l162DNauaeYCFfovcFgZ7D+GMcnoihYl:vpsX62Jaua5EFgzoihY
                                            TLSH:B173C81AAFA00FFBE86FCD3705E84B0539CC650A12F53B357A39C918B65B15B4AE3854
                                            File Content Preview:.ELF....................`.@.4...t8......4. ...(...............@...@..0...0...............0...0E..0E.....|...........Q.td...............................<...'!......'.......................<...'!... .........9'.. ........................<...'!...........@.9

                                            ELF header

                                            Class:ELF32
                                            Data:2's complement, little endian
                                            Version:1 (current)
                                            Machine:MIPS R3000
                                            Version Number:0x1
                                            Type:EXEC (Executable file)
                                            OS/ABI:UNIX - System V
                                            ABI Version:0
                                            Entry Point Address:0x400260
                                            Flags:0x1007
                                            ELF Header Size:52
                                            Program Header Offset:52
                                            Program Header Size:32
                                            Number of Program Headers:3
                                            Section Header Offset:79988
                                            Section Header Size:40
                                            Number of Section Headers:12
                                            Header String Table Index:11
                                            NameTypeAddressOffsetSizeEntSizeFlagsFlags DescriptionLinkInfoAlign
                                            NULL0x00x00x00x00x0000
                                            .initPROGBITS0x4000940x940x8c0x00x6AX004
                                            .textPROGBITS0x4001200x1200x112900x00x6AX0016
                                            .finiPROGBITS0x4113b00x113b00x5c0x00x6AX004
                                            .rodataPROGBITS0x4114100x114100x1c000x00x2A0016
                                            .ctorsPROGBITS0x4530140x130140x80x00x3WA004
                                            .dtorsPROGBITS0x45301c0x1301c0x80x00x3WA004
                                            .dataPROGBITS0x4530300x130300x4500x00x3WA0016
                                            .gotPROGBITS0x4534800x134800x3a80x40x10000003WAp0016
                                            .sbssNOBITS0x4538280x138280xc0x00x10000003WAp004
                                            .bssNOBITS0x4538400x138280xa3500x00x3WA0016
                                            .shstrtabSTRTAB0x00x138280x490x00x0001
                                            TypeOffsetVirtual AddressPhysical AddressFile SizeMemory SizeEntropyFlagsFlags DescriptionAlignProg InterpreterSection Mappings
                                            LOAD0x00x4000000x4000000x130100x130105.54930x5R E0x10000.init .text .fini .rodata
                                            LOAD0x130140x4530140x4530140x8140xab7c4.17490x6RW 0x10000.ctors .dtors .data .got .sbss .bss
                                            GNU_STACK0x00x00x00x00x00.00000x7RWE0x4

                                            Download Network PCAP: filteredfull

                                            TimestampSIDSignatureSeveritySource IPSource PortDest IPDest PortProtocol
                                            2025-03-19T08:26:11.666606+01002013514ET MALWARE Potential DNS Command and Control via TXT queries1192.168.2.13547101.1.1.153UDP
                                            • Total Packets: 145
                                            • 61005 undefined
                                            • 443 (HTTPS)
                                            • 53 (DNS)
                                            TimestampSource PortDest PortSource IPDest IP
                                            Mar 19, 2025 08:25:24.492185116 CET5429061005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:24.497081041 CET6100554290185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:24.497148991 CET5429061005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:24.497282982 CET5429061005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:24.501926899 CET6100554290185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:26.271761894 CET6100554290185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:26.272109985 CET5429061005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:26.276952982 CET6100554290185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:27.762121916 CET48202443192.168.2.13185.125.190.26
                                            Mar 19, 2025 08:25:33.406172037 CET5429261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:33.411051035 CET6100554292185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:33.411191940 CET5429261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:33.411191940 CET5429261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:33.415844917 CET6100554292185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:35.194916010 CET6100554292185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:35.195482969 CET5429261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:35.201946020 CET6100554292185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:41.507410049 CET5429461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:41.512136936 CET6100554294185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:41.512211084 CET5429461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:41.512259007 CET5429461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:41.516870975 CET6100554294185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:43.301774979 