Linux
Analysis Report
xd.mips.elf
Overview
General Information
Sample name: | xd.mips.elf |
Analysis ID: | 1655032 |
MD5: | 342e23bbcc7b5b70d43f0335323dc82d |
SHA1: | ac3c550c5555caa170381bbee534394c2ea1d776 |
SHA256: | c5bd0777ae7e457a3d40dd6fa5d604cc93ca845389dc5e732fd1c7591eb04d15 |
Tags: | elfuser-abuse_ch |
Infos: |
Detection
Score: | 96 |
Range: | 0 - 100 |
Signatures
Classification
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1655032 |
Start date and time: | 2025-04-02 21:57:28 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 4m 47s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultlinuxfilecookbook.jbs |
Analysis system description: | Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11) |
Analysis Mode: | default |
Sample name: | xd.mips.elf |
Detection: | MAL |
Classification: | mal96.spre.troj.evad.linELF@0/16@3/0 |
- Connection to analysis system has been lost, crash info: Unknown
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- system is lnxubuntu20
- xd.mips.elf New Fork (PID: 6243, Parent: 6241)
- xd.mips.elf New Fork (PID: 6244, Parent: 6241)
- xd.mips.elf New Fork (PID: 6246, Parent: 6241)
- xd.mips.elf New Fork (PID: 6249, Parent: 6246)
- xd.mips.elf New Fork (PID: 6257, Parent: 6246)
- xd.mips.elf New Fork (PID: 6259, Parent: 6246)
- systemd New Fork (PID: 6269, Parent: 1)
- systemd New Fork (PID: 6287, Parent: 1)
- systemd New Fork (PID: 6291, Parent: 1)
- systemd New Fork (PID: 6292, Parent: 1)
- systemd New Fork (PID: 6293, Parent: 1)
- systemd New Fork (PID: 6294, Parent: 1)
- systemd New Fork (PID: 6350, Parent: 1)
- systemd New Fork (PID: 6352, Parent: 1)
- systemd New Fork (PID: 6353, Parent: 1)
- systemd New Fork (PID: 6354, Parent: 1860)
- systemd New Fork (PID: 6355, Parent: 1)
- systemd New Fork (PID: 6356, Parent: 1)
- gdm3 New Fork (PID: 6357, Parent: 1320)
- gdm3 New Fork (PID: 6358, Parent: 1320)
- gdm3 New Fork (PID: 6359, Parent: 1320)
- systemd New Fork (PID: 6365, Parent: 1)
- gpu-manager New Fork (PID: 6366, Parent: 6365)
- sh New Fork (PID: 6367, Parent: 6366)
- gpu-manager New Fork (PID: 6368, Parent: 6365)
- sh New Fork (PID: 6370, Parent: 6368)
- gpu-manager New Fork (PID: 6371, Parent: 6365)
- sh New Fork (PID: 6373, Parent: 6371)
- gpu-manager New Fork (PID: 6374, Parent: 6365)
- sh New Fork (PID: 6375, Parent: 6374)
- gpu-manager New Fork (PID: 6377, Parent: 6365)
- sh New Fork (PID: 6378, Parent: 6377)
- gpu-manager New Fork (PID: 6380, Parent: 6365)
- sh New Fork (PID: 6381, Parent: 6380)
- gpu-manager New Fork (PID: 6384, Parent: 6365)
- sh New Fork (PID: 6385, Parent: 6384)
- gpu-manager New Fork (PID: 6386, Parent: 6365)
- sh New Fork (PID: 6387, Parent: 6386)
- systemd New Fork (PID: 6369, Parent: 1)
- systemd New Fork (PID: 6372, Parent: 1)
- systemd New Fork (PID: 6376, Parent: 1)
- systemd New Fork (PID: 6379, Parent: 1)
- systemd New Fork (PID: 6382, Parent: 1)
- systemd New Fork (PID: 6388, Parent: 1)
- generate-config New Fork (PID: 6389, Parent: 6388)
- systemd New Fork (PID: 6390, Parent: 1)
- systemd (deleted) New Fork (PID: 6391, Parent: 1)
- systemd (deleted) New Fork (PID: 6394, Parent: 1)
- systemd (deleted) New Fork (PID: 6405, Parent: 1)
- systemd (deleted) New Fork (PID: 6406, Parent: 1)
- systemd (deleted) New Fork (PID: 6407, Parent: 1)
- systemd (deleted) New Fork (PID: 6417, Parent: 1)
- gvfsd-fuse New Fork (PID: 6418, Parent: 2038)
- systemd (deleted) New Fork (PID: 6423, Parent: 1)
- systemd (deleted) New Fork (PID: 6424, Parent: 1)
- systemd (deleted) New Fork (PID: 6425, Parent: 1)
- systemd (deleted) New Fork (PID: 6426, Parent: 1)
- gpu-manager New Fork (PID: 6428, Parent: 6426)
- gpu-manager New Fork (PID: 6429, Parent: 6426)
- gpu-manager New Fork (PID: 6430, Parent: 6426)
- gpu-manager New Fork (PID: 6431, Parent: 6426)
- gpu-manager New Fork (PID: 6432, Parent: 6426)
- gpu-manager New Fork (PID: 6433, Parent: 6426)
- gpu-manager New Fork (PID: 6434, Parent: 6426)
- gpu-manager New Fork (PID: 6435, Parent: 6426)
- systemd (deleted) New Fork (PID: 6427, Parent: 1)
- systemd (deleted) New Fork (PID: 6436, Parent: 1)
- systemd (deleted) New Fork (PID: 6437, Parent: 1)
- systemd (deleted) New Fork (PID: 6438, Parent: 1)
- gpu-manager New Fork (PID: 6439, Parent: 6438)
- gpu-manager New Fork (PID: 6440, Parent: 6438)
- gpu-manager New Fork (PID: 6441, Parent: 6438)
- gpu-manager New Fork (PID: 6442, Parent: 6438)
- gpu-manager New Fork (PID: 6443, Parent: 6438)
- gpu-manager New Fork (PID: 6444, Parent: 6438)
- gpu-manager New Fork (PID: 6445, Parent: 6438)
- gpu-manager New Fork (PID: 6446, Parent: 6438)
- systemd (deleted) New Fork (PID: 6447, Parent: 1)
- systemd (deleted) New Fork (PID: 6448, Parent: 1)
- gpu-manager New Fork (PID: 6449, Parent: 6448)
- gpu-manager New Fork (PID: 6450, Parent: 6448)
- gpu-manager New Fork (PID: 6451, Parent: 6448)
- gpu-manager New Fork (PID: 6452, Parent: 6448)
- gpu-manager New Fork (PID: 6453, Parent: 6448)
- gpu-manager New Fork (PID: 6454, Parent: 6448)
- gpu-manager New Fork (PID: 6455, Parent: 6448)
- gpu-manager New Fork (PID: 6456, Parent: 6448)
- systemd (deleted) New Fork (PID: 6457, Parent: 1)
- systemd (deleted) New Fork (PID: 6458, Parent: 1)
- gpu-manager New Fork (PID: 6459, Parent: 6458)
- gpu-manager New Fork (PID: 6460, Parent: 6458)
- gpu-manager New Fork (PID: 6461, Parent: 6458)
- gpu-manager New Fork (PID: 6462, Parent: 6458)
- gpu-manager New Fork (PID: 6463, Parent: 6458)
- gpu-manager New Fork (PID: 6464, Parent: 6458)
- gpu-manager New Fork (PID: 6465, Parent: 6458)
- gpu-manager New Fork (PID: 6466, Parent: 6458)
- systemd (deleted) New Fork (PID: 6467, Parent: 1)
- systemd (deleted) New Fork (PID: 6468, Parent: 1)
- gpu-manager New Fork (PID: 6469, Parent: 6468)
- gpu-manager New Fork (PID: 6470, Parent: 6468)
- gpu-manager New Fork (PID: 6471, Parent: 6468)
- gpu-manager New Fork (PID: 6472, Parent: 6468)
- gpu-manager New Fork (PID: 6473, Parent: 6468)
- gpu-manager New Fork (PID: 6474, Parent: 6468)
- gpu-manager New Fork (PID: 6475, Parent: 6468)
- gpu-manager New Fork (PID: 6476, Parent: 6468)
- systemd (deleted) New Fork (PID: 6477, Parent: 1)
- systemd (deleted) New Fork (PID: 6478, Parent: 1)
- systemd (deleted) New Fork (PID: 6480, Parent: 1860)
- cleanup
Name | Description | Attribution | Blogpost URLs | Link |
---|---|---|---|---|
Mirai | Mirai is one of the first significant botnets targeting exposed networking devices running Linux. Found in August 2016 by MalwareMustDie, its name means "future" in Japanese. Nowadays it targets a wide range of networked embedded devices such as IP cameras, home routers (many vendors involved), and other IoT devices. Since the source code was published on "Hack Forums" many variants of the Mirai family appeared, infecting mostly home networks all around the world. | No Attribution |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_Mirai_9 | Yara detected Mirai | Joe Security | ||
JoeSecurity_Mirai_5 | Yara detected Mirai | Joe Security | ||
