Edit tour

Linux Analysis Report
sync.x86_64.elf

Overview

General Information

Sample name:sync.x86_64.elf
Analysis ID:1642611
MD5:e939e62e1ce131e61880337553176627
SHA1:fc2ec6db32115de7eda4e40ccbf9533a2848e3df
SHA256:5a7ef198e52f919f25fc13cf2e1624eb454e16262ff5d24d2d4d14f72dad6335
Tags:elfuser-abuse_ch
Infos:

Detection

Score:72
Range:0 - 100

Signatures

Malicious sample detected (through community Yara rule)
Multi AV Scanner detection for submitted file
Suricata IDS alerts for network traffic
Performs DNS TXT record lookups
Sample deletes itself
Detected TCP or UDP traffic on non-standard ports
Sample has stripped symbol table
Sleeps for long times indicative of sandbox evasion
Tries to connect to HTTP servers, but all servers are down (expired dropper behavior)
Tries to resolve domain names, but no domain seems valid (expired dropper behavior)
Yara signature match

Classification

RansomwareSpreadingPhishingBankerTrojan / BotAdwareSpywareExploiterEvaderMinercleansuspiciousmalicious
Joe Sandbox version:42.0.0 Malachite
Analysis ID:1642611
Start date and time:2025-03-19 08:47:15 +01:00
Joe Sandbox product:CloudBasic
Overall analysis duration:0h 4m 31s
Hypervisor based Inspection enabled:false
Report type:full
Cookbook file name:defaultlinuxfilecookbook.jbs
Analysis system description:Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11)
Analysis Mode:default
Sample name:sync.x86_64.elf
Detection:MAL
Classification:mal72.evad.linELF@0/0@79/0
Command:/tmp/sync.x86_64.elf
PID:6229
Exit Code:1
Exit Code Info:
Killed:False
Standard Output:
sync
Standard Error:
  • system is lnxubuntu20
  • cleanup
SourceRuleDescriptionAuthorStrings
sync.x86_64.elfLinux_Trojan_Gafgyt_9e9530a7unknownunknown
  • 0x8308:$a: F6 48 63 FF B8 36 00 00 00 0F 05 48 3D 00 F0 FF FF 48 89 C3
sync.x86_64.elfLinux_Trojan_Gafgyt_807911a2unknownunknown
  • 0x8b23:$a: FE 48 39 F3 0F 94 C2 48 83 F9 FF 0F 94 C0 84 D0 74 16 4B 8D
sync.x86_64.elfLinux_Trojan_Gafgyt_d4227dbfunknownunknown
  • 0x6312:$a: FF 48 81 EC D0 00 00 00 48 8D 84 24 E0 00 00 00 48 89 54 24 30 C7 04 24 18 00
  • 0xa32c:$a: FF 48 81 EC D0 00 00 00 48 8D 84 24 E0 00 00 00 48 89 54 24 30 C7 04 24 18 00
sync.x86_64.elfLinux_Trojan_Gafgyt_d996d335unknownunknown
  • 0xb12e:$a: D0 EB 0F 40 38 37 75 04 48 89 F8 C3 49 FF C8 48 FF C7 4D 85 C0
sync.x86_64.elfLinux_Trojan_Gafgyt_620087b9unknownunknown
  • 0x86e3:$a: 48 89 D8 48 83 C8 01 EB 04 48 8B 76 10 48 3B 46 08 72 F6 48 8B
Click to see the 1 entries
SourceRuleDescriptionAuthorStrings
6229.1.0000000000400000.000000000040e000.r-x.sdmpLinux_Trojan_Gafgyt_9e9530a7unknownunknown
  • 0x8308:$a: F6 48 63 FF B8 36 00 00 00 0F 05 48 3D 00 F0 FF FF 48 89 C3
6229.1.0000000000400000.000000000040e000.r-x.sdmpLinux_Trojan_Gafgyt_807911a2unknownunknown
  • 0x8b23:$a: FE 48 39 F3 0F 94 C2 48 83 F9 FF 0F 94 C0 84 D0 74 16 4B 8D
6229.1.0000000000400000.000000000040e000.r-x.sdmpLinux_Trojan_Gafgyt_d4227dbfunknownunknown
  • 0x6312:$a: FF 48 81 EC D0 00 00 00 48 8D 84 24 E0 00 00 00 48 89 54 24 30 C7 04 24 18 00
  • 0xa32c:$a: FF 48 81 EC D0 00 00 00 48 8D 84 24 E0 00 00 00 48 89 54 24 30 C7 04 24 18 00
6229.1.0000000000400000.000000000040e000.r-x.sdmpLinux_Trojan_Gafgyt_d996d335unknownunknown
  • 0xb12e:$a: D0 EB 0F 40 38 37 75 04 48 89 F8 C3 49 FF C8 48 FF C7 4D 85 C0
6229.1.0000000000400000.000000000040e000.r-x.sdmpLinux_Trojan_Gafgyt_620087b9unknownunknown
  • 0x86e3:$a: 48 89 D8 48 83 C8 01 EB 04 48 8B 76 10 48 3B 46 08 72 F6 48 8B
Click to see the 1 entries
TimestampSIDSeverityClasstypeSource IPSource PortDestination IPDestination PortProtocol
2025-03-19T08:48:37.666549+010020135141A Network Trojan was detected192.168.2.23387671.1.1.153UDP

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: sync.x86_64.elfReversingLabs: Detection: 47%