CET6100554294185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:43.302190065 CET5429461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:43.302294970 CET5429461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:43.307025909 CET6100554294185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:49.625695944 CET5429661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:49.630647898 CET6100554296185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:49.630768061 CET5429661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:49.630846977 CET5429661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:49.635492086 CET6100554296185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:49.635550022 CET5429661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:49.640218019 CET6100554296185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:51.427839041 CET6100554296185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:51.428122997 CET5429661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:51.432909966 CET6100554296185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:57.744223118 CET5429861005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:57.749072075 CET6100554298185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:57.749206066 CET5429861005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:57.749237061 CET5429861005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:57.754865885 CET6100554298185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:58.738136053 CET48202443192.168.2.13185.125.190.26
                                            Mar 19, 2025 08:25:59.520781040 CET6100554298185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:25:59.521121025 CET5429861005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:25:59.525808096 CET6100554298185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:05.762909889 CET5430061005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:05.767709970 CET6100554300185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:05.767755985 CET5430061005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:05.767772913 CET5430061005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:05.772414923 CET6100554300185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:07.574486017 CET6100554300185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:07.574698925 CET5430061005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:07.579385996 CET6100554300185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:13.919106007 CET5430261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:13.923820972 CET6100554302185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:13.923881054 CET5430261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:13.923927069 CET5430261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:13.928569078 CET6100554302185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:15.709943056 CET6100554302185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:15.710201025 CET5430261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:15.715755939 CET6100554302185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:22.021876097 CET5430461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:22.026700020 CET6100554304185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:22.026834011 CET5430461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:22.026834011 CET5430461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:22.031482935 CET6100554304185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:22.031547070 CET5430461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:22.036206961 CET6100554304185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:23.802783012 CET6100554304185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:23.803136110 CET5430461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:23.807898998 CET6100554304185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:30.035228968 CET5430661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:30.040045023 CET6100554306185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:30.040127039 CET5430661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:30.040175915 CET5430661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:30.044915915 CET6100554306185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:31.819200039 CET6100554306185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:31.819499016 CET5430661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:31.824233055 CET6100554306185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:38.052711010 CET5430861005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:38.057456017 CET6100554308185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:38.057750940 CET5430861005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:38.057751894 CET5430861005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:38.062390089 CET6100554308185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:39.819211960 CET6100554308185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:39.819629908 CET5430861005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:39.824548006 CET6100554308185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:46.064748049 CET5431061005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:46.069668055 CET6100554310185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:46.069736958 CET5431061005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:46.069777966 CET5431061005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:46.074363947 CET6100554310185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:47.850640059 CET6100554310185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:47.850914955 CET5431061005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:47.855695009 CET6100554310185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:54.826977015 CET5431261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:54.831831932 