JoeSecurity_Mirai_8 | Yara detected Mirai | Joe Security | ||
Linux_Trojan_Gafgyt_28a2fe0c | unknown | unknown |
| |
Linux_Trojan_Gafgyt_ea92cca8 | unknown | unknown |
| |
Click to see the 61 entries |
- • AV Detection
- • Bitcoin Miner
- • Networking
- • System Summary
- • Data Obfuscation
- • Persistence and Installation Behavior
- • Hooking and other Techniques for Hiding and Protection
- • Malware Analysis System Evasion
- • Stealing of Sensitive Information
- • Remote Access Functionality
Click to jump to signature section
AV Detection |
---|
Source: | Virustotal: | Perma Link | ||
Source: | ReversingLabs: |
Source: | Reads CPU info from /sys: | Jump to behavior | ||
Source: | Reads CPU info from /sys: | Jump to behavior |
Source: | TCP traffic: |
Source: | HTTP traffic detected: |
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
System Summary |
---|
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior |
Source: | Program segment: |
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior |
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Classification label: |
Data Obfuscation |
---|
Source: | String containing UPX found: | ||
Source: | String containing UPX found: | ||
Source: | String containing UPX found: |
Persistence and Installation Behavior |
---|
Source: | File: | Jump to behavior |
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior |
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior |
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior |
Source: | Pkill executable: | Jump to behavior |
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior |
Source: | Log file created: | |||
Source: | Log file created: | |||
Source: | Log file created: | |||
Source: | Log file created: | |||
Source: | Log file created: | |||
Source: | Log file created: | Jump to dropped file |
Hooking and other Techniques for Hiding and Protection |
---|
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior |
Source: | Submission file: |
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior |
Source: | Reads CPU info from /sys: | Jump to behavior | ||
Source: | Reads CPU info from /sys: | Jump to behavior |
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Stealing of Sensitive Information |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Remote Access Functionality |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | 1 Scripting | Valid Accounts | Windows Management Instrumentation | 1 Scripting | Path Interception | 1 File and Directory Permissions Modification | 1 OS Credential Dumping | 11 Security Software Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | 1 Service Stop |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Disable or Modify Tools | LSASS Memory | 1 File and Directory Discovery | Remote Desktop Protocol | Data from Removable Media | 1 Non-Standard Port | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 11 Obfuscated Files or Information | Security Account Manager | 1 System Information Discovery | SMB/Windows Admin Shares | Data from Network Shared Drive | 2 Non-Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | 1 Indicator Removal | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Application Layer Protocol | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | 1 File Deletion | LSA Secrets | Internet Connection Discovery | SSH | Keylogging | Fallback Channels | Scheduled Transfer | Data Encrypted for Impact |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
39% | Virustotal | Browse | ||
44% | ReversingLabs | Linux.Trojan.Mirai |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
daisy.ubuntu.com | 162.213.35.24 | true | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
99.218.242.172 | unknown | Canada | 812 | ROGERS-COMMUNICATIONSCA | false | |
14.237.24.37 | unknown | Viet Nam | 45899 | VNPT-AS-VNVNPTCorpVN | false | |
175.137.38.180 | unknown | Malaysia | 4788 | TMNET-AS-APTMNetInternetServiceProviderMY | false | |
213.197.231.129 | unknown | Netherlands | 15879 | KPN-INTERNEDSERVICESNL | false | |
123.155.84.221 | unknown | China | 4837 | CHINA169-BACKBONECHINAUNICOMChina169BackboneCN | false | |
145.95.187.147 | unknown | Netherlands | 1103 | SURFNET-NLSURFnetTheNetherlandsNL | false | |
219.181.211.83 | unknown | Japan | 17676 | GIGAINFRASoftbankBBCorpJP | false | |
175.31.116.136 | unknown | China | 4134 | CHINANET-BACKBONENo31Jin-rongStreetCN | false | |
69.107.250.149 | unknown | United States | 7018 | ATT-INTERNET4US | false | |
217.73.118.81 | unknown | Russian Federation | 50299 | TYFON-ASRU | false | |
37.26.158.151 | unknown | Sweden | 48093 | WEBLAND-CORE-NETSE | false | |
159.113.142.128 | unknown | United States | 32982 | DOE-HQUS | false | |
12.65.219.123 | unknown | United States | 7018 | ATT-INTERNET4US | false | |
255.231.126.209 | unknown | Reserved | unknown | unknown | false | |
111.75.162.99 | unknown | China | 4134 | CHINANET-BACKBONENo31Jin-rongStreetCN | false | |
5.168.65.102 | unknown | Italy | 16232 | ASN-TIMServiceProviderIT | false | |
176.136.254.52 | unknown | France | 5410 | BOUYGTEL-ISPFR | false | |
114.22.137.203 | unknown | Japan | 2516 | KDDIKDDICORPORATIONJP | false | |
91.189.91.43 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false | |
91.189.91.42 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false | |
114.133.81.108 | unknown | Malaysia | 56046 | CMNET-JIANGSU-APChinaMobilecommunicationscorporationCN | false | |
176.78.240.216 | unknown | Portugal | 3243 | MEO-RESIDENCIALPT | false | |
254.214.155.213 | unknown | Reserved | unknown | unknown | false | |
249.44.129.65 | unknown | Reserved | unknown | unknown | false | |
96.163.229.68 | unknown | United States | 7922 | COMCAST-7922US | false | |
219.59.187.253 | unknown | Japan | 17676 | GIGAINFRASoftbankBBCorpJP | false | |
88.226.104.38 | unknown | Turkey | 9121 | TTNETTR | false | |
154.13.177.194 | unknown | United States | 174 | COGENT-174US | false | |
188.54.209.142 | unknown | Saudi Arabia | 25019 | SAUDINETSTC-ASSA | false | |
47.6.234.127 | unknown | United States | 20115 | CHARTER-20115US | false | |
244.183.230.6 | unknown | Reserved | unknown | unknown | false | |
186.94.165.35 | unknown | Venezuela | 8048 | CANTVServiciosVenezuelaVE | false | |
85.151.108.48 | unknown | Germany | 5390 | EURONETNL | false | |
20.62.246.152 | unknown | United States | 8075 | MICROSOFT-CORP-MSN-AS-BLOCKUS | false | |
170.239.159.143 | unknown | Brazil | 28198 | IsimplesTelecomeHardwareLtdaBR | false | |
168.94.42.87 | unknown | United States | 11596 | BESTBUYUS | false | |
87.51.83.17 | unknown | Denmark | 3292 | TDCTDCASDK | false | |
17.113.249.224 | unknown | United States | 714 | APPLE-ENGINEERINGUS | false | |
194.105.57.95 | unknown | Italy | 21176 | ASN-DEBISIT | false | |
27.178.85.117 | unknown | Korea Republic of | 9644 | SKTELECOM-NET-ASSKTelecomKR | false | |
95.153.205.74 | unknown | Russian Federation | 29497 | KUBANGSMRU | false | |