Networking

barindex
Source: Network trafficSuricata IDS: 2013514 - Severity 1 - ET MALWARE Potential DNS Command and Control via TXT queries : 192.168.2.23:38767 -> 1.1.1.1:53
Source: global trafficTCP traffic: 192.168.2.23:41000 -> 185.194.205.79:61005
Source: global trafficTCP traffic: 192.168.2.23:43928 -> 91.189.91.42:443
Source: global trafficTCP traffic: 192.168.2.23:42836 -> 91.189.91.43:443
Source: global trafficTCP traffic: 192.168.2.23:42516 -> 109.202.202.202:80
Source: unknownDNS traffic detected: query: dnsresolve.socialgains.cf replaycode: Name error (3)
Source: unknownTCP traffic detected without corresponding DNS query: 91.189.91.42
Source: unknownTCP traffic detected without corresponding DNS query: 91.189.91.43
Source: unknownTCP traffic detected without corresponding DNS query: 109.202.202.202
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 91.189.91.42
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 91.189.91.43
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 109.202.202.202
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 91.189.91.42
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: unknownTCP traffic detected without corresponding DNS query: 185.194.205.79
Source: global trafficDNS traffic detected: DNS query: dnsresolve.socialgains.cf
Source: unknownNetwork traffic detected: HTTP traffic on port 43928 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 42836 -> 443

System Summary

barindex
Source: sync.x86_64.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_9e9530a7 Author: unknown
Source: sync.x86_64.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_807911a2 Author: unknown
Source: sync.x86_64.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_d4227dbf Author: unknown
Source: sync.x86_64.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_d996d335 Author: unknown
Source: sync.x86_64.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_620087b9 Author: unknown
Source: sync.x86_64.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_33b4111a Author: unknown
Source: 6229.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_9e9530a7 Author: unknown
Source: 6229.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_807911a2 Author: unknown
Source: 6229.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_d4227dbf Author: unknown
Source: 6229.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_d996d335 Author: unknown
Source: 6229.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_620087b9 Author: unknown
Source: 6229.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_33b4111a Author: unknown
Source: ELF static info symbol of initial sample.symtab present: no
Source: sync.x86_64.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_9e9530a7 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = d6ad6512051e87c8c35dc168d82edd071b122d026dce21d39b9782b3d6a01e50, id = 9e9530a7-ad4d-4a44-b764-437b7621052f, last_modified = 2021-09-16
Source: sync.x86_64.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_807911a2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = f409037091b7372f5a42bbe437316bd11c655e7a5fe1fcf83d1981cb5c4a389f, id = 807911a2-f6ec-4e65-924f-61cb065dafc6, last_modified = 2021-09-16
Source: sync.x86_64.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_d4227dbf reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 58c4b1d4d167876b64cfa10f609911a80284180e4db093917fea16fae8ccd4e3, id = d4227dbf-6ab4-4637-a6ba-0e604acaafb4, last_modified = 2021-09-16
Source: sync.x86_64.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_d996d335 reference_sample = b511eacd4b44744c8cf82d1b4a9bc6f1022fe6be7c5d17356b171f727ddc6eda, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = e9ccb8412f32187c309b0e9afcc3a6da21ad2f1ffa251c27f9f720ccb284e3ac, id = d996d335-e049-4052-bf36-6cd07c911a8b, last_modified = 2021-09-16
Source: sync.x86_64.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_620087b9 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 06cd7e6eb62352ec2ccb9ed48e58c0583c02fefd137cd048d053ab30b5330307, id = 620087b9-c87d-4752-89e8-ca1c16486b28, last_modified = 2021-09-16
Source: sync.x86_64.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_33b4111a reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 9c3b63b9a0f54006bae12abcefdb518904a85f78be573f0780f0a265b12d2d6e, id = 33b4111a-e59e-48db-9d74-34ca44fcd9f5, last_modified = 2021-09-16
Source: 6229.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_9e9530a7 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = d6ad6512051e87c8c35dc168d82edd071b122d026dce21d39b9782b3d6a01e50, id = 9e9530a7-ad4d-4a44-b764-437b7621052f, last_modified = 2021-09-16
Source: 6229.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_807911a2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = f409037091b7372f5a42bbe437316bd11c655e7a5fe1fcf83d1981cb5c4a389f, id = 807911a2-f6ec-4e65-924f-61cb065dafc6, last_modified = 2021-09-16
Source: 6229.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_d4227dbf reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 58c4b1d4d167876b64cfa10f609911a80284180e4db093917fea16fae8ccd4e3, id = d4227dbf-6ab4-4637-a6ba-0e604acaafb4, last_modified = 2021-09-16
Source: 6229.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_d996d335 reference_sample = b511eacd4b44744c8cf82d1b4a9bc6f1022fe6be7c5d17356b171f727ddc6eda, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = e9ccb8412f32187c309b0e9afcc3a6da21ad2f1ffa251c27f9f720ccb284e3ac, id = d996d335-e049-4052-bf36-6cd07c911a8b, last_modified = 2021-09-16
Source: 6229.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_620087b9 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 06cd7e6eb62352ec2ccb9ed48e58c0583c02fefd137cd048d053ab30b5330307, id = 620087b9-c87d-4752-89e8-ca1c16486b28, last_modified = 2021-09-16
Source: 6229.1.0000000000400000.000000000040e000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_33b4111a reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 9c3b63b9a0f54006bae12abcefdb518904a85f78be573f0780f0a265b12d2d6e, id = 33b4111a-e59e-48db-9d74-34ca44fcd9f5, last_modified = 2021-09-16
Source: classification engineClassification label: mal72.evad.linELF@0/0@79/0

Hooking and other Techniques for Hiding and Protection

barindex
Source: /tmp/sync.x86_64.elf (PID: 6229)File: /tmp/sync.x86_64.elfJump to behavior
Source: /tmp/sync.x86_64.elf (PID: 6231)Sleeps longer then 60s: 60.0sJump to behavior
Source: /tmp/sync.x86_64.elf (PID: 6231)Sleeps longer then 60s: 60.0sJump to behavior