CET6100554312185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:54.831912994 CET5431261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:54.831975937 CET5431261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:54.836608887 CET6100554312185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:54.836671114 CET5431261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:54.841278076 CET6100554312185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:56.624505997 CET6100554312185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:26:56.624675035 CET5431261005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:26:56.629595041 CET6100554312185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:02.880064964 CET5431461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:02.991094112 CET6100554314185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:02.991386890 CET5431461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:02.991499901 CET5431461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:02.996130943 CET6100554314185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:04.803812981 CET6100554314185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:04.804095030 CET5431461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:05.004019976 CET6100554314185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:05.004246950 CET5431461005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:05.004592896 CET6100554314185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:11.009145975 CET5431661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:11.014246941 CET6100554316185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:11.014337063 CET5431661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:11.014337063 CET5431661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:11.019063950 CET6100554316185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:12.805169106 CET6100554316185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:12.805495024 CET5431661005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:12.810395002 CET6100554316185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:19.023916006 CET5431861005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:19.028791904 CET6100554318185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:19.028915882 CET5431861005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:19.028961897 CET5431861005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:19.033727884 CET6100554318185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:20.805165052 CET6100554318185.194.205.79192.168.2.13
                                            Mar 19, 2025 08:27:20.805543900 CET5431861005192.168.2.13185.194.205.79
                                            Mar 19, 2025 08:27:20.810317039 CET6100554318185.194.205.79192.168.2.13
                                            TimestampSource PortDest PortSource IPDest IP
                                            Mar 19, 2025 08:25:19.018809080 CET5299953192.168.2.138.8.4.4
                                            Mar 19, 2025 08:25:19.034650087 CET53529998.8.4.4192.168.2.13
                                            Mar 19, 2025 08:25:20.051840067 CET5425553192.168.2.131.0.0.1
                                            Mar 19, 2025 08:25:20.153858900 CET53542551.0.0.1192.168.2.13
                                            Mar 19, 2025 08:25:21.158535957 CET4018953192.168.2.131.0.0.1
                                            Mar 19, 2025 08:25:21.269345045 CET53401891.0.0.1192.168.2.13
                                            Mar 19, 2025 08:25:22.272031069 CET3796253192.168.2.131.1.1.1
                                            Mar 19, 2025 08:25:22.373862028 CET53379621.1.1.1192.168.2.13
                                            Mar 19, 2025 08:25:23.377063990 CET4847853192.168.2.131.0.0.1
                                            Mar 19, 2025 08:25:23.489438057 CET53484781.0.0.1192.168.2.13
                                            Mar 19, 2025 08:25:27.274961948 CET4447353192.168.2.138.8.8.8
                                            Mar 19, 2025 08:25:28.293140888 CET53444738.8.8.8192.168.2.13
                                            Mar 19, 2025 08:25:29.296514034 CET5120053192.168.2.138.8.8.8
                                            Mar 19, 2025 08:25:29.324786901 CET53512008.8.8.8192.168.2.13
                                            Mar 19, 2025 08:25:30.328883886 CET4266553192.168.2.131.0.0.1
                                            Mar 19, 2025 08:25:30.353445053 CET53426651.0.0.1192.168.2.13
                                            Mar 19, 2025 08:25:31.358866930 CET4672853192.168.2.138.8.8.8
                                            Mar 19, 2025 08:25:31.374372959 CET53467288.8.8.8192.168.2.13
                                            Mar 19, 2025 08:25:32.377197027 CET5845253192.168.2.138.8.4.4
                                            Mar 19, 2025 08:25:32.402944088 CET53584528.8.4.4192.168.2.13
                                            Mar 19, 2025 08:25:36.198951960 CET5137853192.168.2.138.8.8.8
                                            Mar 19, 2025 08:25:36.214978933 CET53513788.8.8.8192.168.2.13
                                            Mar 19, 2025 08:25:37.218375921 CET4335453192.168.2.138.8.4.4
                                            Mar 19, 2025 08:25:37.233217001 CET53433548.8.4.4192.168.2.13
                                            Mar 19, 2025 08:25:38.236969948 CET5531953192.168.2.131.1.1.1
                                            Mar 19, 2025 08:25:38.339390039 CET53553191.1.1.1192.168.2.13
                                            Mar 19, 2025 08:25:39.343477964 CET3717453192.168.2.131.0.0.1
                                            Mar 19, 2025 08:25:39.474724054 CET53371741.0.0.1192.168.2.13
                                            Mar 19, 2025 08:25:40.478404045 CET5379653192.168.2.131.0.0.1