120.96.146.140 | unknown | Taiwan; Republic of China (ROC) | 17716 | NTU-TWNationalTaiwanUniversityTW | false | |
201.176.104.18 | unknown | Argentina | 22927 | TelefonicadeArgentinaAR | false | |
105.53.32.118 | unknown | Kenya | 33771 | SAFARICOM-LIMITEDKE | false | |
17.178.100.66 | unknown | United States | 714 | APPLE-ENGINEERINGUS | false | |
17.107.170.66 | unknown | United States | 714 | APPLE-ENGINEERINGUS | false | |
67.1.238.178 | unknown | United States | 209 | CENTURYLINK-US-LEGACY-QWESTUS | false | |
72.243.88.50 | unknown | United States | 7029 | WINDSTREAMUS | false | |
146.59.188.32 | unknown | Norway | 16276 | OVHFR | false | |
183.62.48.167 | unknown | China | 4816 | CHINANET-IDC-GDChinaTelecomGroupCN | false | |
109.160.136.193 | unknown | Israel | 12400 | PARTNER-ASIL | false | |
160.70.13.210 | unknown | Germany | 21293 | ASN-NRKNRKAutonomousSystemNO | false | |
88.205.125.52 | unknown | Germany | 12676 | NCORE-ASHochstadenstr5DE | false | |
190.136.166.254 | unknown | Argentina | 7303 | TelecomArgentinaSAAR | false | |
146.158.1.144 | unknown | Czech Republic | 43849 | SEVER-SVYAZ-ASNoyabrskYNAORU | false | |
121.220.221.113 | unknown | Australia | 1221 | ASN-TELSTRATelstraCorporationLtdAU | false | |
108.172.240.181 | unknown | Canada | 852 | ASN852CA | false | |
76.236.3.251 | unknown | United States | 7018 | ATT-INTERNET4US | false | |
4.184.114.7 | unknown | United States | 3356 | LEVEL3US | false | |
178.195.0.18 | unknown | Switzerland | 3303 | SWISSCOMSwisscomSwitzerlandLtdCH | false | |
245.224.70.75 | unknown | Reserved | unknown | unknown | false | |
154.1.62.160 | unknown | United States | 37680 | COOL-IDEASZA | false | |
161.229.100.105 | unknown | Singapore | 396269 | BPL-ASNUS | false | |
213.209.129.92 | unknown | Germany | 42821 | RAPIDNET-DEHaunstetterStr19DE | false | |
108.240.174.189 | unknown | United States | 7018 | ATT-INTERNET4US | false | |
95.52.159.210 | unknown | Russian Federation | 12389 | ROSTELECOM-ASRU | false | |
181.64.11.132 | unknown | Peru | 6147 | TelefonicadelPeruSAAPE | false | |
117.243.50.138 | unknown | India | 9829 | BSNL-NIBNationalInternetBackboneIN | false | |
104.108.101.199 | unknown | United States | 16625 | AKAMAI-ASUS | false | |
23.86.35.18 | unknown | United States | 395954 | LEASEWEB-USA-LAX-11US | false | |
70.80.151.138 | unknown | Canada | 5769 | VIDEOTRONCA | false | |
177.119.97.37 | unknown | Brazil | 26599 | TELEFONICABRASILSABR | false | |
40.75.181.5 | unknown | United States | 8075 | MICROSOFT-CORP-MSN-AS-BLOCKUS | false | |
14.209.51.203 | unknown | China | 4134 | CHINANET-BACKBONENo31Jin-rongStreetCN | false | |
186.83.236.137 | unknown | Colombia | 10620 | TelmexColombiaSACO | false | |
193.58.198.34 | unknown | United Kingdom | 16160 | SWANBratislavaSlovakiaSK | false | |
16.59.70.176 | unknown | United States | unknown | unknown | false | |
185.69.53.235 | unknown | Lithuania | 62282 | RACKRAYUABRakrejusLT | false | |
17.142.236.129 | unknown | United States | 714 | APPLE-ENGINEERINGUS | false | |
17.197.255.47 | unknown | United States | 714 | APPLE-ENGINEERINGUS | false | |
162.213.35.25 | unknown | United States | 41231 | CANONICAL-ASGB | false | |
44.80.77.10 | unknown | United States | 7377 | UCSDUS | false | |
222.142.55.135 | unknown | China | 4837 | CHINA169-BACKBONECHINAUNICOMChina169BackboneCN | false | |
243.26.147.251 | unknown | Reserved | unknown | unknown | false | |
74.179.8.59 | unknown | United States | 10796 | TWC-10796-MIDWESTUS | false | |
156.239.56.12 | unknown | Seychelles | 8100 | ASN-QUADRANET-GLOBALUS | false | |
167.245.3.153 | unknown | United States | 17161 | MARSHUS | false | |
102.55.170.147 | unknown | Morocco | 6713 | IAM-ASMA | false | |
112.222.141.255 | unknown | Korea Republic of | 3786 | LGDACOMLGDACOMCorporationKR | false | |
13.141.213.197 | unknown | United States | 7018 | ATT-INTERNET4US | false | |
151.212.151.129 | unknown | United Kingdom | 11003 | PANDGUS | false | |
96.40.232.165 | unknown | United States | 20115 | CHARTER-20115US | false | |
126.196.152.33 | unknown | Japan | 17676 | GIGAINFRASoftbankBBCorpJP | false | |
70.89.149.56 | unknown | United States | 7922 | COMCAST-7922US | false | |
40.53.69.94 | unknown | United States | 4249 | LILLY-ASUS | false | |
151.221.212.102 | unknown | unknown | 11003 | PANDGUS | false | |
5.36.223.206 | unknown | Oman | 28885 | OMANTEL-NAP-ASOmanTelNAPOM | false | |
202.81.111.35 | unknown | Australia | 58521 | GARENA-SGGarenaOnlinePteLtdSG | false | |
24.127.115.50 | unknown | United States | 7922 | COMCAST-7922US | false | |
174.130.227.45 | unknown | United States | 7029 | WINDSTREAMUS | false |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
91.189.91.43 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Prometei | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Prometei | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
91.189.91.42 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Prometei | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Prometei | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
daisy.ubuntu.com | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
ROGERS-COMMUNICATIONSCA | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
VNPT-AS-VNVNPTCorpVN | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
TMNET-AS-APTMNetInternetServiceProviderMY | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher, Invisible JS, Tycoon2FA | Browse |
| ||
KPN-INTERNEDSERVICESNL | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai, Gafgyt | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
|
Process: | /usr/bin/pulseaudio |
File Type: | |
Category: | dropped |
Size (bytes): | 10 |
Entropy (8bit): | 2.9219280948873623 |
Encrypted: | false |
SSDEEP: | 3:5bkPn:pkP |
MD5: | FF001A15CE15CF062A3704CEA2991B5F |
SHA1: | B06F6855F376C3245B82212AC73ADED55DFE5DEF |
SHA-256: | C54830B41ECFA1B6FBDC30397188DDA86B7B200E62AEAC21AE694A6192DCC38A |
SHA-512: | 65EBF7C31F6F65713CE01B38A112E97D0AE64A6BD1DA40CE4C1B998F10CD3912EE1A48BB2B279B24493062118AAB3B8753742E2AF28E56A31A7AAB27DE80E7BF |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | /usr/bin/pulseaudio |
File Type: | |
Category: | dropped |
Size (bytes): | 18 |
Entropy (8bit): | 3.4613201402110088 |
Encrypted: | false |
SSDEEP: | 3:5bkrIZsXvn:pkckv |
MD5: | 28FE6435F34B3367707BB1C5D5F6B430 |
SHA1: | EB8FE2D16BD6BBCCE106C94E4D284543B2573CF6 |
SHA-256: | 721A37C69E555799B41D308849E8F8125441883AB021B723FED90A9B744F36C0 |
SHA-512: | 6B6AB7C0979629D0FEF6BE47C5C6BCC367EDD0AAE3FC973F4DE2FD5F0A819C89E7656DB65D453B1B5398E54012B27EDFE02894AD87A7E0AF3A9C5F2EB24A9919 |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | /usr/sbin/gdm3 |
File Type: | |
Category: | dropped |
Size (bytes): | 5 |
Entropy (8bit): | 2.321928094887362 |
Encrypted: | false |
SSDEEP: | 3:X2:G |
MD5: | C6733A10A907D115736253130FFC1E16 |
SHA1: | 4894C014175828BF6AC22FA3EFA33CFDD3905436 |