HIPS / PFW / Operating System Protection Evasion

barindex
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
Source: TrafficDNS traffic detected: queries for: dnsresolve.socialgains.cf
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath InterceptionPath Interception1
Virtualization/Sandbox Evasion
OS Credential Dumping1
Virtualization/Sandbox Evasion
Remote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization Scripts1
File Deletion
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media1
Non-Standard Port
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive1
Non-Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture2
Application Layer Protocol
Traffic DuplicationData Destruction
No configs have been found
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Number of created Files
  • Is malicious
  • Internet
behaviorgraph top1 dnsIp2 2 Behavior Graph ID: 1642611 Sample: sync.x86_64.elf Startdate: 19/03/2025 Architecture: LINUX Score: 72 15 dnsresolve.socialgains.cf 2->15 17 109.202.202.202, 80 INIT7CH Switzerland 2->17 19 3 other IPs or domains 2->19 21 Suricata IDS alerts for network traffic 2->21 23 Malicious sample detected (through community Yara rule) 2->23 25 Multi AV Scanner detection for submitted file 2->25 8 sync.x86_64.elf 2->8         started        signatures3 27 Performs DNS TXT record lookups 15->27 process4 signatures5 29 Sample deletes itself 8->29 11 sync.x86_64.elf 8->11         started        process6 process7 13 sync.x86_64.elf 11->13         started       
SourceDetectionScannerLabelLink
sync.x86_64.elf47%ReversingLabsLinux.Backdoor.Mirai
No Antivirus matches
No Antivirus matches
No Antivirus matches

Download Network PCAP: filteredfull

NameIPActiveMaliciousAntivirus DetectionReputation
dnsresolve.socialgains.cf
unknown
unknownfalse
    high
    • No. of IPs < 25%
    • 25% < No. of IPs < 50%
    • 50% < No. of IPs < 75%
    • 75% < No. of IPs
    IPDomainCountryFlagASNASN NameMalicious
    185.194.205.79
    unknownFrance
    204145HTSENSEFRfalse
    109.202.202.202
    unknownSwitzerland
    13030INIT7CHfalse
    91.189.91.43
    unknownUnited Kingdom
    41231CANONICAL-ASGBfalse
    91.189.91.42
    unknownUnited Kingdom
    41231CANONICAL-ASGBfalse
    MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
    185.194.205.79sync.m68k.elfGet hashmaliciousMiraiBrowse
      sync.mipsel.elfGet hashmaliciousUnknownBrowse
        sync.arm5.elfGet hashmaliciousUnknownBrowse
          sync.arm7.elfGet hashmaliciousUnknownBrowse
            sync.sparc.elfGet hashmaliciousUnknownBrowse
              sync.powerpc.elfGet hashmaliciousUnknownBrowse
                sync.superh.elfGet hashmaliciousUnknownBrowse
                  sync.sh4.elfGet hashmaliciousUnknownBrowse
                    sync.arm7.elfGet hashmaliciousUnknownBrowse
                      sync.arm5.elfGet hashmaliciousUnknownBrowse
                        109.202.202.202kpLwzBouH4.elfGet hashmaliciousUnknownBrowse
                        • ch.archive.ubuntu.com/ubuntu/pool/main/f/firefox/firefox_92.0%2bbuild3-0ubuntu0.20.04.1_amd64.deb
                        91.189.91.43na.elfGet hashmaliciousPrometeiBrowse
                          sync.m68k.elfGet hashmaliciousMiraiBrowse
                            na.elfGet hashmaliciousPrometeiBrowse
                              na.elfGet hashmaliciousPrometeiBrowse
                                na.elfGet hashmaliciousPrometeiBrowse
                                  sync.powerpc.elfGet hashmaliciousUnknownBrowse
                                    sync.arm6.elfGet hashmaliciousUnknownBrowse
                                      na.elfGet hashmaliciousPrometeiBrowse
                                        na.elfGet hashmaliciousPrometeiBrowse
                                          na.elfGet hashmaliciousPrometeiBrowse
                                            91.189.91.42na.elfGet hashmaliciousPrometeiBrowse
                                              sync.m68k.elfGet hashmaliciousMiraiBrowse
                                                na.elfGet hashmaliciousPrometeiBrowse
                                                  na.elfGet hashmaliciousPrometeiBrowse
                                                    na.elfGet hashmaliciousPrometeiBrowse
                                                      sync.powerpc.elfGet hashmaliciousUnknownBrowse
                                                        sync.arm6.elfGet hashmaliciousUnknownBrowse
                                                          na.elfGet hashmaliciousPrometeiBrowse
                                                            na.elfGet hashmaliciousPrometeiBrowse
                                                              na.elfGet hashmaliciousPrometeiBrowse
                                                                No context
                                                                MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                CANONICAL-ASGBna.elfGet hashmaliciousPrometeiBrowse
                                                                • 91.189.91.42
                                                                sync.m68k.elfGet hashmaliciousMiraiBrowse
                                                                • 91.189.91.42
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 91.189.91.42
                                                                sync.mipsel.elfGet hashmaliciousUnknownBrowse
                                                                • 185.125.190.26
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 91.189.91.42
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 91.189.91.42
                                                                sync.powerpc.elfGet hashmaliciousUnknownBrowse
                                                                • 91.189.91.42
                                                                sync.arm6.elfGet hashmaliciousUnknownBrowse
                                                                • 91.189.91.42
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 91.189.91.42
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 91.189.91.42
                                                                CANONICAL-ASGBna.elfGet hashmaliciousPrometeiBrowse
                                                                • 91.189.91.42
                                                                sync.m68k.elfGet hashmaliciousMiraiBrowse
                                                                • 91.189.91.42
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 91.189.91.42
                                                                sync.mipsel.elfGet hashmaliciousUnknownBrowse
                                                                • 185.125.190.26
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 91.189.91.42
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 91.189.91.42
                                                                sync.powerpc.elfGet hashmaliciousUnknownBrowse
                                                                • 91.189.91.42
                                                                sync.arm6.elfGet hashmaliciousUnknownBrowse
                                                                • 91.189.91.42
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 91.189.91.42
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 91.189.91.42
                                                                HTSENSEFRsync.m68k.elfGet hashmaliciousMiraiBrowse
                                                                • 185.194.205.79
                                                                sync.mipsel.elfGet hashmaliciousUnknownBrowse
                                                                • 185.194.205.79
                                                                sync.arm5.elfGet hashmaliciousUnknownBrowse
                                                                • 185.194.205.79
                                                                sync.arm7.elfGet hashmaliciousUnknownBrowse
                                                                • 185.194.205.79
                                                                sync.sparc.elfGet hashmaliciousUnknownBrowse
                                                                • 185.194.205.79
                                                                sync.powerpc.elfGet hashmaliciousUnknownBrowse
                                                                • 185.194.205.79
                                                                sync.superh.elfGet hashmaliciousUnknownBrowse
                                                                • 185.194.205.79
                                                                sync.sh4.elfGet hashmaliciousUnknownBrowse
                                                                • 185.194.205.79
                                                                sync.arm7.elfGet hashmaliciousUnknownBrowse
                                                                • 185.194.205.79
                                                                sync.arm5.elfGet hashmaliciousUnknownBrowse
                                                                • 185.194.205.79
                                                                INIT7CHna.elfGet hashmaliciousPrometeiBrowse
                                                                • 109.202.202.202
                                                                sync.m68k.elfGet hashmaliciousMiraiBrowse
                                                                • 109.202.202.202
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 109.202.202.202
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 109.202.202.202
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 109.202.202.202
                                                                sync.powerpc.elfGet hashmaliciousUnknownBrowse
                                                                • 109.202.202.202
                                                                sync.arm6.elfGet hashmaliciousUnknownBrowse
                                                                • 109.202.202.202
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 109.202.202.202
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 109.202.202.202
                                                                na.elfGet hashmaliciousPrometeiBrowse
                                                                • 109.202.202.202
                                                                No context
                                                                No context
                                                                No created / dropped files found
                                                                File type:ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, stripped
                                                                Entropy (8bit):6.286435804414477
                                                                TrID:
                                                                • ELF Executable and Linkable format (generic) (4004/1) 100.00%
                                                                File name:sync.x86_64.elf
                                                                File size:56'816 bytes
                                                                MD5:e939e62e1ce131e61880337553176627
                                                                SHA1:fc2ec6db32115de7eda4e40ccbf9533a2848e3df
                                                                SHA256:5a7ef198e52f919f25fc13cf2e1624eb454e16262ff5d24d2d4d14f72dad6335
                                                                SHA512:2c9a2bc3e5220ea91cc3547ac328dc6cd07a96d0bedab808718088321e927606e0e6703ec5ac24d005eaa6666ea0cfd2513b88c86c6b50e640a8abf8a19ef918
                                                                SSDEEP:768:eUwOpOCYdbgvZ6jrmJpYndcm07+MlkflLZilmusOJDSkhaytbX0C3CkAG+I6DgS:Twuf8MR6jXdcD7+Ml4lYmDrOtbX7l+B
                                                                TLSH:4C436C532251C0FCCAA5C2B80A6FF236E12371BC1124B22BB7E4FF566E99D361E5E154
                                                                File Content Preview:.ELF..............>.......@.....@.......p...........@.8...@.......................@.......@...............................................P.......P.....8.......p...............Q.td....................................................H...._........H........

                                                                ELF header

                                                                Class:ELF64
                                                                Data:2's complement, little endian
                                                                Version:1 (current)
                                                                Machine:Advanced Micro Devices X86-64
                                                                Version Number:0x1
                                                                Type:EXEC (Executable file)
                                                                OS/ABI:UNIX - System V
                                                                ABI Version:0
                                                                Entry Point Address:0x400194
                                                                Flags:0x0
                                                                ELF Header Size:64
                                                                Program Header Offset:64
                                                                Program Header Size:56
                                                                Number of Program Headers:3
                                                                Section Header Offset:56176
                                                                Section Header Size:64
                                                                Number of Section Headers:10
                                                                Header String Table Index:9
                                                                NameTypeAddressOffsetSizeEntSizeFlagsFlags DescriptionLinkInfoAlign
                                                                NULL0x00x00x00x00x0000
                                                                .initPROGBITS0x4000e80xe80x130x00x6AX001
                                                                .textPROGBITS0x4001000x1000xb4b60x00x6AX0016
                                                                .finiPROGBITS0x40b5b60xb5b60xe0x00x6AX001
                                                                .rodataPROGBITS0x40b5e00xb5e00x20100x00x2A0032
                                                                .ctorsPROGBITS0x50d5f80xd5f80x100x00x3WA008
                                                                .dtorsPROGBITS0x50d6080xd6080x100x00x3WA008
                                                                .dataPROGBITS0x50d6200xd6200x5100x00x3WA0032
                                                                .bssNOBITS0x50db400xdb300xec280x00x3WA0032
                                                                .shstrtabSTRTAB0x00xdb300x3e0x00x0001
                                                                TypeOffsetVirtual AddressPhysical AddressFile SizeMemory SizeEntropyFlagsFlags DescriptionAlignProg InterpreterSection Mappings
                                                                LOAD0x00x4000000x4000000xd5f00xd5f06.37200x5R E0x100000.init .text .fini .rodata
                                                                LOAD0xd5f80x50d5f80x50d5f80x5380xf1702.86740x6RW 0x100000.ctors .dtors .data .bss
                                                                GNU_STACK0x00x00x00x00x00.00000x6RW 0x8

                                                                Download Network PCAP: filteredfull

                                                                TimestampSIDSignatureSeveritySource IPSource PortDest IPDest PortProtocol
                                                                2025-03-19T08:48:37.666549+01002013514ET MALWARE Potential DNS Command and Control via TXT queries1192.168.2.23387671.1.1.153UDP
                                                                • Total Packets: 149
                                                                • 61005 undefined
                                                                • 443 (HTTPS)
                                                                • 80 (HTTP)
                                                                • 53 (DNS)
                                                                TimestampSource PortDest PortSource IPDest IP
                                                                Mar 19, 2025 08:48:03.130445004 CET43928443192.168.2.2391.189.91.42
                                                                Mar 19, 2025 08:48:08.761603117 CET42836443192.168.2.2391.189.91.43
                                                                Mar 19, 2025 08:48:09.529576063 CET4251680192.168.2.23109.202.202.202
                                                                Mar 19, 2025 08:48:09.747109890 CET4100061005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:09.752152920 CET6100541000185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:09.752214909 CET4100061005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:09.752233028 CET4100061005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:09.756863117 CET6100541000185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:11.564630985 CET6100541000185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:11.564836979 CET4100061005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:11.570462942 CET6100541000185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:17.667474031 CET4100261005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:17.672662973 CET6100541002185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:17.672753096 CET4100261005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:17.672810078 CET4100261005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:17.677560091 CET6100541002185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:19.473196030 CET6100541002185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:19.473599911 CET4100261005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:19.478256941 CET6100541002185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:24.631607056 CET43928443192.168.2.2391.189.91.42
                                                                Mar 19, 2025 08:48:25.805093050 CET4100461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:25.810014963 CET6100541004185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:25.810108900 CET4100461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:25.810169935 CET4100461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:25.814858913 CET6100541004185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:27.579771042 CET6100541004185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:27.580230951 CET4100461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:27.585052967 CET6100541004185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:33.712407112 CET4100661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:33.717233896 CET6100541006185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:33.717329025 CET4100661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:33.717329025 CET4100661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:33.722110033 CET6100541006185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:34.870035887 CET42836443192.168.2.2391.189.91.43
                                                                Mar 19, 2025 08:48:35.521801949 CET6100541006185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:35.522022009 CET4100661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:35.526669979 CET6100541006185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:38.965421915 CET4251680192.168.2.23109.202.202.202
                                                                Mar 19, 2025 08:48:41.844696045 CET4100861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:41.849474907 CET6100541008185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:41.849648952 CET4100861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:41.849680901 CET4100861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:41.854345083 CET6100541008185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:41.854451895 CET4100861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:41.859155893 CET6100541008185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:43.627206087 CET6100541008185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:43.627371073 CET4100861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:43.632128954 CET6100541008185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:49.763262033 CET4101061005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:49.768075943 CET6100541010185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:49.768222094 CET4101061005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:49.768256903 CET4101061005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:49.772914886 CET6100541010185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:51.550158024 CET6100541010185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:51.550458908 CET4101061005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:51.555300951 CET6100541010185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:57.894515038 CET4101261005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:57.899641991 CET6100541012185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:57.899776936 CET4101261005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:57.899811983 CET4101261005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:57.905196905 CET6100541012185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:59.674185991 CET6100541012185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:48:59.674532890 CET4101261005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:48:59.679279089 CET6100541012185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:05.585797071 CET43928443192.168.2.2391.189.91.42
                                                                Mar 19, 2025 08:49:06.203002930 CET4101461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:06.207828999 CET6100541014185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:06.207962990 CET4101461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:06.207962990 CET4101461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:06.212647915 CET6100541014185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:07.972070932 CET6100541014185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:07.972326994 CET4101461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:07.977159977 CET6100541014185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:14.489597082 CET4101661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:14.497185946 CET6100541016185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:14.497330904 CET4101661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:14.497351885 CET4101661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:14.503809929 CET6100541016185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:14.503896952 CET4101661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:14.511559963 CET6100541016185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:16.285134077 CET6100541016185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:16.285487890 CET4101661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:16.290304899 CET6100541016185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:22.731436014 CET4101861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:22.736259937 CET6100541018185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:22.736354113 CET4101861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:22.736391068 CET4101861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:22.741175890 CET6100541018185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:24.505454063 CET6100541018185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:24.505852938 CET4101861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:24.510974884 CET6100541018185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:30.821099043 CET4102061005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:30.826852083 CET6100541020185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:30.826935053 CET4102061005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:30.826963902 CET4102061005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:30.832182884 CET6100541020185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:32.629143000 CET6100541020185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:32.629314899 CET4102061005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:32.634083986 CET6100541020185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:38.855843067 CET4102261005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:38.860857964 CET6100541022185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:38.861012936 CET4102261005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:38.861027956 CET4102261005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:38.865720034 CET6100541022185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:40.628526926 CET6100541022185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:40.628972054 CET4102261005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:40.633958101 CET6100541022185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:46.950712919 CET4102461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:46.955960989 CET6100541024185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:46.956060886 CET4102461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:46.956104994 CET4102461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:46.960800886 CET6100541024185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:46.960865974 CET4102461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:46.965675116 CET6100541024185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:48.722425938 CET6100541024185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:48.722717047 CET4102461005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:48.727540970 CET6100541024185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:55.100595951 CET4102661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:55.105356932 CET6100541026185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:55.105462074 CET4102661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:55.105485916 CET4102661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:55.110963106 CET6100541026185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:56.894104004 CET6100541026185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:49:56.894387960 CET4102661005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:49:56.899130106 CET6100541026185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:50:03.024138927 CET4102861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:50:03.029810905 CET6100541028185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:50:03.029927969 CET4102861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:50:03.029964924 CET4102861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:50:03.034838915 CET6100541028185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:50:04.803268909 CET6100541028185.194.205.79192.168.2.23
                                                                Mar 19, 2025 08:50:04.803536892 CET4102861005192.168.2.23185.194.205.79
                                                                Mar 19, 2025 08:50:04.808187962 CET6100541028185.194.205.79192.168.2.23
                                                                TimestampSource PortDest PortSource IPDest IP
                                                                Mar 19, 2025 08:48:04.605710983 CET3783153192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:48:04.638267040 CET53378318.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:48:05.639931917 CET3551053192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:48:05.668294907 CET53355108.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:48:06.669682980 CET5391353192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:48:06.684730053 CET53539138.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:48:07.686773062 CET5223653192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:48:07.715429068 CET53522368.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:48:08.717263937 CET4300953192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:48:08.745457888 CET53430098.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:48:12.566644907 CET3502553192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:48:12.581796885 CET53350258.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:48:13.583683968 CET5562653192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:48:13.600351095 CET53556268.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:48:14.602588892 CET4708953192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:48:14.617536068 CET53470898.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:48:15.620223999 CET4649153192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:48:15.646120071 CET53464911.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:48:16.649076939 CET3918353192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:48:16.665005922 CET53391838.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:48:20.476660967 CET3577053192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:48:20.583995104 CET53357701.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:48:21.587522030 CET4932053192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:48:21.602334023 CET53493208.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:48:22.605321884 CET3297953192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:48:22.620640039 CET53329798.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:48:23.623660088 CET4051853192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:48:23.782687902 CET53405188.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:48:24.786350012 CET3416653192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:48:24.802361012 CET53341668.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:48:28.583009005 CET3741553192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:48:28.607367039 CET53374151.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:48:29.609879017 CET4062853192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:48:29.625273943 CET53406288.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:48:30.627511978 CET5955453192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:48:30.651973963 CET53595541.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:48:31.654465914 CET4152853192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:48:31.679142952 CET53415281.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:48:32.681586027 CET5245953192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:48:32.710241079 CET53524598.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:48:36.524976969 CET5397653192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:48:36.663484097 CET53539761.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:48:37.666548967 CET3876753192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:48:37.788336992 CET53387671.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:48:38.791229010 CET4541053192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:48:38.806847095 CET53454108.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:48:39.808737040 CET4416853192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:48:39.825077057 CET53441688.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:48:40.827061892 CET5378353192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:48:40.842726946 CET53537838.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:48:44.630014896 CET5849153192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:48:44.656486988 CET53584911.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:48:45.658869028 CET4483553192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:48:45.684196949 CET53448351.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:48:46.686834097 CET4075253192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:48:46.713011026 CET53407521.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:48:47.714997053 CET3550153192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:48:47.729727983 CET53355018.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:48:48.732383966 CET5039153192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:48:48.761290073 CET53503918.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:48:52.552553892 CET5569753192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:48:52.577157974 CET53556971.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:48:53.579061031 CET4014153192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:48:53.701169968 CET53401411.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:48:54.704623938 CET6041453192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:48:54.845716953 CET53604141.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:48:55.849344015 CET4490853192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:48:55.866839886 CET53449088.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:48:56.869492054 CET5761853192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:48:56.892488956 CET53576188.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:49:00.677386045 CET4092953192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:00.814676046 CET53409291.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:01.817854881 CET4738553192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:01.923752069 CET53473851.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:02.926712990 CET3424253192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:03.046031952 CET53342421.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:04.050473928 CET4771053192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:04.076690912 CET53477101.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:05.079425097 CET4419253192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:49:05.201030016 CET53441921.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:49:08.974719048 CET3363553192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:49:08.990969896 CET53336358.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:49:09.994390965 CET5431053192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:49:10.114635944 CET53543101.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:49:11.116950989 CET3576153192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:49:11.336961985 CET53357618.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:49:12.339263916 CET3812753192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:49:12.460315943 CET53381271.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:49:13.462558031 CET3366153192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:49:13.487585068 CET53336611.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:49:17.288260937 CET4897353192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:17.312901974 CET53489731.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:18.315871954 CET4548953192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:49:18.435117960 CET53454891.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:49:19.437973976 CET5691453192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:19.558959961 CET53569141.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:20.561593056 CET5751153192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:49:20.593116999 CET53575118.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:49:21.595092058 CET4675953192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:49:21.729749918 CET53467591.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:49:25.508735895 CET4310053192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:49:25.524247885 CET53431008.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:49:26.527160883 CET5957053192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:26.629156113 CET53595701.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:27.632441998 CET3971053192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:49:27.647365093 CET53397108.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:49:28.649940014 CET3844553192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:49:28.678529024 CET53384458.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:49:29.681694984 CET4551653192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:29.818943024 CET53455161.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:33.631985903 CET3396853192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:49:33.664458990 CET53339688.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:49:34.666867018 CET3438153192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:49:34.682251930 CET53343818.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:49:35.684866905 CET4937753192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:35.709124088 CET53493771.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:36.711015940 CET3501353192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:49:36.728077888 CET53350138.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:49:37.729721069 CET4013653192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:37.854268074 CET53401361.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:41.632230997 CET5726253192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:49:41.663239002 CET53572621.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:49:42.666168928 CET5092053192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:49:42.787257910 CET53509201.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:49:43.790510893 CET3752553192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:43.816864014 CET53375251.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:44.819881916 CET4070053192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:49:44.834822893 CET53407008.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:49:45.837764978 CET4206553192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:45.948385954 CET53420651.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:49.724466085 CET5575753192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:49:49.861443043 CET53557571.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:49:50.864392996 CET3734953192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:51.022062063 CET53373491.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:52.025156021 CET5749553192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:49:52.051256895 CET53574958.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:49:53.054497004 CET3389853192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:49:53.079587936 CET53338981.1.1.1192.168.2.23
                                                                Mar 19, 2025 08:49:54.082209110 CET4357453192.168.2.238.8.4.4
                                                                Mar 19, 2025 08:49:54.098892927 CET53435748.8.4.4192.168.2.23
                                                                Mar 19, 2025 08:49:57.897433043 CET4089453192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:49:57.921873093 CET53408941.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:49:58.924354076 CET4287953192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:49:58.940360069 CET53428798.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:49:59.942660093 CET4409753192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:49:59.957710981 CET53440978.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:50:00.960279942 CET5557353192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:50:00.989021063 CET53555738.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:50:01.992511034 CET4122053192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:50:02.021416903 CET53412208.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:50:05.806417942 CET5123753192.168.2.238.8.8.8
                                                                Mar 19, 2025 08:50:05.821243048 CET53512378.8.8.8192.168.2.23
                                                                Mar 19, 2025 08:50:06.823811054 CET4228153192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:50:06.943214893 CET53422811.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:50:07.946310043 CET4861753192.168.2.231.0.0.1
                                                                Mar 19, 2025 08:50:08.068707943 CET53486171.0.0.1192.168.2.23
                                                                Mar 19, 2025 08:50:09.071116924 CET4913753192.168.2.231.1.1.1
                                                                Mar 19, 2025 08:50:09.096609116 CET53491371.1.1.1192.168.2.23
                                                                TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
                                                                Mar 19, 2025 08:48:04.605710983 CET192.168.2.238.8.4.40xd0fbStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:05.639931917 CET192.168.2.238.8.4.40xd0fbStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:06.669682980 CET192.168.2.238.8.8.80xd0fbStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:07.686773062 CET192.168.2.238.8.4.40xd0fbStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:08.717263937 CET192.168.2.238.8.4.40xd0fbStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:12.566644907 CET192.168.2.238.8.4.40x65bStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:13.583683968 CET192.168.2.238.8.4.40x65bStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:14.602588892 CET192.168.2.238.8.4.40x65bStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:15.620223999 CET192.168.2.231.1.1.10x65bStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:16.649076939 CET192.168.2.238.8.8.80x65bStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:20.476660967 CET192.168.2.231.0.0.10x8017Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:21.587522030 CET192.168.2.238.8.8.80x8017Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:22.605321884 CET192.168.2.238.8.4.40x8017Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:23.623660088 CET192.168.2.238.8.8.80x8017Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:24.786350012 CET192.168.2.238.8.8.80x8017Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:28.583009005 CET192.168.2.231.1.1.10xe401Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:29.609879017 CET192.168.2.238.8.4.40xe401Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:30.627511978 CET192.168.2.231.0.0.10xe401Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:31.654465914 CET192.168.2.231.1.1.10xe401Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:32.681586027 CET192.168.2.238.8.4.40xe401Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:36.524976969 CET192.168.2.231.0.0.10x6e33Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:37.666548967 CET192.168.2.231.1.1.10x6e33Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:38.791229010 CET192.168.2.238.8.4.40x6e33Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:39.808737040 CET192.168.2.238.8.8.80x6e33Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:40.827061892 CET192.168.2.238.8.8.80x6e33Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:44.630014896 CET192.168.2.231.1.1.10xf80aStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:45.658869028 CET192.168.2.231.1.1.10xf80aStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:46.686834097 CET192.168.2.231.1.1.10xf80aStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:47.714997053 CET192.168.2.238.8.4.40xf80aStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:48.732383966 CET192.168.2.238.8.8.80xf80aStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:52.552553892 CET192.168.2.231.0.0.10xbc23Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:53.579061031 CET192.168.2.231.1.1.10xbc23Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:54.704623938 CET192.168.2.231.0.0.10xbc23Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:55.849344015 CET192.168.2.238.8.8.80xbc23Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:48:56.869492054 CET192.168.2.238.8.8.80xbc23Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:00.677386045 CET192.168.2.231.1.1.10x707Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:01.817854881 CET192.168.2.231.1.1.10x707Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:02.926712990 CET192.168.2.231.1.1.10x707Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:04.050473928 CET192.168.2.231.1.1.10x707Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:05.079425097 CET192.168.2.231.0.0.10x707Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:08.974719048 CET192.168.2.238.8.4.40xfd99Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:09.994390965 CET192.168.2.231.0.0.10xfd99Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:11.116950989 CET192.168.2.238.8.4.40xfd99Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:12.339263916 CET192.168.2.231.0.0.10xfd99Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:13.462558031 CET192.168.2.231.0.0.10xfd99Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:17.288260937 CET192.168.2.231.1.1.10x389fStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:18.315871954 CET192.168.2.231.0.0.10x389fStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:19.437973976 CET192.168.2.231.1.1.10x389fStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:20.561593056 CET192.168.2.238.8.8.80x389fStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:21.595092058 CET192.168.2.231.0.0.10x389fStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:25.508735895 CET192.168.2.238.8.4.40x5537Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:26.527160883 CET192.168.2.231.1.1.10x5537Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:27.632441998 CET192.168.2.238.8.4.40x5537Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:28.649940014 CET192.168.2.238.8.8.80x5537Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:29.681694984 CET192.168.2.231.1.1.10x5537Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:33.631985903 CET192.168.2.238.8.4.40x3dc2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:34.666867018 CET192.168.2.238.8.8.80x3dc2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:35.684866905 CET192.168.2.231.1.1.10x3dc2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:36.711015940 CET192.168.2.238.8.4.40x3dc2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:37.729721069 CET192.168.2.231.1.1.10x3dc2Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:41.632230997 CET192.168.2.231.0.0.10x7f79Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:42.666168928 CET192.168.2.231.0.0.10x7f79Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:43.790510893 CET192.168.2.231.1.1.10x7f79Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:44.819881916 CET192.168.2.238.8.8.80x7f79Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:45.837764978 CET192.168.2.231.1.1.10x7f79Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:49.724466085 CET192.168.2.231.0.0.10x2e93Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:50.864392996 CET192.168.2.231.1.1.10x2e93Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:52.025156021 CET192.168.2.238.8.4.40x2e93Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:53.054497004 CET192.168.2.231.1.1.10x2e93Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:54.082209110 CET192.168.2.238.8.4.40x2e93Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:57.897433043 CET192.168.2.231.0.0.10xcd89Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:58.924354076 CET192.168.2.238.8.8.80xcd89Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:49:59.942660093 CET192.168.2.238.8.8.80xcd89Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:50:00.960279942 CET192.168.2.238.8.8.80xcd89Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:50:01.992511034 CET192.168.2.238.8.8.80xcd89Standard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:50:05.806417942 CET192.168.2.238.8.8.80x4bdfStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:50:06.823811054 CET192.168.2.231.0.0.10x4bdfStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:50:07.946310043 CET192.168.2.231.0.0.10x4bdfStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                Mar 19, 2025 08:50:09.071116924 CET192.168.2.231.1.1.10x4bdfStandard query (0)dnsresolve.socialgains.cf16IN (0x0001)false