                                            Mar 19, 2025 08:25:40.504975080 CET53537961.0.0.1192.168.2.13
                                            Mar 19, 2025 08:25:44.306217909 CET5842753192.168.2.131.1.1.1
                                            Mar 19, 2025 08:25:44.424962044 CET53584271.1.1.1192.168.2.13
                                            Mar 19, 2025 08:25:45.428209066 CET5750253192.168.2.131.0.0.1
                                            Mar 19, 2025 08:25:45.559140921 CET53575021.0.0.1192.168.2.13
                                            Mar 19, 2025 08:25:46.562171936 CET5474753192.168.2.138.8.4.4
                                            Mar 19, 2025 08:25:46.577697039 CET53547478.8.4.4192.168.2.13
                                            Mar 19, 2025 08:25:47.581048012 CET6068753192.168.2.138.8.8.8
                                            Mar 19, 2025 08:25:47.595838070 CET53606878.8.8.8192.168.2.13
                                            Mar 19, 2025 08:25:48.598660946 CET3299253192.168.2.131.0.0.1
                                            Mar 19, 2025 08:25:48.623440027 CET53329921.0.0.1192.168.2.13
                                            Mar 19, 2025 08:25:52.430852890 CET3493053192.168.2.138.8.4.4
                                            Mar 19, 2025 08:25:52.447443962 CET53349308.8.4.4192.168.2.13
                                            Mar 19, 2025 08:25:53.450119972 CET4623153192.168.2.138.8.4.4
                                            Mar 19, 2025 08:25:53.478550911 CET53462318.8.4.4192.168.2.13
                                            Mar 19, 2025 08:25:54.481729031 CET6041953192.168.2.138.8.8.8
                                            Mar 19, 2025 08:25:54.681600094 CET53604198.8.8.8192.168.2.13
                                            Mar 19, 2025 08:25:55.684998035 CET3710853192.168.2.138.8.8.8
                                            Mar 19, 2025 08:25:55.713738918 CET53371088.8.8.8192.168.2.13
                                            Mar 19, 2025 08:25:56.717004061 CET5775353192.168.2.131.0.0.1
                                            Mar 19, 2025 08:25:56.741348028 CET53577531.0.0.1192.168.2.13
                                            Mar 19, 2025 08:26:00.523838997 CET3367053192.168.2.138.8.4.4
                                            Mar 19, 2025 08:26:00.552764893 CET53336708.8.4.4192.168.2.13
                                            Mar 19, 2025 08:26:01.556191921 CET4047553192.168.2.138.8.8.8
                                            Mar 19, 2025 08:26:01.571640015 CET53404758.8.8.8192.168.2.13
                                            Mar 19, 2025 08:26:02.574420929 CET4783553192.168.2.138.8.4.4
                                            Mar 19, 2025 08:26:02.604516983 CET53478358.8.4.4192.168.2.13
                                            Mar 19, 2025 08:26:03.607646942 CET4756753192.168.2.131.0.0.1
                                            Mar 19, 2025 08:26:03.632373095 CET53475671.0.0.1192.168.2.13
                                            Mar 19, 2025 08:26:04.635528088 CET4583553192.168.2.131.0.0.1
                                            Mar 19, 2025 08:26:04.760411024 CET53458351.0.0.1192.168.2.13
                                            Mar 19, 2025 08:26:08.577337027 CET3906353192.168.2.138.8.8.8
                                            Mar 19, 2025 08:26:08.603683949 CET53390638.8.8.8192.168.2.13
                                            Mar 19, 2025 08:26:09.607866049 CET4622153192.168.2.131.0.0.1
                                            Mar 19, 2025 08:26:09.632626057 CET53462211.0.0.1192.168.2.13
                                            Mar 19, 2025 08:26:10.635984898 CET3771253192.168.2.131.0.0.1
                                            Mar 19, 2025 08:26:10.662870884 CET53377121.0.0.1192.168.2.13
                                            Mar 19, 2025 08:26:11.666605949 CET5471053192.168.2.131.1.1.1
                                            Mar 19, 2025 08:26:11.779213905 CET53547101.1.1.1192.168.2.13
                                            Mar 19, 2025 08:26:12.782782078 CET5182553192.168.2.131.0.0.1
                                            Mar 19, 2025 08:26:12.916479111 CET53518251.0.0.1192.168.2.13
                                            Mar 19, 2025 08:26:16.712660074 CET3484853192.168.2.131.1.1.1
                                            Mar 19, 2025 08:26:16.737448931 CET53348481.1.1.1192.168.2.13
                                            Mar 19, 2025 08:26:17.741275072 CET3334053192.168.2.138.8.4.4
                                            Mar 19, 2025 08:26:17.757356882 CET53333408.8.4.4192.168.2.13
                                            Mar 19, 2025 08:26:18.760188103 CET6099353192.168.2.131.1.1.1
                                            Mar 19, 2025 08:26:18.864450932 CET53609931.1.1.1192.168.2.13
                                            Mar 19, 2025 08:26:19.866559029 CET4004653192.168.2.131.0.0.1
                                            Mar 19, 2025 08:26:19.988652945 CET53400461.0.0.1192.168.2.13
                                            Mar 19, 2025 08:26:20.992889881 CET4427453192.168.2.131.1.1.1
                                            Mar 19, 2025 08:26:21.019334078 CET53442741.1.1.1192.168.2.13
                                            Mar 19, 2025 08:26:24.807389021 CET5494453192.168.2.138.8.4.4
                                            Mar 19, 2025 08:26:24.822668076 CET53549448.8.4.4192.168.2.13
                                            Mar 19, 2025 08:26:25.826965094 CET6065853192.168.2.138.8.8.8
                                            Mar 19, 2025 08:26:25.841901064 CET53606588.8.8.8192.168.2.13
                                            Mar 19, 2025 08:26:26.845985889 CET5642853192.168.2.131.1.1.1
                                            Mar 19, 2025 08:26:26.871229887 CET53564281.1.1.1192.168.2.13