SHA-256: | 6090476896F07F4B60F5CB387CD33A06A2BD5A60E597618A817AA51C7865F9C1 |
SHA-512: | C4D174E5E837EF62A2EDC53DFC0079815A0B97A267CABAB40B6D3BA86CAD2AA58D6CDF53DD6F9DA47405B83C1D0BEC6AF6A67269C1B8D5F4572CDD1B3E54479A |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | /usr/bin/pulseaudio |
File Type: | |
Category: | dropped |
Size (bytes): | 5 |
Entropy (8bit): | 2.321928094887362 |
Encrypted: | false |
SSDEEP: | 3:bJn:ln |
MD5: | CA784DEF220BBE896ADAA8AEB77DD167 |
SHA1: | 5ABA13B73A989708B0F8672D9E5F126F763969EB |
SHA-256: | 1E8E9D144C8FDB15B92D37E4910B9B11B8786F7657CF1004F609BA3991A2093D |
SHA-512: | B915AC509EE80D5B777EC1F4DAE0F039173E3521EC93543A2F1811C4A34423F667DF657155B1310E621C7A432D84D0656D475CA932E59A4B43F357DDD268B3F0 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | /usr/bin/gpu-manager |
File Type: | |
Category: | dropped |
Size (bytes): | 25 |
Entropy (8bit): | 2.7550849518197795 |
Encrypted: | false |
SSDEEP: | 3:JoT/V9fDVbn:M/V3n |
MD5: | 078760523943E160756979906B85FB5E |
SHA1: | 0962643266F4C5537F7D125046F28F21D6DD0C89 |
SHA-256: | 048416AC7A9A99690B8B53718CD39F32F637B55CC8DD8E67E58E5AEF060DD41C |
SHA-512: | DEFAAE8F8B54C61A716A0B0B4884358FEB8EB44DFEA01AAA5A687FDA7182792B7DEBB34AA840672EB3B40EB59FD0186749E08E47D181786C7FAA8C8F73F0104D |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | /usr/bin/gpu-manager |
File Type: | |
Category: | dropped |
Size (bytes): | 1371 |
Entropy (8bit): | 4.8296848499188485 |
Encrypted: | false |
SSDEEP: | 24:wPXXX9uV6BNu3WDF3GF3XFFxFFed2uk2HUvJlfWkpPpx7uvvAdow9555cJz:wPXXXe6vejpeC2HUR5WkpPpcvAdow95O |
MD5: | 3AF77E630DA00B3BE24F4E8AA5D78B13 |
SHA1: | BCF2D99E002F6DE2413A183227B011CFBEF5673D |
SHA-256: | EB1CBBA20845237B4409274D693FEAE13F835274DA3337B7A9D14F4D7FDF9DEA |
SHA-512: | 8524B1E8A761F962B32F396812099B9B0B2DCF3C9FCA8605424753CFCFF4DC67EDC5EE1D8C91B9C0ED7FAE6BB1E752898B8D514B7C421D1839D6FEDA609C593C |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
File type: | |
Entropy (8bit): | 7.899818688272102 |
TrID: |
|
File name: | xd.mips.elf |
File size: | 30'960 bytes |
MD5: | 342e23bbcc7b5b70d43f0335323dc82d |
SHA1: | ac3c550c5555caa170381bbee534394c2ea1d776 |
SHA256: | c5bd0777ae7e457a3d40dd6fa5d604cc93ca845389dc5e732fd1c7591eb04d15 |
SHA512: | 637f3efcd41610d7c4bc544fdd0f064bffdce9bade6041a589def88b1a1f2b2af8c6152caec187b92b99063b08680799c797b4623f9c71771fa725a980ccfe22 |
SSDEEP: | 768:ih1AbbA5cYnQttg2C39wYt/I6wOYnJgGlzDpbuR1J1:ILvQtZlYtG7lVJuf |
TLSH: | 61D2E19A1B0049AED45684F76AF082453A6046736CD0ADD7BD0EF6A7DB293E074F79C0 |
File Content Preview: | .ELF......................dx...4.........4. ...(......................w...w...............[X.E[X.E[X....................UPX!.h........X...X........U.......?.E.h4...@b..) ..]....E......Rfp.EPD0@..n..y..O1..V.c..P...P..kG*..c.:..;.7.q:.$.P..N...`........... |
ELF header | |
---|---|
Class: | |
Data: | |
Version: | |
Machine: | |
Version Number: | |
Type: | |
OS/ABI: | |
ABI Version: | 0 |
Entry Point Address: | |
Flags: | |
ELF Header Size: | 52 |
Program Header Offset: | 52 |
Program Header Size: | 32 |
Number of Program Headers: | 2 |
Section Header Offset: | 0 |
Section Header Size: | 40 |
Number of Section Headers: | 0 |
Header String Table Index: | 0 |
Type | Offset | Virtual Address | Physical Address | File Size | Memory Size | Entropy | Flags | Flags Description | Align | Prog Interpreter | Section Mappings |
---|---|---|---|---|---|---|---|---|---|---|---|
LOAD | 0x0 | 0x100000 | 0x100000 | 0x77bc | 0x77bc | 7.9033 | 0x5 | R E | 0x10000 | ||
LOAD | 0x5b58 | 0x455b58 | 0x455b58 | 0x0 | 0x0 | 0.0000 | 0x6 | RW | 0x10000 |
Download Network PCAP: filtered – full
- Total Packets: 202
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 2, 2025 21:58:21.792273998 CEST | 60526 | 7887 | 192.168.2.23 | 213.209.129.92 |
Apr 2, 2025 21:58:21.813446045 CEST | 11711 | 23 | 192.168.2.23 | 175.137.38.180 |
Apr 2, 2025 21:58:21.813448906 CEST | 11711 | 23 | 192.168.2.23 | 17.142.236.129 |
Apr 2, 2025 21:58:21.813468933 CEST | 11711 | 23 | 192.168.2.23 | 12.74.131.132 |
Apr 2, 2025 21:58:21.813489914 CEST | 11711 | 23 | 192.168.2.23 | 183.62.48.167 |
Apr 2, 2025 21:58:21.813498020 CEST | 11711 | 23 | 192.168.2.23 | 188.54.209.142 |
Apr 2, 2025 21:58:21.813518047 CEST | 11711 | 23 | 192.168.2.23 | 213.197.231.129 |
Apr 2, 2025 21:58:21.813535929 CEST | 11711 | 23 | 192.168.2.23 | 70.80.151.138 |
Apr 2, 2025 21:58:21.813548088 CEST | 11711 | 23 | 192.168.2.23 | 146.158.1.144 |
Apr 2, 2025 21:58:21.813585997 CEST | 11711 | 23 | 192.168.2.23 | 96.163.229.68 |
Apr 2, 2025 21:58:21.813589096 CEST | 11711 | 23 | 192.168.2.23 | 67.1.238.178 |
Apr 2, 2025 21:58:21.813594103 CEST | 11711 | 23 | 192.168.2.23 | 14.237.24.37 |
Apr 2, 2025 21:58:21.813626051 CEST | 11711 | 23 | 192.168.2.23 | 244.183.230.6 |
Apr 2, 2025 21:58:21.813635111 CEST | 11711 | 23 | 192.168.2.23 | 176.78.240.216 |
Apr 2, 2025 21:58:21.813642025 CEST | 11711 | 23 | 192.168.2.23 | 12.65.219.123 |
Apr 2, 2025 21:58:21.813642025 CEST | 11711 | 23 | 192.168.2.23 | 105.53.32.118 |
Apr 2, 2025 21:58:21.813652039 CEST | 11711 | 23 | 192.168.2.23 | 106.142.130.3 |
Apr 2, 2025 21:58:21.813652039 CEST | 11711 | 23 | 192.168.2.23 | 255.231.126.209 |
Apr 2, 2025 21:58:21.813657999 CEST | 11711 | 23 | 192.168.2.23 | 123.155.84.221 |
Apr 2, 2025 21:58:21.813657999 CEST | 11711 | 23 | 192.168.2.23 | 121.220.221.113 |
Apr 2, 2025 21:58:21.813678026 CEST | 11711 | 23 | 192.168.2.23 | 18.142.166.87 |
Apr 2, 2025 21:58:21.813678026 CEST | 11711 | 23 | 192.168.2.23 | 181.64.11.132 |
Apr 2, 2025 21:58:21.813711882 CEST | 11711 | 23 | 192.168.2.23 | 217.73.118.81 |
Apr 2, 2025 21:58:21.813720942 CEST | 11711 | 23 | 192.168.2.23 | 117.243.50.138 |
Apr 2, 2025 21:58:21.813721895 CEST | 11711 | 23 | 192.168.2.23 | 176.32.194.2 |
Apr 2, 2025 21:58:21.813724041 CEST | 11711 | 23 | 192.168.2.23 | 20.62.246.152 |
Apr 2, 2025 21:58:21.813724041 CEST | 11711 | 23 | 192.168.2.23 | 201.176.104.18 |
Apr 2, 2025 21:58:21.813731909 CEST | 11711 | 23 | 192.168.2.23 | 95.172.183.223 |
Apr 2, 2025 21:58:21.813756943 CEST | 11711 | 23 | 192.168.2.23 | 216.234.201.113 |
Apr 2, 2025 21:58:21.813785076 CEST | 11711 | 23 | 192.168.2.23 | 40.75.181.5 |
Apr 2, 2025 21:58:21.813797951 CEST | 11711 | 23 | 192.168.2.23 | 206.140.40.144 |
Apr 2, 2025 21:58:21.813803911 CEST | 11711 | 23 | 192.168.2.23 | 202.81.111.35 |
Apr 2, 2025 21:58:21.813810110 CEST | 11711 | 23 | 192.168.2.23 | 42.195.43.114 |
Apr 2, 2025 21:58:21.813826084 CEST | 11711 | 23 | 192.168.2.23 | 108.240.174.189 |
Apr 2, 2025 21:58:21.813829899 CEST | 11711 | 23 | 192.168.2.23 | 74.179.8.59 |
Apr 2, 2025 21:58:21.813829899 CEST | 11711 | 23 | 192.168.2.23 | 202.172.193.181 |
Apr 2, 2025 21:58:21.813829899 CEST | 11711 | 23 | 192.168.2.23 | 186.94.165.35 |
Apr 2, 2025 21:58:21.813844919 CEST | 11711 | 23 | 192.168.2.23 | 76.236.3.251 |
Apr 2, 2025 21:58:21.813849926 CEST | 11711 | 23 | 192.168.2.23 | 193.58.198.34 |
Apr 2, 2025 21:58:21.813863993 CEST | 11711 | 23 | 192.168.2.23 | 86.112.20.12 |