                                                                TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
                                                                Mar 19, 2025 08:48:04.638267040 CET8.8.4.4192.168.2.230xd0fbName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:05.668294907 CET8.8.4.4192.168.2.230xd0fbName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:06.684730053 CET8.8.8.8192.168.2.230xd0fbName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:07.715429068 CET8.8.4.4192.168.2.230xd0fbName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:08.745457888 CET8.8.4.4192.168.2.230xd0fbName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:12.581796885 CET8.8.4.4192.168.2.230x65bName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:13.600351095 CET8.8.4.4192.168.2.230x65bName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:14.617536068 CET8.8.4.4192.168.2.230x65bName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:15.646120071 CET1.1.1.1192.168.2.230x65bName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:16.665005922 CET8.8.8.8192.168.2.230x65bName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:20.583995104 CET1.0.0.1192.168.2.230x8017Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:21.602334023 CET8.8.8.8192.168.2.230x8017Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:22.620640039 CET8.8.4.4192.168.2.230x8017Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:23.782687902 CET8.8.8.8192.168.2.230x8017Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:24.802361012 CET8.8.8.8192.168.2.230x8017Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:28.607367039 CET1.1.1.1192.168.2.230xe401Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:29.625273943 CET8.8.4.4192.168.2.230xe401Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:30.651973963 CET1.0.0.1192.168.2.230xe401Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:31.679142952 CET1.1.1.1192.168.2.230xe401Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:32.710241079 CET8.8.4.4192.168.2.230xe401Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:36.663484097 CET1.0.0.1192.168.2.230x6e33Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:37.788336992 CET1.1.1.1192.168.2.230x6e33Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:38.806847095 CET8.8.4.4192.168.2.230x6e33Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:39.825077057 CET8.8.8.8192.168.2.230x6e33Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:40.842726946 CET8.8.8.8192.168.2.230x6e33Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:44.656486988 CET1.1.1.1192.168.2.230xf80aName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:45.684196949 CET1.1.1.1192.168.2.230xf80aName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:46.713011026 CET1.1.1.1192.168.2.230xf80aName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:47.729727983 CET8.8.4.4192.168.2.230xf80aName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:48.761290073 CET8.8.8.8192.168.2.230xf80aName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:52.577157974 CET1.0.0.1192.168.2.230xbc23Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:53.701169968 CET1.1.1.1192.168.2.230xbc23Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:54.845716953 CET1.0.0.1192.168.2.230xbc23Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:55.866839886 CET8.8.8.8192.168.2.230xbc23Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:48:56.892488956 CET8.8.8.8192.168.2.230xbc23Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:00.814676046 CET1.1.1.1192.168.2.230x707Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:01.923752069 CET1.1.1.1192.168.2.230x707Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:03.046031952 CET1.1.1.1192.168.2.230x707Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:04.076690912 CET1.1.1.1192.168.2.230x707Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:05.201030016 CET1.0.0.1192.168.2.230x707Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:08.990969896 CET8.8.4.4192.168.2.230xfd99Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:10.114635944 CET1.0.0.1192.168.2.230xfd99Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:11.336961985 CET8.8.4.4192.168.2.230xfd99Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:12.460315943 CET1.0.0.1192.168.2.230xfd99Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:13.487585068 CET1.0.0.1192.168.2.230xfd99Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:17.312901974 CET1.1.1.1192.168.2.230x389fName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:18.435117960 CET1.0.0.1192.168.2.230x389fName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:19.558959961 CET1.1.1.1192.168.2.230x389fName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:20.593116999 CET8.8.8.8192.168.2.230x389fName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:21.729749918 CET1.0.0.1192.168.2.230x389fName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:25.524247885 CET8.8.4.4192.168.2.230x5537Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:26.629156113 CET1.1.1.1192.168.2.230x5537Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:27.647365093 CET8.8.4.4192.168.2.230x5537Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:28.678529024 CET8.8.8.8192.168.2.230x5537Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:29.818943024 CET1.1.1.1192.168.2.230x5537Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:33.664458990 CET8.8.4.4192.168.2.230x3dc2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:34.682251930 CET8.8.8.8192.168.2.230x3dc2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:35.709124088 CET1.1.1.1192.168.2.230x3dc2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:36.728077888 CET8.8.4.4192.168.2.230x3dc2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:37.854268074 CET1.1.1.1192.168.2.230x3dc2Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:41.663239002 CET1.0.0.1192.168.2.230x7f79Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:42.787257910 CET1.0.0.1192.168.2.230x7f79Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:43.816864014 CET1.1.1.1192.168.2.230x7f79Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:44.834822893 CET8.8.8.8192.168.2.230x7f79Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:45.948385954 CET1.1.1.1192.168.2.230x7f79Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:49.861443043 CET1.0.0.1192.168.2.230x2e93Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:51.022062063 CET1.1.1.1192.168.2.230x2e93Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:52.051256895 CET8.8.4.4192.168.2.230x2e93Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:53.079587936 CET1.1.1.1192.168.2.230x2e93Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:54.098892927 CET8.8.4.4192.168.2.230x2e93Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:57.921873093 CET1.0.0.1192.168.2.230xcd89Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:58.940360069 CET8.8.8.8192.168.2.230xcd89Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:49:59.957710981 CET8.8.8.8192.168.2.230xcd89Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:50:00.989021063 CET8.8.8.8192.168.2.230xcd89Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:50:02.021416903 CET8.8.8.8192.168.2.230xcd89Name error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:50:05.821243048 CET8.8.8.8192.168.2.230x4bdfName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:50:06.943214893 CET1.0.0.1192.168.2.230x4bdfName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:50:08.068707943 CET1.0.0.1192.168.2.230x4bdfName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false
                                                                Mar 19, 2025 08:50:09.096609116 CET1.1.1.1192.168.2.230x4bdfName error (3)dnsresolve.socialgains.cfnonenone16IN (0x0001)false

                                                                System Behavior

                                                                Start time (UTC):07:48:04
                                                                Start date (UTC):19/03/2025
                                                                Path:/tmp/sync.x86_64.elf
                                                                Arguments:/tmp/sync.x86_64.elf
                                                                File size:56816 bytes
                                                                MD5 hash:e939e62e1ce131e61880337553176627

                                                                Start time (UTC):07:48:04
                                                                Start date (UTC):19/03/2025
                                                                Path:/tmp/sync.x86_64.elf
                                                                Arguments:-
                                                                File size:56816 bytes
                                                                MD5 hash:e939e62e1ce131e61880337553176627

                                                                Start time (UTC):07:48:04
                                                                Start date (UTC):19/03/2025
                                                                Path:/tmp/sync.x86_64.elf
                                                                Arguments:-
                                                                File size:56816 bytes
                                                                MD5 hash:e939e62e1ce131e61880337553176627