                                            Mar 19, 2025 08:26:27.875499964 CET4593853192.168.2.138.8.4.4
                                            Mar 19, 2025 08:26:27.890763044 CET53459388.8.4.4192.168.2.13
                                            Mar 19, 2025 08:26:28.894686937 CET4514153192.168.2.131.0.0.1
                                            Mar 19, 2025 08:26:29.032025099 CET53451411.0.0.1192.168.2.13
                                            Mar 19, 2025 08:26:32.822709084 CET5702853192.168.2.131.1.1.1
                                            Mar 19, 2025 08:26:32.956155062 CET53570281.1.1.1192.168.2.13
                                            Mar 19, 2025 08:26:33.958726883 CET4164053192.168.2.138.8.4.4
                                            Mar 19, 2025 08:26:33.973824978 CET53416408.8.4.4192.168.2.13
                                            Mar 19, 2025 08:26:34.976218939 CET3522353192.168.2.138.8.8.8
                                            Mar 19, 2025 08:26:35.002779007 CET53352238.8.8.8192.168.2.13
                                            Mar 19, 2025 08:26:36.006448984 CET3351053192.168.2.131.1.1.1
                                            Mar 19, 2025 08:26:36.032928944 CET53335101.1.1.1192.168.2.13
                                            Mar 19, 2025 08:26:37.035167933 CET4349553192.168.2.138.8.4.4
                                            Mar 19, 2025 08:26:37.050959110 CET53434958.8.4.4192.168.2.13
                                            Mar 19, 2025 08:26:40.823115110 CET6020953192.168.2.138.8.4.4
                                            Mar 19, 2025 08:26:40.851231098 CET53602098.8.4.4192.168.2.13
                                            Mar 19, 2025 08:26:41.854568005 CET5656053192.168.2.138.8.4.4
                                            Mar 19, 2025 08:26:41.870640993 CET53565608.8.4.4192.168.2.13
                                            Mar 19, 2025 08:26:42.873613119 CET5936053192.168.2.131.0.0.1
                                            Mar 19, 2025 08:26:43.001488924 CET53593601.0.0.1192.168.2.13
                                            Mar 19, 2025 08:26:44.005295038 CET3427153192.168.2.131.1.1.1
                                            Mar 19, 2025 08:26:44.030642033 CET53342711.1.1.1192.168.2.13
                                            Mar 19, 2025 08:26:45.033622980 CET4262953192.168.2.138.8.8.8
                                            Mar 19, 2025 08:26:45.062371969 CET53426298.8.8.8192.168.2.13
                                            Mar 19, 2025 08:26:48.853620052 CET3979353192.168.2.131.0.0.1
                                            Mar 19, 2025 08:26:48.878911972 CET53397931.0.0.1192.168.2.13
                                            Mar 19, 2025 08:26:49.882148027 CET6009153192.168.2.131.1.1.1
                                            Mar 19, 2025 08:26:49.908068895 CET53600911.1.1.1192.168.2.13
                                            Mar 19, 2025 08:26:50.911288023 CET3803053192.168.2.138.8.8.8
                                            Mar 19, 2025 08:26:50.925856113 CET53380308.8.8.8192.168.2.13
                                            Mar 19, 2025 08:26:51.927968025 CET5156453192.168.2.138.8.4.4
                                            Mar 19, 2025 08:26:52.064063072 CET53515648.8.4.4192.168.2.13
                                            Mar 19, 2025 08:26:53.069411039 CET3716153192.168.2.138.8.8.8
                                            Mar 19, 2025 08:26:53.824439049 CET53371618.8.8.8192.168.2.13
                                            Mar 19, 2025 08:26:57.627484083 CET4976953192.168.2.138.8.8.8
                                            Mar 19, 2025 08:26:57.656727076 CET53497698.8.8.8192.168.2.13
                                            Mar 19, 2025 08:26:58.659651041 CET4459253192.168.2.131.1.1.1
                                            Mar 19, 2025 08:26:58.795990944 CET53445921.1.1.1192.168.2.13
                                            Mar 19, 2025 08:26:59.798847914 CET3463953192.168.2.138.8.8.8
                                            Mar 19, 2025 08:26:59.827542067 CET53346398.8.8.8192.168.2.13
                                            Mar 19, 2025 08:27:00.830420971 CET5858353192.168.2.138.8.4.4
                                            Mar 19, 2025 08:27:00.845994949 CET53585838.8.4.4192.168.2.13
                                            Mar 19, 2025 08:27:01.848591089 CET5582753192.168.2.138.8.8.8
                                            Mar 19, 2025 08:27:01.877615929 CET53558278.8.8.8192.168.2.13
                                            Mar 19, 2025 08:27:05.808125019 CET4382953192.168.2.138.8.8.8
                                            Mar 19, 2025 08:27:05.823699951 CET53438298.8.8.8192.168.2.13
                                            Mar 19, 2025 08:27:06.826926947 CET3843353192.168.2.138.8.8.8
                                            Mar 19, 2025 08:27:06.846990108 CET53384338.8.8.8192.168.2.13
                                            Mar 19, 2025 08:27:07.850543022 CET5412053192.168.2.138.8.4.4
                                            Mar 19, 2025 08:27:07.866374016 CET53541208.8.4.4192.168.2.13
                                            Mar 19, 2025 08:27:08.870975971 CET3688053192.168.2.131.0.0.1
                                            Mar 19, 2025 08:27:08.975087881 CET53368801.0.0.1192.168.2.13
                                            Mar 19, 2025 08:27:09.979368925 CET3389853192.168.2.131.1.1.1
                                            Mar 19, 2025 08:27:10.005820036 CET53338981.1.1.1192.168.2.13
                                            Mar 19, 2025 08:27:13.810272932 CET3752353192.168.2.131.0.0.1
                                            Mar 19, 2025 08:27:13.834924936 CET53375231.0.0.1192.168.2.13
                                            Mar 19, 2025 08:27:14.838579893 CET3366353192.168.2.138.8.8.8