Apr 2, 2025 21:58:21.813884974 CEST | 11711 | 23 | 192.168.2.23 | 114.22.137.203 |
Apr 2, 2025 21:58:21.813889980 CEST | 11711 | 23 | 192.168.2.23 | 109.160.136.193 |
Apr 2, 2025 21:58:21.813910007 CEST | 11711 | 23 | 192.168.2.23 | 186.141.135.10 |
Apr 2, 2025 21:58:21.813934088 CEST | 11711 | 23 | 192.168.2.23 | 144.41.1.111 |
Apr 2, 2025 21:58:21.813935995 CEST | 11711 | 23 | 192.168.2.23 | 126.196.152.33 |
Apr 2, 2025 21:58:21.813939095 CEST | 11711 | 23 | 192.168.2.23 | 193.80.159.223 |
Apr 2, 2025 21:58:21.813961983 CEST | 11711 | 23 | 192.168.2.23 | 156.239.56.12 |
Apr 2, 2025 21:58:21.813967943 CEST | 11711 | 23 | 192.168.2.23 | 142.212.178.53 |
Apr 2, 2025 21:58:21.813967943 CEST | 11711 | 23 | 192.168.2.23 | 111.75.162.99 |
Apr 2, 2025 21:58:21.813970089 CEST | 11711 | 23 | 192.168.2.23 | 2.162.124.54 |
Apr 2, 2025 21:58:21.813977003 CEST | 11711 | 23 | 192.168.2.23 | 4.184.114.7 |
Apr 2, 2025 21:58:21.813977957 CEST | 11711 | 23 | 192.168.2.23 | 145.95.187.147 |
Apr 2, 2025 21:58:21.814027071 CEST | 11711 | 23 | 192.168.2.23 | 17.197.255.47 |
Apr 2, 2025 21:58:21.814035892 CEST | 11711 | 23 | 192.168.2.23 | 178.195.0.18 |
Apr 2, 2025 21:58:21.814055920 CEST | 11711 | 23 | 192.168.2.23 | 139.18.43.139 |
Apr 2, 2025 21:58:21.814060926 CEST | 11711 | 23 | 192.168.2.23 | 213.70.7.213 |
Apr 2, 2025 21:58:21.814085960 CEST | 11711 | 23 | 192.168.2.23 | 85.151.108.48 |
Apr 2, 2025 21:58:21.814112902 CEST | 11711 | 23 | 192.168.2.23 | 156.52.17.234 |
Apr 2, 2025 21:58:21.814112902 CEST | 11711 | 23 | 192.168.2.23 | 77.85.48.179 |
Apr 2, 2025 21:58:21.814146996 CEST | 11711 | 23 | 192.168.2.23 | 17.178.100.66 |
Apr 2, 2025 21:58:21.814151049 CEST | 11711 | 23 | 192.168.2.23 | 159.216.144.171 |
Apr 2, 2025 21:58:21.814187050 CEST | 11711 | 23 | 192.168.2.23 | 88.226.104.38 |
Apr 2, 2025 21:58:21.814188957 CEST | 11711 | 23 | 192.168.2.23 | 158.193.160.146 |
Apr 2, 2025 21:58:21.814202070 CEST | 11711 | 23 | 192.168.2.23 | 14.252.151.97 |
Apr 2, 2025 21:58:21.814202070 CEST | 11711 | 23 | 192.168.2.23 | 190.136.166.254 |
Apr 2, 2025 21:58:21.814212084 CEST | 11711 | 23 | 192.168.2.23 | 120.96.146.140 |
Apr 2, 2025 21:58:21.814227104 CEST | 11711 | 23 | 192.168.2.23 | 77.118.136.111 |
Apr 2, 2025 21:58:21.814251900 CEST | 11711 | 23 | 192.168.2.23 | 174.130.227.45 |
Apr 2, 2025 21:58:21.814254045 CEST | 11711 | 23 | 192.168.2.23 | 186.83.236.137 |
Apr 2, 2025 21:58:21.814301014 CEST | 11711 | 23 | 192.168.2.23 | 78.156.58.186 |
Apr 2, 2025 21:58:21.814305067 CEST | 11711 | 23 | 192.168.2.23 | 245.80.212.0 |
Apr 2, 2025 21:58:21.814326048 CEST | 11711 | 23 | 192.168.2.23 | 37.26.158.151 |
Apr 2, 2025 21:58:21.814331055 CEST | 11711 | 23 | 192.168.2.23 | 95.246.196.234 |
Apr 2, 2025 21:58:21.814388990 CEST | 11711 | 23 | 192.168.2.23 | 13.141.213.197 |
Apr 2, 2025 21:58:21.814414978 CEST | 11711 | 23 | 192.168.2.23 | 5.168.65.102 |
Apr 2, 2025 21:58:21.814425945 CEST | 11711 | 23 | 192.168.2.23 | 177.119.97.37 |
Apr 2, 2025 21:58:21.814439058 CEST | 11711 | 23 | 192.168.2.23 | 84.14.222.134 |
Apr 2, 2025 21:58:21.814439058 CEST | 11711 | 23 | 192.168.2.23 | 16.59.70.176 |
Apr 2, 2025 21:58:21.814439058 CEST | 11711 | 23 | 192.168.2.23 | 219.181.211.83 |
Apr 2, 2025 21:58:21.814443111 CEST | 11711 | 23 | 192.168.2.23 | 114.133.81.108 |
Apr 2, 2025 21:58:21.814445019 CEST | 11711 | 23 | 192.168.2.23 | 245.224.70.75 |
Apr 2, 2025 21:58:21.814457893 CEST | 11711 | 23 | 192.168.2.23 | 84.219.156.129 |
Apr 2, 2025 21:58:21.814491987 CEST | 11711 | 23 | 192.168.2.23 | 185.69.53.235 |
Apr 2, 2025 21:58:21.814502954 CEST | 11711 | 23 | 192.168.2.23 | 151.212.151.129 |
Apr 2, 2025 21:58:21.814515114 CEST | 11711 | 23 | 192.168.2.23 | 96.40.232.165 |
Apr 2, 2025 21:58:21.814527988 CEST | 11711 | 23 | 192.168.2.23 | 194.105.57.95 |
Apr 2, 2025 21:58:21.814552069 CEST | 11711 | 23 | 192.168.2.23 | 243.26.147.251 |
Apr 2, 2025 21:58:21.814559937 CEST | 11711 | 23 | 192.168.2.23 | 104.108.101.199 |
Apr 2, 2025 21:58:21.814563036 CEST | 11711 | 23 | 192.168.2.23 | 5.36.223.206 |
Apr 2, 2025 21:58:21.814563036 CEST | 11711 | 23 | 192.168.2.23 | 17.107.170.66 |
Apr 2, 2025 21:58:21.814568996 CEST | 11711 | 23 | 192.168.2.23 | 112.222.141.255 |
Apr 2, 2025 21:58:21.814574003 CEST | 11711 | 23 | 192.168.2.23 | 99.32.229.162 |
Apr 2, 2025 21:58:21.814589977 CEST | 11711 | 23 | 192.168.2.23 | 108.172.240.181 |
Apr 2, 2025 21:58:21.814589977 CEST | 11711 | 23 | 192.168.2.23 | 27.178.85.117 |
Apr 2, 2025 21:58:21.814589977 CEST | 11711 | 23 | 192.168.2.23 | 160.70.13.210 |
Apr 2, 2025 21:58:21.814589977 CEST | 11711 | 23 | 192.168.2.23 | 254.214.155.213 |
Apr 2, 2025 21:58:21.814591885 CEST | 11711 | 23 | 192.168.2.23 | 242.30.219.219 |
Apr 2, 2025 21:58:21.814604998 CEST | 11711 | 23 | 192.168.2.23 | 36.88.166.174 |
Apr 2, 2025 21:58:21.814606905 CEST | 11711 | 23 | 192.168.2.23 | 151.221.212.102 |
Apr 2, 2025 21:58:21.814609051 CEST | 11711 | 23 | 192.168.2.23 | 170.239.159.143 |
Apr 2, 2025 21:58:21.814632893 CEST | 11711 | 23 | 192.168.2.23 | 67.181.143.250 |
Apr 2, 2025 21:58:21.814635038 CEST | 11711 | 23 | 192.168.2.23 | 175.31.116.136 |
Apr 2, 2025 21:58:21.814635038 CEST | 11711 | 23 | 192.168.2.23 | 216.214.159.24 |
Apr 2, 2025 21:58:21.814654112 CEST | 11711 | 23 | 192.168.2.23 | 222.147.212.119 |
Apr 2, 2025 21:58:21.814661026 CEST | 11711 | 23 | 192.168.2.23 | 173.41.61.2 |
Apr 2, 2025 21:58:21.814661980 CEST | 11711 | 23 | 192.168.2.23 | 123.228.228.157 |
Apr 2, 2025 21:58:21.814707994 CEST | 11711 | 23 | 192.168.2.23 | 17.113.249.224 |
Apr 2, 2025 21:58:21.814708948 CEST | 11711 | 23 | 192.168.2.23 | 95.52.159.210 |
Apr 2, 2025 21:58:21.814724922 CEST | 11711 | 23 | 192.168.2.23 | 222.142.55.135 |
Apr 2, 2025 21:58:21.814726114 CEST | 11711 | 23 | 192.168.2.23 | 14.209.51.203 |
Apr 2, 2025 21:58:21.814735889 CEST | 11711 | 23 | 192.168.2.23 | 168.94.42.87 |
Apr 2, 2025 21:58:21.814743996 CEST | 11711 | 23 | 192.168.2.23 | 88.205.125.52 |
Apr 2, 2025 21:58:21.814755917 CEST | 11711 | 23 | 192.168.2.23 | 147.138.211.171 |
Apr 2, 2025 21:58:21.814760923 CEST | 11711 | 23 | 192.168.2.23 | 67.9.109.45 |
Apr 2, 2025 21:58:21.814764023 CEST | 11711 | 23 | 192.168.2.23 | 44.80.77.10 |
Apr 2, 2025 21:58:21.814766884 CEST | 11711 | 23 | 192.168.2.23 | 95.153.205.74 |
Apr 2, 2025 21:58:21.814789057 CEST | 11711 | 23 | 192.168.2.23 | 162.160.13.188 |
Apr 2, 2025 21:58:21.815068960 CEST | 11711 | 23 | 192.168.2.23 | 163.187.108.187 |
Apr 2, 2025 21:58:21.815074921 CEST | 11711 | 23 | 192.168.2.23 | 185.83.17.239 |
Apr 2, 2025 21:58:21.815080881 CEST | 11711 | 23 | 192.168.2.23 | 154.13.177.194 |
Apr 2, 2025 21:58:21.815119982 CEST | 11711 | 23 | 192.168.2.23 | 72.243.88.50 |
Apr 2, 2025 21:58:21.815121889 CEST | 11711 | 23 | 192.168.2.23 | 77.93.31.221 |
Apr 2, 2025 21:58:21.815139055 CEST | 11711 | 23 | 192.168.2.23 | 159.113.142.128 |
Apr 2, 2025 21:58:21.815140009 CEST | 11711 | 23 | 192.168.2.23 | 182.52.45.206 |
Apr 2, 2025 21:58:21.815139055 CEST | 11711 | 23 | 192.168.2.23 | 154.1.62.160 |
Apr 2, 2025 21:58:21.815150976 CEST | 11711 | 23 | 192.168.2.23 | 92.28.75.56 |
Apr 2, 2025 21:58:21.815171957 CEST | 11711 | 23 | 192.168.2.23 | 39.40.31.152 |
Apr 2, 2025 21:58:21.815176010 CEST | 11711 | 23 | 192.168.2.23 | 23.86.35.18 |
Apr 2, 2025 21:58:21.815190077 CEST | 11711 | 23 | 192.168.2.23 | 47.6.234.127 |
Apr 2, 2025 21:58:21.815190077 CEST | 11711 | 23 | 192.168.2.23 | 70.89.149.56 |
Apr 2, 2025 21:58:21.815195084 CEST | 11711 | 23 | 192.168.2.23 | 142.92.161.124 |
Apr 2, 2025 21:58:21.815217018 CEST | 11711 | 23 | 192.168.2.23 | 241.31.45.231 |
Apr 2, 2025 21:58:21.815217018 CEST | 11711 | 23 | 192.168.2.23 | 13.0.166.226 |
Apr 2, 2025 21:58:21.815217972 CEST | 11711 | 23 | 192.168.2.23 | 176.136.254.52 |
Apr 2, 2025 21:58:21.815221071 CEST | 11711 | 23 | 192.168.2.23 | 69.107.250.149 |
Apr 2, 2025 21:58:21.815222979 CEST | 11711 | 23 | 192.168.2.23 | 114.91.84.233 |
Apr 2, 2025 21:58:21.815232992 CEST | 11711 | 23 | 192.168.2.23 | 255.19.103.101 |
Apr 2, 2025 21:58:21.815233946 CEST | 11711 | 23 | 192.168.2.23 | 87.51.83.17 |
Apr 2, 2025 21:58:21.815251112 CEST | 11711 | 23 | 192.168.2.23 | 40.53.69.94 |
Apr 2, 2025 21:58:21.815252066 CEST | 11711 | 23 | 192.168.2.23 | 146.59.188.32 |
Apr 2, 2025 21:58:21.815268040 CEST | 11711 | 23 | 192.168.2.23 | 42.109.233.62 |
Apr 2, 2025 21:58:21.815280914 CEST | 11711 | 23 | 192.168.2.23 | 219.59.187.253 |
Apr 2, 2025 21:58:21.815296888 CEST | 11711 | 23 | 192.168.2.23 | 24.127.115.50 |
Apr 2, 2025 21:58:21.815346003 CEST | 11711 | 23 | 192.168.2.23 | 249.44.129.65 |
Apr 2, 2025 21:58:21.815346956 CEST | 11711 | 23 | 192.168.2.23 | 167.245.3.153 |
Apr 2, 2025 21:58:21.815359116 CEST | 11711 | 23 | 192.168.2.23 | 161.229.100.105 |
Apr 2, 2025 21:58:21.815380096 CEST | 11711 | 23 | 192.168.2.23 | 172.37.179.209 |
Apr 2, 2025 21:58:21.815381050 CEST | 11711 | 23 | 192.168.2.23 | 42.142.170.20 |
Apr 2, 2025 21:58:21.815413952 CEST | 11711 | 23 | 192.168.2.23 | 71.101.46.39 |
Apr 2, 2025 21:58:21.815440893 CEST | 11711 | 23 | 192.168.2.23 | 124.183.73.109 |
Apr 2, 2025 21:58:21.815440893 CEST | 11711 | 23 | 192.168.2.23 | 181.231.211.118 |
Apr 2, 2025 21:58:21.815444946 CEST | 11711 | 23 | 192.168.2.23 | 206.206.164.160 |
Apr 2, 2025 21:58:21.815444946 CEST | 11711 | 23 | 192.168.2.23 | 102.55.170.147 |
Apr 2, 2025 21:58:21.815494061 CEST | 11711 | 23 | 192.168.2.23 | 99.218.242.172 |
Apr 2, 2025 21:58:22.020771027 CEST | 7887 | 60526 | 213.209.129.92 | 192.168.2.23 |
Apr 2, 2025 21:58:22.020899057 CEST | 60526 | 7887 | 192.168.2.23 | 213.209.129.92 |
Apr 2, 2025 21:58:22.481882095 CEST | 60526 | 7887 | 192.168.2.23 | 213.209.129.92 |
Apr 2, 2025 21:58:22.706264973 CEST | 7887 | 60526 | 213.209.129.92 | 192.168.2.23 |
Apr 2, 2025 21:58:22.706351042 CEST | 60526 | 7887 | 192.168.2.23 | 213.209.129.92 |
Apr 2, 2025 21:58:24.187520027 CEST | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Apr 2, 2025 21:58:24.955075979 CEST | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Apr 2, 2025 21:58:39.033145905 CEST | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Apr 2, 2025 21:58:46.261703968 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:46.261816978 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:46.261883974 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.536869049 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.536899090 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.779268980 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.779361963 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.779633999 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.779640913 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.779922962 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.779933929 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.780025005 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.780070066 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.780078888 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.780117035 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.780493975 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.824271917 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.976808071 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.976871014 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.976957083 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.976957083 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.976983070 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.976994991 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977026939 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977026939 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977036953 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977051020 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977070093 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977083921 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977092028 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977099895 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977113008 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977116108 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977139950 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977159023 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977247000 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977308989 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977319002 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977343082 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977343082 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977371931 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977615118 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977678061 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977686882 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977704048 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977713108 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977729082 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977729082 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977735996 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977750063 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977757931 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977775097 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977775097 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977777004 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977793932 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977793932 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977797031 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:47.977813959 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:47.977814913 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:48.020288944 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:48.406717062 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:48.406797886 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:48.406810045 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:48.406853914 CEST | 53068 | 443 | 192.168.2.23 | 162.213.35.25 |