                                            Mar 19, 2025 08:27:14.853794098 CET53336638.8.8.8192.168.2.13
                                            Mar 19, 2025 08:27:15.857918978 CET5934953192.168.2.131.1.1.1
                                            Mar 19, 2025 08:27:15.895893097 CET53593491.1.1.1192.168.2.13
                                            Mar 19, 2025 08:27:16.899049997 CET3685653192.168.2.131.0.0.1
                                            Mar 19, 2025 08:27:17.001329899 CET53368561.0.0.1192.168.2.13
                                            Mar 19, 2025 08:27:18.005538940 CET4060153192.168.2.138.8.8.8
                                            Mar 19, 2025 08:27:18.020595074 CET53406018.8.8.8192.168.2.13
                                            Mar 19, 2025 08:27:21.809109926 CET3362053192.168.2.131.0.0.1
                                            Mar 19, 2025 08:27:21.928461075 CET53336201.0.0.1192.168.2.13
                                            Mar 19, 2025 08:27:22.931142092 CET4419653192.168.2.138.8.4.4
                                            Mar 19, 2025 08:27:22.945861101 CET53441968.8.4.4192.168.2.13
                                            Mar 19, 2025 08:27:23.948951960 CET5813253192.168.2.131.0.0.1
                                            Mar 19, 2025 08:27:24.085412979 CET53581321.0.0.1192.168.2.13
                                            TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
                                            Mar 19, 2025 08:25:19.018809080 CET192.168.2.138.8.4.40x56f2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:20.051840067 CET192.168.2.131.0.0.10x56f2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:21.158535957 CET192.168.2.131.0.0.10x56f2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:22.272031069 CET192.168.2.131.1.1.10x56f2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:23.377063990 CET192.168.2.131.0.0.10x56f2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:27.274961948 CET192.168.2.138.8.8.80xe732Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:29.296514034 CET192.168.2.138.8.8.80xe732Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:30.328883886 CET192.168.2.131.0.0.10xe732Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:31.358866930 CET192.168.2.138.8.8.80xe732Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:32.377197027 CET192.168.2.138.8.4.40xe732Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:36.198951960 CET192.168.2.138.8.8.80x2683Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:37.218375921 CET192.168.2.138.8.4.40x2683Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:38.236969948 CET192.168.2.131.1.1.10x2683Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:39.343477964 CET192.168.2.131.0.0.10x2683Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:40.478404045 CET192.168.2.131.0.0.10x2683Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:44.306217909 CET192.168.2.131.1.1.10xe007Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:45.428209066 CET192.168.2.131.0.0.10xe007Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:46.562171936 CET192.168.2.138.8.4.40xe007Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:47.581048012 CET192.168.2.138.8.8.80xe007Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:48.598660946 CET192.168.2.131.0.0.10xe007Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:52.430852890 CET192.168.2.138.8.4.40xca3dStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:53.450119972 CET192.168.2.138.8.4.40xca3dStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:54.481729031 CET192.168.2.138.8.8.80xca3dStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:55.684998035 CET192.168.2.138.8.8.80xca3dStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:25:56.717004061 CET192.168.2.131.0.0.10xca3dStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:00.523838997 CET192.168.2.138.8.4.40x6e4bStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:01.556191921 CET192.168.2.138.8.8.80x6e4bStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:02.574420929 CET192.168.2.138.8.4.40x6e4bStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:03.607646942 CET192.168.2.131.0.0.10x6e4bStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:04.635528088 CET192.168.2.131.0.0.10x6e4bStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:08.577337027 CET192.168.2.138.8.8.80x90d2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:09.607866049 CET192.168.2.131.0.0.10x90d2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:10.635984898 CET192.168.2.131.0.0.10x90d2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:11.666605949 CET192.168.2.131.1.1.10x90d2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:12.782782078 CET192.168.2.131.0.0.10x90d2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:16.712660074 CET192.168.2.131.1.1.10xfb57Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:17.741275072 CET192.168.2.138.8.4.40xfb57Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:18.760188103 CET192.168.2.131.1.1.10xfb57Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:19.866559029 CET192.168.2.131.0.0.10xfb57Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:20.992889881 CET192.168.2.131.1.1.10xfb57Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:24.807389021 CET192.168.2.138.8.4.40x65a4Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:25.826965094 CET192.168.2.138.8.8.80x65a4Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:26.845985889 CET192.168.2.131.1.1.10x65a4Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:27.875499964 CET192.168.2.138.8.4.40x65a4Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:28.894686937 CET192.168.2.131.0.0.10x65a4Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:32.822709084 CET192.168.2.131.1.1.10x9d9Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:33.958726883 CET192.168.2.138.8.4.40x9d9Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:34.976218939 CET192.168.2.138.8.8.80x9d9Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:36.006448984 CET192.168.2.131.1.1.10x9d9Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:37.035167933 CET192.168.2.138.8.4.40x9d9Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:40.823115110 CET192.168.2.138.8.4.40xeeeaStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:41.854568005 CET192.168.2.138.8.4.40xeeeaStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:42.873613119 CET192.168.2.131.0.0.10xeeeaStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:44.005295038 CET192.168.2.131.1.1.10xeeeaStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:45.033622980 CET192.168.2.138.8.8.80xeeeaStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:48.853620052 CET192.168.2.131.0.0.10x9ceaStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:49.882148027 CET192.168.2.131.1.1.10x9ceaStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:50.911288023 CET192.168.2.138.8.8.80x9ceaStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:51.927968025 CET192.168.2.138.8.4.40x9ceaStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:53.069411039 CET192.168.2.138.8.8.80x9ceaStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:57.627484083 CET192.168.2.138.8.8.80xc87cStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:58.659651041 CET192.168.2.131.1.1.10xc87cStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:26:59.798847914 CET192.168.2.138.8.8.80xc87cStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:00.830420971 CET192.168.2.138.8.4.40xc87cStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:01.848591089 CET192.168.2.138.8.8.80xc87cStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:05.808125019 CET192.168.2.138.8.8.80x430eStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:06.826926947 CET192.168.2.138.8.8.80x430eStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:07.850543022 CET192.168.2.138.8.4.40x430eStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:08.870975971 CET192.168.2.131.0.0.10x430eStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:09.979368925 CET192.168.2.131.1.1.10x430eStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:13.810272932 CET192.168.2.131.0.0.10xb206Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:14.838579893 CET192.168.2.138.8.8.80xb206Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:15.857918978 CET192.168.2.131.1.1.10xb206Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:16.899049997 CET192.168.2.131.0.0.10xb206Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:18.005538940 CET192.168.2.138.8.8.80xb206Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:21.809109926 CET192.168.2.131.0.0.10x9651Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:22.931142092 CET192.168.2.138.8.4.40x9651Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            Mar 19, 2025 08:27:23.948951960 CET192.168.2.131.0.0.10x9651Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                            TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
                                            Mar 19, 2025 08:25:19.034650087 CET8.8.4.4192.168.2.130x56f2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:20.153858900 CET1.0.0.1192.168.2.130x56f2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:21.269345045 CET1.0.0.1192.168.2.130x56f2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:22.373862028 CET1.1.1.1192.168.2.130x56f2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:23.489438057 CET1.0.0.1192.168.2.130x56f2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:28.293140888 CET8.8.8.8192.168.2.130xe732Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:29.324786901 CET8.8.8.8192.168.2.130xe732Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:30.353445053 CET1.0.0.1192.168.2.130xe732Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:31.374372959 CET8.8.8.8192.168.2.130xe732Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:32.402944088 CET8.8.4.4192.168.2.130xe732Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:36.214978933 CET8.8.8.8192.168.2.130x2683Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:37.233217001 CET8.8.4.4192.168.2.130x2683Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:38.339390039 CET1.1.1.1192.168.2.130x2683Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:39.474724054 CET1.0.0.1192.168.2.130x2683Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:40.504975080 CET1.0.0.1192.168.2.130x2683Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:44.424962044 CET1.1.1.1192.168.2.130xe007Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:45.559140921 CET1.0.0.1192.168.2.130xe007Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:46.577697039 CET8.8.4.4192.168.2.130xe007Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:47.595838070 CET8.8.8.8192.168.2.130xe007Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:48.623440027 CET1.0.0.1192.168.2.130xe007Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:52.447443962 CET8.8.4.4192.168.2.130xca3dName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:53.478550911 CET8.8.4.4192.168.2.130xca3dName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:54.681600094 CET8.8.8.8192.168.2.130xca3dName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:55.713738918 CET8.8.8.8192.168.2.130xca3dName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:25:56.741348028 CET1.0.0.1192.168.2.130xca3dName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:00.552764893 CET8.8.4.4192.168.2.130x6e4bName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:01.571640015 CET8.8.8.8192.168.2.130x6e4bName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:02.604516983 CET8.8.4.4192.168.2.130x6e4bName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:03.632373095 CET1.0.0.1192.168.2.130x6e4bName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:04.760411024 CET1.0.0.1192.168.2.130x6e4bName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:08.603683949 