Apr 2, 2025 21:58:48.406860113 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:48.406887054 CEST | 443 | 53068 | 162.213.35.25 | 192.168.2.23 |
Apr 2, 2025 21:58:51.319436073 CEST | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Apr 2, 2025 21:58:55.414942980 CEST | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Apr 2, 2025 21:59:19.987790108 CEST | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 2, 2025 21:58:45.996922970 CEST | 50022 | 53 | 192.168.2.23 | 1.1.1.1 |
Apr 2, 2025 21:58:45.996973991 CEST | 41225 | 53 | 192.168.2.23 | 1.1.1.1 |
Apr 2, 2025 21:58:46.102761030 CEST | 53 | 41225 | 1.1.1.1 | 192.168.2.23 |
Apr 2, 2025 21:58:46.111608028 CEST | 53 | 50022 | 1.1.1.1 | 192.168.2.23 |
Apr 2, 2025 21:58:46.155656099 CEST | 34963 | 53 | 192.168.2.23 | 1.1.1.1 |
Apr 2, 2025 21:58:46.256572008 CEST | 53 | 34963 | 1.1.1.1 | 192.168.2.23 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Apr 2, 2025 21:58:48.340548992 CEST | 192.168.2.23 | 192.168.2.1 | 8283 | (Port unreachable) | Destination Unreachable |
Apr 2, 2025 22:00:08.358928919 CEST | 192.168.2.23 | 192.168.2.1 | 8283 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 2, 2025 21:58:45.996922970 CEST | 192.168.2.23 | 1.1.1.1 | 0xa135 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 21:58:45.996973991 CEST | 192.168.2.23 | 1.1.1.1 | 0xf154 | Standard query (0) | 28 | IN (0x0001) | false | |
Apr 2, 2025 21:58:46.155656099 CEST | 192.168.2.23 | 1.1.1.1 | 0x27bc | Standard query (0) | 28 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 2, 2025 21:58:46.111608028 CEST | 1.1.1.1 | 192.168.2.23 | 0xa135 | No error (0) | 162.213.35.24 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 21:58:46.111608028 CEST | 1.1.1.1 | 192.168.2.23 | 0xa135 | No error (0) | 162.213.35.25 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.23 | 53068 | 162.213.35.25 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 19:58:47 UTC | 307 | OUT | |
2025-04-02 19:58:47 UTC | 25 | IN | |
2025-04-02 19:58:47 UTC | 16384 | OUT | |
2025-04-02 19:58:47 UTC | 16384 | OUT | |
2025-04-02 19:58:47 UTC | 16384 | OUT | |
2025-04-02 19:58:47 UTC | 16384 | OUT | |
2025-04-02 19:58:47 UTC | 16384 | OUT | |
2025-04-02 19:58:47 UTC | 16384 | OUT | |
2025-04-02 19:58:47 UTC | 16384 | OUT | |
2025-04-02 19:58:47 UTC | 16384 | OUT | |
2025-04-02 19:58:47 UTC | 16384 | OUT | |
2025-04-02 19:58:47 UTC | 16384 | OUT | |
2025-04-02 19:58:48 UTC | 279 | IN |
System Behavior
Start time (UTC): | 19:58:20 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.mips.elf |
Arguments: | /tmp/xd.mips.elf |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 19:58:20 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.mips.elf |
Arguments: | - |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 19:58:20 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.mips.elf |
Arguments: | - |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 19:58:20 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.mips.elf |
Arguments: | - |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 19:58:20 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.mips.elf |
Arguments: | - |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 19:58:20 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.mips.elf |
Arguments: | - |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 19:58:20 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.mips.elf |
Arguments: | - |
File size: | 5777432 bytes |
MD5 hash: | 0083f1f0e77be34ad27f849842bbb00c |
Start time (UTC): | 19:58:32 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:32 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/journalctl |
Arguments: | /usr/bin/journalctl --smart-relinquish-var |
File size: | 80120 bytes |
MD5 hash: | bf3a987344f3bacafc44efd882abda8b |
Start time (UTC): | 19:58:32 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:32 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:33 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:33 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:33 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/pulseaudio |
Arguments: | /usr/bin/pulseaudio --daemonize=no --log-target=journal |
File size: | 100832 bytes |
MD5 hash: | 0c3b4c789d8ffb12b25507f27e14c186 |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/sbin/gdm3 |
Arguments: | - |
File size: | 453296 bytes |
MD5 hash: | 2492e2d8d34f9377e3e530a61a15674f |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /etc/gdm3/PrimeOff/Default |
Arguments: | /etc/gdm3/PrimeOff/Default |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/sbin/gdm3 |
Arguments: | - |
File size: | 453296 bytes |
MD5 hash: | 2492e2d8d34f9377e3e530a61a15674f |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /etc/gdm3/PrimeOff/Default |
Arguments: | /etc/gdm3/PrimeOff/Default |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/sbin/gdm3 |
Arguments: | - |
File size: | 453296 bytes |
MD5 hash: | 2492e2d8d34f9377e3e530a61a15674f |
Start time (UTC): | 19:58:44 |
Start date (UTC): | 02/04/2025 |
Path: | /etc/gdm3/PrimeOff/Default |
Arguments: | /etc/gdm3/PrimeOff/Default |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:45 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:45 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:58:45 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:58:45 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /etc/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:45 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:45 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*nvidia[[:space:]]*$ /etc/modprobe.d/alsa-base.conf /etc/modprobe.d/amd64-microcode-blacklist.conf /etc/modprobe.d/blacklist-ath_pci.conf /etc/modprobe.d/blacklist-firewire.conf /etc/modprobe.d/blacklist-framebuffer.conf /etc/modprobe.d/blacklist-modem.conf /etc/modprobe.d/blacklist-oss.conf /etc/modprobe.d/blacklist-rare-network.conf /etc/modprobe.d/blacklist.conf /etc/modprobe.d/intel-microcode-blacklist.conf /etc/modprobe.d/iwlwifi.conf /etc/modprobe.d/mdadm.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /lib/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*nvidia[[:space:]]*$ /lib/modprobe.d/aliases.conf /lib/modprobe.d/blacklist_linux_5.4.0-72-generic.conf /lib/modprobe.d/blacklist_linux_5.4.0-81-generic.conf /lib/modprobe.d/fbdev-blacklist.conf /lib/modprobe.d/systemd.