CET8.8.8.8192.168.2.130x90d2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:09.632626057 CET1.0.0.1192.168.2.130x90d2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:10.662870884 CET1.0.0.1192.168.2.130x90d2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:11.779213905 CET1.1.1.1192.168.2.130x90d2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:12.916479111 CET1.0.0.1192.168.2.130x90d2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:16.737448931 CET1.1.1.1192.168.2.130xfb57Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:17.757356882 CET8.8.4.4192.168.2.130xfb57Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:18.864450932 CET1.1.1.1192.168.2.130xfb57Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:19.988652945 CET1.0.0.1192.168.2.130xfb57Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:21.019334078 CET1.1.1.1192.168.2.130xfb57Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:24.822668076 CET8.8.4.4192.168.2.130x65a4Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:25.841901064 CET8.8.8.8192.168.2.130x65a4Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:26.871229887 CET1.1.1.1192.168.2.130x65a4Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:27.890763044 CET8.8.4.4192.168.2.130x65a4Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:29.032025099 CET1.0.0.1192.168.2.130x65a4Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:32.956155062 CET1.1.1.1192.168.2.130x9d9Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:33.973824978 CET8.8.4.4192.168.2.130x9d9Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:35.002779007 CET8.8.8.8192.168.2.130x9d9Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:36.032928944 CET1.1.1.1192.168.2.130x9d9Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:37.050959110 CET8.8.4.4192.168.2.130x9d9Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:40.851231098 CET8.8.4.4192.168.2.130xeeeaName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:41.870640993 CET8.8.4.4192.168.2.130xeeeaName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:43.001488924 CET1.0.0.1192.168.2.130xeeeaName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:44.030642033 CET1.1.1.1192.168.2.130xeeeaName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:45.062371969 CET8.8.8.8192.168.2.130xeeeaName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:48.878911972 CET1.0.0.1192.168.2.130x9ceaName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:49.908068895 CET1.1.1.1192.168.2.130x9ceaName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:50.925856113 CET8.8.8.8192.168.2.130x9ceaName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:52.064063072 CET8.8.4.4192.168.2.130x9ceaName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:53.824439049 CET8.8.8.8192.168.2.130x9ceaName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:57.656727076 CET8.8.8.8192.168.2.130xc87cName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:58.795990944 CET1.1.1.1192.168.2.130xc87cName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:26:59.827542067 CET8.8.8.8192.168.2.130xc87cName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:00.845994949 CET8.8.4.4192.168.2.130xc87cName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:01.877615929 CET8.8.8.8192.168.2.130xc87cName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:05.823699951 CET8.8.8.8192.168.2.130x430eName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:06.846990108 CET8.8.8.8192.168.2.130x430eName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:07.866374016 CET8.8.4.4192.168.2.130x430eName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:08.975087881 CET1.0.0.1192.168.2.130x430eName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:10.005820036 CET1.1.1.1192.168.2.130x430eName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:13.834924936 CET1.0.0.1192.168.2.130xb206Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:14.853794098 CET8.8.8.8192.168.2.130xb206Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:15.895893097 CET1.1.1.1192.168.2.130xb206Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:17.001329899 CET1.0.0.1192.168.2.130xb206Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:18.020595074 CET8.8.8.8192.168.2.130xb206Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:21.928461075 CET1.0.0.1192.168.2.130x9651Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:22.945861101 CET8.8.4.4192.168.2.130x9651Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                            Mar 19, 2025 08:27:24.085412979 CET1.0.0.1192.168.2.130x9651Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false

                                            System Behavior

                                            Start time (UTC):07:25:17
                                            Start date (UTC):19/03/2025
                                            Path:/tmp/sync.mipsel.elf
                                            Arguments:/tmp/sync.mipsel.elf
                                            File size:5773336 bytes
                                            MD5 hash:0d6f61f82cf2f781c6eb0661071d42d9

                                            Start time (UTC):07:25:17
                                            Start date (UTC):19/03/2025
                                            Path:/tmp/sync.mipsel.elf
                                            Arguments:-
                                            File size:5773336 bytes
                                            MD5 hash:0d6f61f82cf2f781c6eb0661071d42d9

                                            Start time (UTC):07:25:17
                                            Start date (UTC):19/03/2025
                                            Path:/tmp/sync.mipsel.elf
                                            Arguments:-
                                            File size:5773336 bytes
                                            MD5 hash:0d6f61f82cf2f781c6eb0661071d42d9