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /etc/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*radeon[[:space:]]*$ /etc/modprobe.d/alsa-base.conf /etc/modprobe.d/amd64-microcode-blacklist.conf /etc/modprobe.d/blacklist-ath_pci.conf /etc/modprobe.d/blacklist-firewire.conf /etc/modprobe.d/blacklist-framebuffer.conf /etc/modprobe.d/blacklist-modem.conf /etc/modprobe.d/blacklist-oss.conf /etc/modprobe.d/blacklist-rare-network.conf /etc/modprobe.d/blacklist.conf /etc/modprobe.d/intel-microcode-blacklist.conf /etc/modprobe.d/iwlwifi.conf /etc/modprobe.d/mdadm.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /lib/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*radeon[[:space:]]*$ /lib/modprobe.d/aliases.conf /lib/modprobe.d/blacklist_linux_5.4.0-72-generic.conf /lib/modprobe.d/blacklist_linux_5.4.0-81-generic.conf /lib/modprobe.d/fbdev-blacklist.conf /lib/modprobe.d/systemd.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /etc/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*amdgpu[[:space:]]*$ /etc/modprobe.d/alsa-base.conf /etc/modprobe.d/amd64-microcode-blacklist.conf /etc/modprobe.d/blacklist-ath_pci.conf /etc/modprobe.d/blacklist-firewire.conf /etc/modprobe.d/blacklist-framebuffer.conf /etc/modprobe.d/blacklist-modem.conf /etc/modprobe.d/blacklist-oss.conf /etc/modprobe.d/blacklist-rare-network.conf /etc/modprobe.d/blacklist.conf /etc/modprobe.d/intel-microcode-blacklist.conf /etc/modprobe.d/iwlwifi.conf /etc/modprobe.d/mdadm.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /lib/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:47 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*amdgpu[[:space:]]*$ /lib/modprobe.d/aliases.conf /lib/modprobe.d/blacklist_linux_5.4.0-72-generic.conf /lib/modprobe.d/blacklist_linux_5.4.0-81-generic.conf /lib/modprobe.d/fbdev-blacklist.conf /lib/modprobe.d/systemd.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 19:58:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:58:47 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*nouveau[[:space:]]*$\" /etc/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:47 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*nouveau[[:space:]]*$ /etc/modprobe.d/alsa-base.conf /etc/modprobe.d/amd64-microcode-blacklist.conf /etc/modprobe.d/blacklist-ath_pci.conf /etc/modprobe.d/blacklist-firewire.conf /etc/modprobe.d/blacklist-framebuffer.conf /etc/modprobe.d/blacklist-modem.conf /etc/modprobe.d/blacklist-oss.conf /etc/modprobe.d/blacklist-rare-network.conf /etc/modprobe.d/blacklist.conf /etc/modprobe.d/intel-microcode-blacklist.conf /etc/modprobe.d/iwlwifi.conf /etc/modprobe.d/mdadm.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 19:58:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:58:47 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*nouveau[[:space:]]*$\" /lib/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:47 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*nouveau[[:space:]]*$ /lib/modprobe.d/aliases.conf /lib/modprobe.d/blacklist_linux_5.4.0-72-generic.conf /lib/modprobe.d/blacklist_linux_5.4.0-81-generic.conf /lib/modprobe.d/fbdev-blacklist.conf /lib/modprobe.d/systemd.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/share/gdm/generate-config |
Arguments: | /usr/share/gdm/generate-config |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/share/gdm/generate-config |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 19:58:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/pkill |
Arguments: | pkill --signal HUP --uid gdm dconf-service |
File size: | 30968 bytes |
MD5 hash: | fa96a75a08109d8842e4865b2907d51f |
Start time (UTC): | 19:58:51 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:58:51 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/gdm3/gdm-wait-for-drm |
Arguments: | /usr/lib/gdm3/gdm-wait-for-drm |
File size: | 14640 bytes |
MD5 hash: | 82043ba752c6930b4e6aaea2f7747545 |
Start time (UTC): | 19:59:01 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:01 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/sbin/gdm3 |
Arguments: | /usr/sbin/gdm3 |
File size: | 453296 bytes |
MD5 hash: | 2492e2d8d34f9377e3e530a61a15674f |
Start time (UTC): | 19:59:01 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:01 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:01 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:01 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:01 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:17 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/libexec/gvfsd-fuse |
Arguments: | - |
File size: | 47632 bytes |
MD5 hash: | d18fbf1cbf8eb57b17fac48b7b4be933 |
Start time (UTC): | 19:59:17 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/fusermount |
Arguments: | fusermount -u -q -z -- /run/user/1000/gvfs |
File size: | 39144 bytes |
MD5 hash: | 576a1b135c82bdcbc97a91acea900566 |
Start time (UTC): | 19:59:51 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:51 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:54 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:54 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:54 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:54 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:54 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:54 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:54 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:54 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:54 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:54 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:54 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:55 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:55 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:55 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:55 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:55 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:55 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:55 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:55 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:56 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:56 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:56 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:59 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 19:59:59 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:59 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:59 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:59 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:59 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:59 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:59 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:59 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:59 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 19:59:59 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:00:01 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:00:01 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/plymouth |
Arguments: | /bin/plymouth quit |
File size: | 51352 bytes |
MD5 hash: | 87003efd8dad470042f5e75360a8f49f |
Start time (UTC): | 20:00:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |