Linux
Analysis Report
xd.m68k.elf
Overview
General Information
Sample name: | xd.m68k.elf |
Analysis ID: | 1655043 |
MD5: | cb58ee51514fc861df5da86ab6679e08 |
SHA1: | 5eaf222deaac3217c66a3775b5562b75c810edb4 |
SHA256: | 40d60e1003f2d54ce4eb5452486547f86804bdf18018bd5942dd6c5035585130 |
Tags: | elfuser-abuse_ch |
Infos: |
Detection
Score: | 92 |
Range: | 0 - 100 |
Signatures
Classification
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1655043 |
Start date and time: | 2025-04-02 22:12:30 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 4m 39s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultlinuxfilecookbook.jbs |
Analysis system description: | Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11) |
Analysis Mode: | default |
Sample name: | xd.m68k.elf |
Detection: | MAL |
Classification: | mal92.spre.troj.evad.linELF@0/16@3/0 |
- Connection to analysis system has been lost, crash info: Unknown
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- system is lnxubuntu20
- xd.m68k.elf New Fork (PID: 6231, Parent: 6228)
- xd.m68k.elf New Fork (PID: 6233, Parent: 6228)
- xd.m68k.elf New Fork (PID: 6235, Parent: 6228)
- xd.m68k.elf New Fork (PID: 6237, Parent: 6235)
- xd.m68k.elf New Fork (PID: 6238, Parent: 6235)
- xd.m68k.elf New Fork (PID: 6241, Parent: 6235)
- systemd New Fork (PID: 6254, Parent: 1)
- systemd New Fork (PID: 6270, Parent: 1)
- systemd New Fork (PID: 6274, Parent: 1)
- systemd New Fork (PID: 6276, Parent: 1)
- systemd New Fork (PID: 6278, Parent: 1)
- systemd New Fork (PID: 6279, Parent: 1)
- systemd New Fork (PID: 6318, Parent: 1)
- systemd New Fork (PID: 6326, Parent: 1)
- systemd New Fork (PID: 6327, Parent: 1)
- systemd New Fork (PID: 6328, Parent: 1)
- systemd New Fork (PID: 6329, Parent: 1)
- systemd New Fork (PID: 6335, Parent: 1)
- systemd New Fork (PID: 6337, Parent: 1860)
- gdm3 New Fork (PID: 6339, Parent: 1320)
- systemd New Fork (PID: 6340, Parent: 1)
- gdm3 New Fork (PID: 6342, Parent: 1320)
- gdm3 New Fork (PID: 6343, Parent: 1320)
- systemd New Fork (PID: 6344, Parent: 1)
- systemd New Fork (PID: 6345, Parent: 1)
- systemd New Fork (PID: 6347, Parent: 1)
- systemd New Fork (PID: 6349, Parent: 1)
- gpu-manager New Fork (PID: 6350, Parent: 6349)
- sh New Fork (PID: 6351, Parent: 6350)
- gpu-manager New Fork (PID: 6352, Parent: 6349)
- sh New Fork (PID: 6354, Parent: 6352)
- gpu-manager New Fork (PID: 6355, Parent: 6349)
- sh New Fork (PID: 6356, Parent: 6355)
- gpu-manager New Fork (PID: 6357, Parent: 6349)
- sh New Fork (PID: 6358, Parent: 6357)
- gpu-manager New Fork (PID: 6359, Parent: 6349)
- sh New Fork (PID: 6360, Parent: 6359)
- gpu-manager New Fork (PID: 6361, Parent: 6349)
- sh New Fork (PID: 6362, Parent: 6361)
- gpu-manager New Fork (PID: 6363, Parent: 6349)
- sh New Fork (PID: 6364, Parent: 6363)
- gpu-manager New Fork (PID: 6365, Parent: 6349)
- sh New Fork (PID: 6366, Parent: 6365)
- systemd New Fork (PID: 6368, Parent: 1)
- generate-config New Fork (PID: 6384, Parent: 6368)
- systemd New Fork (PID: 6385, Parent: 1)
- systemd New Fork (PID: 6390, Parent: 1)
- systemd (deleted) New Fork (PID: 6391, Parent: 1)
- systemd (deleted) New Fork (PID: 6394, Parent: 1)
- systemd (deleted) New Fork (PID: 6404, Parent: 1)
- systemd (deleted) New Fork (PID: 6405, Parent: 1)
- systemd (deleted) New Fork (PID: 6406, Parent: 1)
- systemd (deleted) New Fork (PID: 6408, Parent: 1)
- dash New Fork (PID: 6410, Parent: 4331)
- dash New Fork (PID: 6411, Parent: 4331)
- gvfsd-fuse New Fork (PID: 6429, Parent: 2038)
- systemd (deleted) New Fork (PID: 6434, Parent: 1)
- systemd (deleted) New Fork (PID: 6435, Parent: 1)
- systemd (deleted) New Fork (PID: 6436, Parent: 1)
- systemd (deleted) New Fork (PID: 6437, Parent: 1)
- gpu-manager New Fork (PID: 6439, Parent: 6437)
- gpu-manager New Fork (PID: 6440, Parent: 6437)
- gpu-manager New Fork (PID: 6441, Parent: 6437)
- gpu-manager New Fork (PID: 6442, Parent: 6437)
- gpu-manager New Fork (PID: 6443, Parent: 6437)
- gpu-manager New Fork (PID: 6444, Parent: 6437)
- gpu-manager New Fork (PID: 6445, Parent: 6437)
- gpu-manager New Fork (PID: 6446, Parent: 6437)
- systemd (deleted) New Fork (PID: 6438, Parent: 1)
- systemd (deleted) New Fork (PID: 6447, Parent: 1)
- systemd (deleted) New Fork (PID: 6448, Parent: 1)
- systemd (deleted) New Fork (PID: 6449, Parent: 1)
- gpu-manager New Fork (PID: 6450, Parent: 6449)
- gpu-manager New Fork (PID: 6451, Parent: 6449)
- gpu-manager New Fork (PID: 6452, Parent: 6449)
- gpu-manager New Fork (PID: 6453, Parent: 6449)
- gpu-manager New Fork (PID: 6454, Parent: 6449)
- gpu-manager New Fork (PID: 6455, Parent: 6449)
- gpu-manager New Fork (PID: 6456, Parent: 6449)
- gpu-manager New Fork (PID: 6457, Parent: 6449)
- systemd (deleted) New Fork (PID: 6458, Parent: 1)
- systemd (deleted) New Fork (PID: 6459, Parent: 1)
- gpu-manager New Fork (PID: 6460, Parent: 6459)
- gpu-manager New Fork (PID: 6461, Parent: 6459)
- gpu-manager New Fork (PID: 6462, Parent: 6459)
- gpu-manager New Fork (PID: 6463, Parent: 6459)
- gpu-manager New Fork (PID: 6464, Parent: 6459)
- gpu-manager New Fork (PID: 6465, Parent: 6459)
- gpu-manager New Fork (PID: 6466, Parent: 6459)
- gpu-manager New Fork (PID: 6467, Parent: 6459)
- systemd (deleted) New Fork (PID: 6468, Parent: 1)
- systemd (deleted) New Fork (PID: 6469, Parent: 1)
- gpu-manager New Fork (PID: 6470, Parent: 6469)
- gpu-manager New Fork (PID: 6471, Parent: 6469)
- gpu-manager New Fork (PID: 6472, Parent: 6469)
- gpu-manager New Fork (PID: 6473, Parent: 6469)
- gpu-manager New Fork (PID: 6474, Parent: 6469)
- gpu-manager New Fork (PID: 6475, Parent: 6469)
- gpu-manager New Fork (PID: 6476, Parent: 6469)
- gpu-manager New Fork (PID: 6477, Parent: 6469)
- systemd (deleted) New Fork (PID: 6478, Parent: 1)
- systemd (deleted) New Fork (PID: 6479, Parent: 1)
- gpu-manager New Fork (PID: 6480, Parent: 6479)
- gpu-manager New Fork (PID: 6481, Parent: 6479)
- gpu-manager New Fork (PID: 6482, Parent: 6479)
- gpu-manager New Fork (PID: 6483, Parent: 6479)
- gpu-manager New Fork (PID: 6484, Parent: 6479)
- gpu-manager New Fork (PID: 6485, Parent: 6479)
- gpu-manager New Fork (PID: 6486, Parent: 6479)
- gpu-manager New Fork (PID: 6487, Parent: 6479)
- systemd (deleted) New Fork (PID: 6488, Parent: 1)
- systemd (deleted) New Fork (PID: 6489, Parent: 1)
- systemd (deleted) New Fork (PID: 6491, Parent: 1860)
- cleanup
Name | Description | Attribution | Blogpost URLs | Link |
---|---|---|---|---|
Mirai | Mirai is one of the first significant botnets targeting exposed networking devices running Linux. Found in August 2016 by MalwareMustDie, its name means "future" in Japanese. Nowadays it targets a wide range of networked embedded devices such as IP cameras, home routers (many vendors involved), and other IoT devices. Since the source code was published on "Hack Forums" many variants of the Mirai family appeared, infecting mostly home networks all around the world. | No Attribution |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_Mirai_9 | Yara detected Mirai | Joe Security | ||
JoeSecurity_Mirai_8 | Yara detected Mirai | Joe Security | ||
Linux_Trojan_Gafgyt_28a2fe0c | unknown | unknown |
| |
Linux_Trojan_Gafgyt_ea92cca8 | unknown | unknown |
|
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_Mirai_9 | Yara detected Mirai | Joe Security | ||
JoeSecurity_Mirai_8 | Yara detected Mirai | Joe Security | ||
Linux_Trojan_Gafgyt_28a2fe0c | unknown | unknown |
| |
Linux_Trojan_Gafgyt_ea92cca8 | unknown | unknown |
| |
JoeSecurity_Mirai_9 | Yara detected Mirai | Joe Security | ||
Click to see the 43 entries |
- • AV Detection
- • Bitcoin Miner
- • Networking
- • System Summary
- • Persistence and Installation Behavior
- • Hooking and other Techniques for Hiding and Protection
- • Malware Analysis System Evasion
- • Stealing of Sensitive Information
- • Remote Access Functionality
Click to jump to signature section
AV Detection |
---|
Source: | Avira: |
Source: | ReversingLabs: | |||
Source: | Virustotal: | Perma Link |
Source: | Reads CPU info from /sys: | Jump to behavior | ||
Source: | Reads CPU info from /sys: | Jump to behavior |
Source: | TCP traffic: |
Source: | HTTP traffic detected: |
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
System Summary |
---|
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior |
Source: | .symtab present: |
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior |
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Classification label: |
Persistence and Installation Behavior |
---|
Source: | File: | Jump to behavior |
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior |
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior |
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior |
Source: | Pkill executable: | Jump to behavior |
Source: | Rm executable: | Jump to behavior | ||
Source: | Rm executable: | Jump to behavior |
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior |
Source: | Log file created: | |||
Source: | Log file created: | |||
Source: | Log file created: | |||
Source: | Log file created: | |||
Source: | Log file created: | |||
Source: | Log file created: | Jump to dropped file |
Hooking and other Techniques for Hiding and Protection |
---|
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior |
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior |
Source: | Reads CPU info from /sys: | Jump to behavior | ||
Source: | Reads CPU info from /sys: | Jump to behavior |
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Stealing of Sensitive Information |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Remote Access Functionality |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | 1 Scripting | Valid Accounts | Windows Management Instrumentation | 1 Scripting | Path Interception | 1 File and Directory Permissions Modification | 1 OS Credential Dumping | 11 Security Software Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | 1 Service Stop |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Disable or Modify Tools | LSASS Memory | 1 File and Directory Discovery | Remote Desktop Protocol | Data from Removable Media | 1 Non-Standard Port | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 Indicator Removal | Security Account Manager | 1 System Information Discovery | SMB/Windows Admin Shares | Data from Network Shared Drive | 2 Non-Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | 11 File Deletion | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Application Layer Protocol | Traffic Duplication | Data Destruction |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
64% | ReversingLabs | Linux.Backdoor.Mirai | ||
62% | Virustotal | Browse | ||
100% | Avira | LINUX/Mirai.bonb |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
daisy.ubuntu.com | 162.213.35.25 | true | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
90.142.120.57 | unknown | Sweden | 1257 | TELE2EU | false | |
178.38.215.126 | unknown | Switzerland | 6730 | SUNRISECH | false | |
199.109.14.113 | unknown | United States | 3754 | NYSERNET3-ASUS | false | |
183.144.47.112 | unknown | China | 4134 | CHINANET-BACKBONENo31Jin-rongStreetCN | false | |
148.253.217.229 | unknown | United Kingdom | 44503 | CHARTERHOUSEGB | false | |
102.159.225.135 | unknown | Tunisia | 37705 | TOPNETTN | false | |
254.52.172.116 | unknown | Reserved | unknown | unknown | false | |
197.212.3.4 | unknown | Zambia | 37287 | ZAIN-ZAMBIAZM | false | |
220.8.166.56 | unknown | Japan | 17676 | GIGAINFRASoftbankBBCorpJP | false | |
243.214.82.243 | unknown | Reserved | unknown | unknown | false | |
54.37.243.216 | unknown | France | 16276 | OVHFR | false | |
158.218.129.144 | unknown | United Kingdom | 2907 | SINET-ASResearchOrganizationofInformationandSystemsN | false | |
252.246.255.166 | unknown | Reserved | unknown | unknown | false | |
217.32.57.10 | unknown | United Kingdom | 6871 | PLUSNETUKInternetServiceProviderGB | false | |
122.22.22.136 | unknown | Japan | 4713 | OCNNTTCommunicationsCorporationJP | false | |
54.115.124.195 | unknown | United States | 16509 | AMAZON-02US | false | |
163.66.181.21 | unknown | France | 17816 | CHINA169-GZChinaUnicomIPnetworkChina169Guangdongprovi | false | |
194.251.49.172 | unknown | Finland | 1759 | TSF-IP-CORETeliaFinlandOyjEU | false | |
69.10.192.31 | unknown | United States | 20394 | MASHELL-TELECOMUS | false | |
47.131.121.98 | unknown | Canada | 34533 | ESAMARA-ASRU | false | |
119.62.164.163 | unknown | China | 4837 | CHINA169-BACKBONECHINAUNICOMChina169BackboneCN | false | |
243.181.12.244 | unknown | Reserved | unknown | unknown | false | |
91.189.91.43 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false | |
91.189.91.42 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false | |
246.188.74.174 | unknown | Reserved | unknown | unknown | false | |
13.209.216.226 | unknown | United States | 16509 | AMAZON-02US | false | |
74.226.122.129 | unknown | United States | 19108 | SUDDENLINK-COMMUNICATIONSUS | false | |
116.23.21.55 | unknown | China | 4134 | CHINANET-BACKBONENo31Jin-rongStreetCN | false | |
48.30.52.188 | unknown | United States | 2686 | ATGS-MMD-ASUS | false | |
222.140.207.168 | unknown | China | 4837 | CHINA169-BACKBONECHINAUNICOMChina169BackboneCN | false | |
42.219.246.211 | unknown | China | 4249 | LILLY-ASUS | false | |
180.45.12.149 | unknown | Japan | 4713 | OCNNTTCommunicationsCorporationJP | false | |
207.102.240.96 | unknown | Canada | 15101 | CENTRAL1CA | false | |
145.202.208.46 | unknown | Netherlands | 1101 | IP-EEND-ASIP-EENDBVNL | false | |
36.32.150.85 | unknown | China | 4837 | CHINA169-BACKBONECHINAUNICOMChina169BackboneCN | false | |
187.245.34.185 | unknown | Mexico | 13999 | MegaCableSAdeCVMX | false | |
245.142.23.77 | unknown | Reserved | unknown | unknown | false | |
57.195.237.16 | unknown | Belgium | 2686 | ATGS-MMD-ASUS | false | |
36.178.74.4 | unknown | China | 9808 | CMNET-GDGuangdongMobileCommunicationCoLtdCN | false | |
251.103.244.158 | unknown | Reserved | unknown | unknown | false | |
35.46.105.251 | unknown | United States | 36375 | UMICH-AS-5US | false | |
177.120.18.30 | unknown | Brazil | 26615 | TIMSABR | false | |
152.132.241.131 | unknown | United States | 29992 | VA-TMP-COREUS | false | |
173.168.150.6 | unknown | United States | 33363 | BHN-33363US | false | |
126.163.68.241 | unknown | Japan | 17676 | GIGAINFRASoftbankBBCorpJP | false | |
125.73.77.43 | unknown | China | 4134 | CHINANET-BACKBONENo31Jin-rongStreetCN | false | |
187.62.221.145 | unknown | Brazil | 28165 | WirelessCommServicesLTDABR | false | |
16.208.243.89 | unknown | United States | unknown | unknown | false | |
252.116.139.62 | unknown | Reserved | unknown | unknown | false | |
100.26.227.90 | unknown | United States | 14618 | AMAZON-AESUS | false | |
34.131.57.216 | unknown | United States | 2686 | ATGS-MMD-ASUS | false | |
189.154.137.89 | unknown | Mexico | 8151 | UninetSAdeCVMX | false | |
248.59.65.210 | unknown | Reserved | unknown | unknown | false | |
180.215.59.218 | unknown | Singapore | 64050 | BCPL-SGBGPNETGlobalASNSG | false | |
246.103.156.191 | unknown | Reserved | unknown | unknown | false | |
157.51.190.228 | unknown | India | 55836 | RELIANCEJIO-INRelianceJioInfocommLimitedIN | false | |
124.93.238.61 | unknown | China | 4837 | CHINA169-BACKBONECHINAUNICOMChina169BackboneCN | false | |
97.162.249.42 | unknown | United States | 6167 | CELLCO-PARTUS | false | |
139.30.37.136 | unknown | Germany | 680 | DFNVereinzurFoerderungeinesDeutschenForschungsnetzese | false | |
87.235.173.225 | unknown | Spain | 12430 | VODAFONE_ESES | false | |
124.91.43.189 | unknown | China | 4837 | CHINA169-BACKBONECHINAUNICOMChina169BackboneCN | false | |
245.230.89.57 | unknown | Reserved | unknown | unknown | false | |
145.123.152.154 | unknown | Netherlands | 1103 | SURFNET-NLSURFnetTheNetherlandsNL | false | |
43.150.124.81 | unknown | Japan | 4249 | LILLY-ASUS | false | |
32.109.166.110 | unknown | United States | 2688 | ATGS-MMD-ASUS | false | |
133.49.138.41 | unknown | Japan | 2907 | SINET-ASResearchOrganizationofInformationandSystemsN | false | |
31.190.116.88 | unknown | Italy | 24608 | WINDTRE-ASIT | false | |
135.169.36.190 | unknown | United States | 18676 | AVAYAUS | false | |
90.21.80.122 | unknown | France | 3215 | FranceTelecom-OrangeFR | false | |
59.40.41.88 | unknown | China | 4134 | CHINANET-BACKBONENo31Jin-rongStreetCN | false | |
123.95.245.116 | unknown | China | 9394 | CTTNETChinaTieTongTelecommunicationsCorporationCN | false | |
213.209.129.92 | unknown | Germany | 42821 | RAPIDNET-DEHaunstetterStr19DE | false | |
222.117.30.57 | unknown | Korea Republic of | 4766 | KIXS-AS-KRKoreaTelecomKR | false | |
86.67.231.106 | unknown | France | 15557 | LDCOMNETFR | false | |
117.133.63.73 | unknown | China | 56048 | CMNET-BEIJING-APChinaMobileCommunicaitonsCorporationCN | false | |
87.210.63.242 | unknown | Netherlands | 13127 | VERSATELASfortheTrans-EuropeanTele2IPTransportbackbo | false | |
88.28.231.247 | unknown | Spain | 3352 | TELEFONICA_DE_ESPANAES | false | |
191.107.242.220 | unknown | Colombia | 61317 | ASDETUKhttpwwwheficedcomGB | false | |
61.46.52.8 | unknown | Japan | 9617 | ZAQJupiterTelecommunicationsCoLtdJP | false | |
142.107.6.117 | unknown | Canada | 808 | GONET-ASN-1CA | false | |
122.152.222.136 | unknown | China | 45090 | CNNIC-TENCENT-NET-APShenzhenTencentComputerSystemsCompa | false | |
110.120.201.214 | unknown | China | 38370 | CTTNETChinaTieTongTelecommunicationsCorporationCN | false | |
124.78.149.189 | unknown | China | 4812 | CHINANET-SH-APChinaTelecomGroupCN | false | |
62.43.206.136 | unknown | Spain | 12357 | COMUNITELSPAINES | false | |
38.38.81.82 | unknown | United States | 174 | COGENT-174US | false | |
123.228.2.219 | unknown | Korea Republic of | 9644 | SKTELECOM-NET-ASSKTelecomKR | false | |
187.173.180.44 | unknown | Mexico | 8151 | UninetSAdeCVMX | false | |
118.167.206.120 | unknown | Taiwan; Republic of China (ROC) | 3462 | HINETDataCommunicationBusinessGroupTW | false | |
168.189.222.16 | unknown | United States | 53526 | THECLO-ASNUS | false | |
1.111.156.50 | unknown | Korea Republic of | 4766 | KIXS-AS-KRKoreaTelecomKR | false | |
217.145.206.107 | unknown | Slovakia (SLOVAK Republic) | 12426 | MADNET-ASSK | false | |
133.72.132.225 | unknown | Japan | 2907 | SINET-ASResearchOrganizationofInformationandSystemsN | false | |
72.249.84.98 | unknown | United States | 36024 | AS-TIERP-36024US | false | |
195.3.30.66 | unknown | France | 15557 | LDCOMNETFR | false | |
162.213.35.24 | unknown | United States | 41231 | CANONICAL-ASGB | false | |
212.131.89.32 | unknown | Italy | 3269 | ASN-IBSNAZIT | false | |
85.169.47.23 | unknown | France | 21502 | ASN-NUMERICABLEFR | false | |
195.95.165.97 | unknown | Ukraine | 47898 | PTW-ASUA | false | |
98.7.174.129 | unknown | United States | 40294 | CHARTER-40294-DCUS | false | |
243.70.254.172 | unknown | Reserved | unknown | unknown | false |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
91.189.91.43 | Get hash | malicious | Mirai | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Prometei | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Prometei | Browse | |||
Get hash | malicious | Mirai | Browse | |||
91.189.91.42 | Get hash | malicious | Mirai | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Prometei | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Prometei | Browse | |||
Get hash | malicious | Mirai | Browse |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
daisy.ubuntu.com | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
CHINANET-BACKBONENo31Jin-rongStreetCN | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
SUNRISECH | Get hash | malicious | Wannacry | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Gafgyt, Okiru | Browse |
| ||
Get hash | malicious | Gafgyt, Mirai | Browse |
| ||
Get hash | malicious | Okiru | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
TOPNETTN | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
TELE2EU | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
NYSERNET3-ASUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai | Browse |
|
Process: | /usr/bin/pulseaudio |
File Type: | |
Category: | dropped |
Size (bytes): | 10 |
Entropy (8bit): | 2.9219280948873623 |
Encrypted: | false |
SSDEEP: | 3:5bkPn:pkP |
MD5: | FF001A15CE15CF062A3704CEA2991B5F |
SHA1: | B06F6855F376C3245B82212AC73ADED55DFE5DEF |
SHA-256: | C54830B41ECFA1B6FBDC30397188DDA86B7B200E62AEAC21AE694A6192DCC38A |
SHA-512: | 65EBF7C31F6F65713CE01B38A112E97D0AE64A6BD1DA40CE4C1B998F10CD3912EE1A48BB2B279B24493062118AAB3B8753742E2AF28E56A31A7AAB27DE80E7BF |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | /usr/bin/pulseaudio |
File Type: | |
Category: | dropped |
Size (bytes): | 18 |
Entropy (8bit): | 3.4613201402110088 |
Encrypted: | false |
SSDEEP: | 3:5bkrIZsXvn:pkckv |
MD5: | 28FE6435F34B3367707BB1C5D5F6B430 |
SHA1: | EB8FE2D16BD6BBCCE106C94E4D284543B2573CF6 |
SHA-256: | 721A37C69E555799B41D308849E8F8125441883AB021B723FED90A9B744F36C0 |
SHA-512: | 6B6AB7C0979629D0FEF6BE47C5C6BCC367EDD0AAE3FC973F4DE2FD5F0A819C89E7656DB65D453B1B5398E54012B27EDFE02894AD87A7E0AF3A9C5F2EB24A9919 |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | /usr/sbin/gdm3 |
File Type: | |
Category: | dropped |
Size (bytes): | 5 |
Entropy (8bit): | 2.321928094887362 |
Encrypted: | false |
SSDEEP: | 3:X2:G |
MD5: | C6733A10A907D115736253130FFC1E16 |
SHA1: | 4894C014175828BF6AC22FA3EFA33CFDD3905436 |
SHA-256: | 6090476896F07F4B60F5CB387CD33A06A2BD5A60E597618A817AA51C7865F9C1 |
SHA-512: | C4D174E5E837EF62A2EDC53DFC0079815A0B97A267CABAB40B6D3BA86CAD2AA58D6CDF53DD6F9DA47405B83C1D0BEC6AF6A67269C1B8D5F4572CDD1B3E54479A |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | /usr/bin/pulseaudio |
File Type: | |
Category: | dropped |
Size (bytes): | 5 |
Entropy (8bit): | 1.9219280948873623 |
Encrypted: | false |
SSDEEP: | 3:dc:6 |
MD5: | DFE615D838F1944C4D660444DBF9F951 |
SHA1: | 4692DA54296E87C0BF26C11962868EC77A33537F |
SHA-256: | 7CD98B83C0690F4A87FDC21541949380FC5DAE8E7FD5685EE054E98517031CF8 |
SHA-512: | 5303A7BB92FEBFF51CDC486C3F6C4217E0FF1E9AC88DC315A49352B12271524BCD3C2A9EDA9465907EA827FBBFD454010F8F5C3B5CCF983E4F812B878C4851CF |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | /usr/bin/gpu-manager |
File Type: | |
Category: | dropped |
Size (bytes): | 25 |
Entropy (8bit): | 2.7550849518197795 |
Encrypted: | false |
SSDEEP: | 3:JoT/V9fDVbn:M/V3n |
MD5: | 078760523943E160756979906B85FB5E |
SHA1: | 0962643266F4C5537F7D125046F28F21D6DD0C89 |
SHA-256: | 048416AC7A9A99690B8B53718CD39F32F637B55CC8DD8E67E58E5AEF060DD41C |
SHA-512: | DEFAAE8F8B54C61A716A0B0B4884358FEB8EB44DFEA01AAA5A687FDA7182792B7DEBB34AA840672EB3B40EB59FD0186749E08E47D181786C7FAA8C8F73F0104D |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | /usr/bin/gpu-manager |
File Type: | |
Category: | dropped |
Size (bytes): | 1371 |
Entropy (8bit): | 4.8296848499188485 |
Encrypted: | false |
SSDEEP: | 24:wPXXX9uV6BNu3WDF3GF3XFFxFFed2uk2HUvJlfWkpPpx7uvvAdow9555cJz:wPXXXe6vejpeC2HUR5WkpPpcvAdow95O |
MD5: | 3AF77E630DA00B3BE24F4E8AA5D78B13 |
SHA1: | BCF2D99E002F6DE2413A183227B011CFBEF5673D |
SHA-256: | EB1CBBA20845237B4409274D693FEAE13F835274DA3337B7A9D14F4D7FDF9DEA |
SHA-512: | 8524B1E8A761F962B32F396812099B9B0B2DCF3C9FCA8605424753CFCFF4DC67EDC5EE1D8C91B9C0ED7FAE6BB1E752898B8D514B7C421D1839D6FEDA609C593C |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
File type: | |
Entropy (8bit): | 6.411265216819995 |
TrID: |
|
File name: | xd.m68k.elf |
File size: | 68'204 bytes |
MD5: | cb58ee51514fc861df5da86ab6679e08 |
SHA1: | 5eaf222deaac3217c66a3775b5562b75c810edb4 |
SHA256: | 40d60e1003f2d54ce4eb5452486547f86804bdf18018bd5942dd6c5035585130 |
SHA512: | ff557d6d5c5e7ddbfa29d19f162dfac7b26c1465a3aff519e34a77f09d5fd035ebf0ecaaebf0ff5b66db8727581d90844012a76a12eedf38bfe3962ae55b9b87 |
SSDEEP: | 1536:MQwmDAhgRaHCQzvBInusFB2fWS7Y4Yg1p+uZw93Pb88V2rETCCfKA2tT:p7szvBI7B2fWb49p+SSDa6fF2tT |
TLSH: | 3E634BE9F4019E7DF98BD5BAC0228E0ABC2162D051931B2773B7FDA37D72195E806C49 |
File Content Preview: | .ELF.......................D...4.........4. ...(.......................t...t...... ........x..&x..&x...$... ...... .dt.Q............................NV..a....da.....N^NuNV..J9..(.f>"y..&. QJ.g.X.#...&.N."y..&. QJ.f.A.....J.g.Hy...tN.X.......(.N^NuNV..N^NuN |
ELF header | |
---|---|
Class: | |
Data: | |
Version: | |
Machine: | |
Version Number: | |
Type: | |
OS/ABI: | |
ABI Version: | 0 |
Entry Point Address: | |
Flags: | |
ELF Header Size: | 52 |
Program Header Offset: | 52 |
Program Header Size: | 32 |
Number of Program Headers: | 3 |
Section Header Offset: | 67804 |
Section Header Size: | 40 |
Number of Section Headers: | 10 |
Header String Table Index: | 9 |
Name | Type | Address | Offset | Size | EntSize | Flags | Flags Description | Link | Info | Align |
---|---|---|---|---|---|---|---|---|---|---|
NULL | 0x0 | 0x0 | 0x0 | 0x0 | 0x0 | 0 | 0 | 0 | ||
.init | PROGBITS | 0x80000094 | 0x94 | 0x14 | 0x0 | 0x6 | AX | 0 | 0 | 2 |
.text | PROGBITS | 0x800000a8 | 0xa8 | 0xeeca | 0x0 | 0x6 | AX | 0 | 0 | 4 |
.fini | PROGBITS | 0x8000ef72 | 0xef72 | 0xe | 0x0 | 0x6 | AX | 0 | 0 | 2 |
.rodata | PROGBITS | 0x8000ef80 | 0xef80 | 0x16f4 | 0x0 | 0x2 | A | 0 | 0 | 2 |
.ctors | PROGBITS | 0x80012678 | 0x10678 | 0x8 | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.dtors | PROGBITS | 0x80012680 | 0x10680 | 0x8 | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.data | PROGBITS | 0x8001268c | 0x1068c | 0x210 | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.bss | NOBITS | 0x8001289c | 0x1089c | 0x3fc | 0x0 | 0x3 | WA | 0 | 0 | 4 |
.shstrtab | STRTAB | 0x0 | 0x1089c | 0x3e | 0x0 | 0x0 | 0 | 0 | 1 |
Type | Offset | Virtual Address | Physical Address | File Size | Memory Size | Entropy | Flags | Flags Description | Align | Prog Interpreter | Section Mappings |
---|---|---|---|---|---|---|---|---|---|---|---|
LOAD | 0x0 | 0x80000000 | 0x80000000 | 0x10674 | 0x10674 | 6.4411 | 0x5 | R E | 0x2000 | .init .text .fini .rodata | |
LOAD | 0x10678 | 0x80012678 | 0x80012678 | 0x224 | 0x620 | 3.0683 | 0x6 | RW | 0x2000 | .ctors .dtors .data .bss | |
GNU_STACK | 0x0 | 0x0 | 0x0 | 0x0 | 0x0 | 0.0000 | 0x6 | RW | 0x4 |
Download Network PCAP: filtered – full
- Total Packets: 203
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 2, 2025 22:13:17.501658916 CEST | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Apr 2, 2025 22:13:17.757450104 CEST | 33606 | 443 | 192.168.2.23 | 54.171.230.55 |
Apr 2, 2025 22:13:18.581923962 CEST | 60532 | 7887 | 192.168.2.23 | 213.209.129.92 |
Apr 2, 2025 22:13:18.595738888 CEST | 19733 | 23 | 192.168.2.23 | 115.12.101.191 |
Apr 2, 2025 22:13:18.595738888 CEST | 19733 | 23 | 192.168.2.23 | 222.140.207.168 |
Apr 2, 2025 22:13:18.595746994 CEST | 19733 | 23 | 192.168.2.23 | 94.223.190.14 |
Apr 2, 2025 22:13:18.595746994 CEST | 19733 | 23 | 192.168.2.23 | 195.3.30.66 |
Apr 2, 2025 22:13:18.595748901 CEST | 19733 | 23 | 192.168.2.23 | 20.197.205.134 |
Apr 2, 2025 22:13:18.595748901 CEST | 19733 | 23 | 192.168.2.23 | 98.7.174.129 |
Apr 2, 2025 22:13:18.595748901 CEST | 19733 | 23 | 192.168.2.23 | 201.187.65.81 |
Apr 2, 2025 22:13:18.595748901 CEST | 19733 | 23 | 192.168.2.23 | 246.188.74.174 |
Apr 2, 2025 22:13:18.595748901 CEST | 19733 | 23 | 192.168.2.23 | 133.49.138.41 |
Apr 2, 2025 22:13:18.595748901 CEST | 19733 | 23 | 192.168.2.23 | 57.195.237.16 |
Apr 2, 2025 22:13:18.595752954 CEST | 19733 | 23 | 192.168.2.23 | 145.202.208.46 |
Apr 2, 2025 22:13:18.595772028 CEST | 19733 | 23 | 192.168.2.23 | 166.213.110.234 |
Apr 2, 2025 22:13:18.595772028 CEST | 19733 | 23 | 192.168.2.23 | 187.245.34.185 |
Apr 2, 2025 22:13:18.595772028 CEST | 19733 | 23 | 192.168.2.23 | 60.64.224.192 |
Apr 2, 2025 22:13:18.595772028 CEST | 19733 | 23 | 192.168.2.23 | 100.26.227.90 |
Apr 2, 2025 22:13:18.595772982 CEST | 19733 | 23 | 192.168.2.23 | 126.163.68.241 |
Apr 2, 2025 22:13:18.595777035 CEST | 19733 | 23 | 192.168.2.23 | 194.251.49.172 |
Apr 2, 2025 22:13:18.595776081 CEST | 19733 | 23 | 192.168.2.23 | 252.246.255.166 |
Apr 2, 2025 22:13:18.595777035 CEST | 19733 | 23 | 192.168.2.23 | 54.115.124.195 |
Apr 2, 2025 22:13:18.595776081 CEST | 19733 | 23 | 192.168.2.23 | 187.62.221.145 |
Apr 2, 2025 22:13:18.595777035 CEST | 19733 | 23 | 192.168.2.23 | 152.183.183.149 |
Apr 2, 2025 22:13:18.595776081 CEST | 19733 | 23 | 192.168.2.23 | 163.51.178.209 |
Apr 2, 2025 22:13:18.595772982 CEST | 19733 | 23 | 192.168.2.23 | 96.173.142.244 |
Apr 2, 2025 22:13:18.595776081 CEST | 19733 | 23 | 192.168.2.23 | 84.84.226.102 |
Apr 2, 2025 22:13:18.595772982 CEST | 19733 | 23 | 192.168.2.23 | 93.218.202.162 |
Apr 2, 2025 22:13:18.595776081 CEST | 19733 | 23 | 192.168.2.23 | 53.165.6.251 |
Apr 2, 2025 22:13:18.595781088 CEST | 19733 | 23 | 192.168.2.23 | 163.66.181.21 |
Apr 2, 2025 22:13:18.595776081 CEST | 19733 | 23 | 192.168.2.23 | 53.153.255.103 |
Apr 2, 2025 22:13:18.595772982 CEST | 19733 | 23 | 192.168.2.23 | 99.16.30.72 |
Apr 2, 2025 22:13:18.595792055 CEST | 19733 | 23 | 192.168.2.23 | 176.98.66.251 |
Apr 2, 2025 22:13:18.595782042 CEST | 19733 | 23 | 192.168.2.23 | 243.181.12.244 |
Apr 2, 2025 22:13:18.595772982 CEST | 19733 | 23 | 192.168.2.23 | 59.40.41.88 |
Apr 2, 2025 22:13:18.595781088 CEST | 19733 | 23 | 192.168.2.23 | 169.199.147.173 |
Apr 2, 2025 22:13:18.595796108 CEST | 19733 | 23 | 192.168.2.23 | 152.139.3.72 |
Apr 2, 2025 22:13:18.595781088 CEST | 19733 | 23 | 192.168.2.23 | 34.131.57.216 |
Apr 2, 2025 22:13:18.595781088 CEST | 19733 | 23 | 192.168.2.23 | 243.214.82.243 |
Apr 2, 2025 22:13:18.595782995 CEST | 19733 | 23 | 192.168.2.23 | 189.185.244.112 |
Apr 2, 2025 22:13:18.595802069 CEST | 19733 | 23 | 192.168.2.23 | 180.215.59.218 |
Apr 2, 2025 22:13:18.595796108 CEST | 19733 | 23 | 192.168.2.23 | 222.161.13.201 |
Apr 2, 2025 22:13:18.595782995 CEST | 19733 | 23 | 192.168.2.23 | 31.190.116.88 |
Apr 2, 2025 22:13:18.595782042 CEST | 19733 | 23 | 192.168.2.23 | 5.197.86.243 |
Apr 2, 2025 22:13:18.595782995 CEST | 19733 | 23 | 192.168.2.23 | 220.8.166.56 |
Apr 2, 2025 22:13:18.595782042 CEST | 19733 | 23 | 192.168.2.23 | 217.145.206.107 |
Apr 2, 2025 22:13:18.595782995 CEST | 19733 | 23 | 192.168.2.23 | 154.192.10.246 |
Apr 2, 2025 22:13:18.595797062 CEST | 19733 | 23 | 192.168.2.23 | 189.154.137.89 |
Apr 2, 2025 22:13:18.595782995 CEST | 19733 | 23 | 192.168.2.23 | 243.70.254.172 |
Apr 2, 2025 22:13:18.595810890 CEST | 19733 | 23 | 192.168.2.23 | 118.167.206.120 |
Apr 2, 2025 22:13:18.595782042 CEST | 19733 | 23 | 192.168.2.23 | 110.120.201.214 |
Apr 2, 2025 22:13:18.595810890 CEST | 19733 | 23 | 192.168.2.23 | 217.32.57.10 |
Apr 2, 2025 22:13:18.595839024 CEST | 19733 | 23 | 192.168.2.23 | 168.189.222.16 |
Apr 2, 2025 22:13:18.595869064 CEST | 19733 | 23 | 192.168.2.23 | 197.212.3.4 |
Apr 2, 2025 22:13:18.595885038 CEST | 19733 | 23 | 192.168.2.23 | 84.231.220.227 |
Apr 2, 2025 22:13:18.595906019 CEST | 19733 | 23 | 192.168.2.23 | 177.120.18.30 |
Apr 2, 2025 22:13:18.595937967 CEST | 19733 | 23 | 192.168.2.23 | 123.95.245.116 |
Apr 2, 2025 22:13:18.595937967 CEST | 19733 | 23 | 192.168.2.23 | 245.142.23.77 |
Apr 2, 2025 22:13:18.595957041 CEST | 19733 | 23 | 192.168.2.23 | 248.95.162.75 |
Apr 2, 2025 22:13:18.595982075 CEST | 19733 | 23 | 192.168.2.23 | 124.91.43.189 |
Apr 2, 2025 22:13:18.595982075 CEST | 19733 | 23 | 192.168.2.23 | 191.107.242.220 |
Apr 2, 2025 22:13:18.596003056 CEST | 19733 | 23 | 192.168.2.23 | 42.219.246.211 |
Apr 2, 2025 22:13:18.596029043 CEST | 19733 | 23 | 192.168.2.23 | 72.249.84.98 |
Apr 2, 2025 22:13:18.596059084 CEST | 19733 | 23 | 192.168.2.23 | 87.235.173.225 |
Apr 2, 2025 22:13:18.596136093 CEST | 19733 | 23 | 192.168.2.23 | 145.123.152.154 |
Apr 2, 2025 22:13:18.596179008 CEST | 19733 | 23 | 192.168.2.23 | 207.94.38.75 |
Apr 2, 2025 22:13:18.596189976 CEST | 19733 | 23 | 192.168.2.23 | 61.46.52.8 |
Apr 2, 2025 22:13:18.596191883 CEST | 19733 | 23 | 192.168.2.23 | 48.30.52.188 |
Apr 2, 2025 22:13:18.596210003 CEST | 19733 | 23 | 192.168.2.23 | 70.145.3.130 |
Apr 2, 2025 22:13:18.596236944 CEST | 19733 | 23 | 192.168.2.23 | 208.49.23.66 |
Apr 2, 2025 22:13:18.596291065 CEST | 19733 | 23 | 192.168.2.23 | 178.38.215.126 |
Apr 2, 2025 22:13:18.596291065 CEST | 19733 | 23 | 192.168.2.23 | 16.208.243.89 |
Apr 2, 2025 22:13:18.596328974 CEST | 19733 | 23 | 192.168.2.23 | 86.212.196.15 |
Apr 2, 2025 22:13:18.596353054 CEST | 19733 | 23 | 192.168.2.23 | 13.209.216.226 |
Apr 2, 2025 22:13:18.596371889 CEST | 19733 | 23 | 192.168.2.23 | 62.43.206.136 |
Apr 2, 2025 22:13:18.596375942 CEST | 19733 | 23 | 192.168.2.23 | 17.102.118.4 |
Apr 2, 2025 22:13:18.596379042 CEST | 19733 | 23 | 192.168.2.23 | 135.169.36.190 |
Apr 2, 2025 22:13:18.596404076 CEST | 19733 | 23 | 192.168.2.23 | 32.109.166.110 |
Apr 2, 2025 22:13:18.596406937 CEST | 19733 | 23 | 192.168.2.23 | 148.253.217.229 |
Apr 2, 2025 22:13:18.596422911 CEST | 19733 | 23 | 192.168.2.23 | 96.59.178.80 |
Apr 2, 2025 22:13:18.596425056 CEST | 19733 | 23 | 192.168.2.23 | 86.67.231.106 |
Apr 2, 2025 22:13:18.596443892 CEST | 19733 | 23 | 192.168.2.23 | 74.226.122.129 |
Apr 2, 2025 22:13:18.596498966 CEST | 19733 | 23 | 192.168.2.23 | 199.109.14.113 |
Apr 2, 2025 22:13:18.596501112 CEST | 19733 | 23 | 192.168.2.23 | 117.133.63.73 |
Apr 2, 2025 22:13:18.596513033 CEST | 19733 | 23 | 192.168.2.23 | 87.210.63.242 |
Apr 2, 2025 22:13:18.596513987 CEST | 19733 | 23 | 192.168.2.23 | 38.38.81.82 |
Apr 2, 2025 22:13:18.599373102 CEST | 19733 | 23 | 192.168.2.23 | 135.40.120.9 |
Apr 2, 2025 22:13:18.599376917 CEST | 19733 | 23 | 192.168.2.23 | 222.117.30.57 |
Apr 2, 2025 22:13:18.599379063 CEST | 19733 | 23 | 192.168.2.23 | 133.72.132.225 |
Apr 2, 2025 22:13:18.599379063 CEST | 19733 | 23 | 192.168.2.23 | 97.162.249.42 |
Apr 2, 2025 22:13:18.599415064 CEST | 19733 | 23 | 192.168.2.23 | 69.10.192.31 |
Apr 2, 2025 22:13:18.599432945 CEST | 19733 | 23 | 192.168.2.23 | 195.95.165.97 |
Apr 2, 2025 22:13:18.599487066 CEST | 19733 | 23 | 192.168.2.23 | 40.68.125.9 |
Apr 2, 2025 22:13:18.599487066 CEST | 19733 | 23 | 192.168.2.23 | 119.62.164.163 |
Apr 2, 2025 22:13:18.599487066 CEST | 19733 | 23 | 192.168.2.23 | 245.230.89.57 |
Apr 2, 2025 22:13:18.599499941 CEST | 19733 | 23 | 192.168.2.23 | 139.30.37.136 |
Apr 2, 2025 22:13:18.599499941 CEST | 19733 | 23 | 192.168.2.23 | 252.116.139.62 |
Apr 2, 2025 22:13:18.599499941 CEST | 19733 | 23 | 192.168.2.23 | 183.144.47.112 |
Apr 2, 2025 22:13:18.599500895 CEST | 19733 | 23 | 192.168.2.23 | 12.233.193.18 |
Apr 2, 2025 22:13:18.599500895 CEST | 19733 | 23 | 192.168.2.23 | 187.213.189.50 |
Apr 2, 2025 22:13:18.599500895 CEST | 19733 | 23 | 192.168.2.23 | 124.78.149.189 |
Apr 2, 2025 22:13:18.599502087 CEST | 19733 | 23 | 192.168.2.23 | 71.50.218.105 |
Apr 2, 2025 22:13:18.599502087 CEST | 19733 | 23 | 192.168.2.23 | 180.45.12.149 |
Apr 2, 2025 22:13:18.599534988 CEST | 19733 | 23 | 192.168.2.23 | 112.129.30.186 |
Apr 2, 2025 22:13:18.599534988 CEST | 19733 | 23 | 192.168.2.23 | 103.106.69.204 |
Apr 2, 2025 22:13:18.599540949 CEST | 19733 | 23 | 192.168.2.23 | 246.103.156.191 |
Apr 2, 2025 22:13:18.599545002 CEST | 19733 | 23 | 192.168.2.23 | 125.73.77.43 |
Apr 2, 2025 22:13:18.599551916 CEST | 19733 | 23 | 192.168.2.23 | 35.46.105.251 |
Apr 2, 2025 22:13:18.599551916 CEST | 19733 | 23 | 192.168.2.23 | 5.76.117.49 |
Apr 2, 2025 22:13:18.599554062 CEST | 19733 | 23 | 192.168.2.23 | 116.23.21.55 |
Apr 2, 2025 22:13:18.599560022 CEST | 19733 | 23 | 192.168.2.23 | 212.167.141.7 |
Apr 2, 2025 22:13:18.599560022 CEST | 19733 | 23 | 192.168.2.23 | 248.59.65.210 |
Apr 2, 2025 22:13:18.599589109 CEST | 19733 | 23 | 192.168.2.23 | 102.159.225.135 |
Apr 2, 2025 22:13:18.599591017 CEST | 19733 | 23 | 192.168.2.23 | 158.218.129.144 |
Apr 2, 2025 22:13:18.599601984 CEST | 19733 | 23 | 192.168.2.23 | 207.102.240.96 |
Apr 2, 2025 22:13:18.599602938 CEST | 19733 | 23 | 192.168.2.23 | 122.22.22.136 |
Apr 2, 2025 22:13:18.599613905 CEST | 19733 | 23 | 192.168.2.23 | 47.131.121.98 |
Apr 2, 2025 22:13:18.599623919 CEST | 19733 | 23 | 192.168.2.23 | 173.168.150.6 |
Apr 2, 2025 22:13:18.599632025 CEST | 19733 | 23 | 192.168.2.23 | 90.142.120.57 |
Apr 2, 2025 22:13:18.599679947 CEST | 19733 | 23 | 192.168.2.23 | 88.28.231.247 |
Apr 2, 2025 22:13:18.599683046 CEST | 19733 | 23 | 192.168.2.23 | 43.150.124.81 |
Apr 2, 2025 22:13:18.599694014 CEST | 19733 | 23 | 192.168.2.23 | 221.203.1.36 |
Apr 2, 2025 22:13:18.599756956 CEST | 19733 | 23 | 192.168.2.23 | 36.178.74.4 |
Apr 2, 2025 22:13:18.599769115 CEST | 19733 | 23 | 192.168.2.23 | 87.26.223.207 |
Apr 2, 2025 22:13:18.599771023 CEST | 19733 | 23 | 192.168.2.23 | 251.103.244.158 |
Apr 2, 2025 22:13:18.599786997 CEST | 19733 | 23 | 192.168.2.23 | 114.57.184.64 |
Apr 2, 2025 22:13:18.599806070 CEST | 19733 | 23 | 192.168.2.23 | 54.37.243.216 |
Apr 2, 2025 22:13:18.599821091 CEST | 19733 | 23 | 192.168.2.23 | 124.192.169.219 |
Apr 2, 2025 22:13:18.599824905 CEST | 19733 | 23 | 192.168.2.23 | 36.32.150.85 |
Apr 2, 2025 22:13:18.599838018 CEST | 19733 | 23 | 192.168.2.23 | 39.13.221.183 |
Apr 2, 2025 22:13:18.599841118 CEST | 19733 | 23 | 192.168.2.23 | 187.173.180.44 |
Apr 2, 2025 22:13:18.599939108 CEST | 19733 | 23 | 192.168.2.23 | 155.24.232.61 |
Apr 2, 2025 22:13:18.599958897 CEST | 19733 | 23 | 192.168.2.23 | 1.111.156.50 |
Apr 2, 2025 22:13:18.599962950 CEST | 19733 | 23 | 192.168.2.23 | 17.145.18.62 |
Apr 2, 2025 22:13:18.600006104 CEST | 19733 | 23 | 192.168.2.23 | 90.21.80.122 |
Apr 2, 2025 22:13:18.600023031 CEST | 19733 | 23 | 192.168.2.23 | 122.152.222.136 |
Apr 2, 2025 22:13:18.600040913 CEST | 19733 | 23 | 192.168.2.23 | 93.195.8.166 |
Apr 2, 2025 22:13:18.600070000 CEST | 19733 | 23 | 192.168.2.23 | 123.228.2.219 |
Apr 2, 2025 22:13:18.600081921 CEST | 19733 | 23 | 192.168.2.23 | 212.131.89.32 |
Apr 2, 2025 22:13:18.600107908 CEST | 19733 | 23 | 192.168.2.23 | 27.153.200.39 |
Apr 2, 2025 22:13:18.600109100 CEST | 19733 | 23 | 192.168.2.23 | 152.132.241.131 |
Apr 2, 2025 22:13:18.600210905 CEST | 19733 | 23 | 192.168.2.23 | 124.93.238.61 |
Apr 2, 2025 22:13:18.600214005 CEST | 19733 | 23 | 192.168.2.23 | 254.52.172.116 |
Apr 2, 2025 22:13:18.600245953 CEST | 19733 | 23 | 192.168.2.23 | 85.169.47.23 |
Apr 2, 2025 22:13:18.600250006 CEST | 19733 | 23 | 192.168.2.23 | 187.1.163.78 |
Apr 2, 2025 22:13:18.600267887 CEST | 19733 | 23 | 192.168.2.23 | 142.107.6.117 |
Apr 2, 2025 22:13:18.600267887 CEST | 19733 | 23 | 192.168.2.23 | 174.76.73.111 |
Apr 2, 2025 22:13:18.600285053 CEST | 19733 | 23 | 192.168.2.23 | 157.51.190.228 |
Apr 2, 2025 22:13:18.600307941 CEST | 19733 | 23 | 192.168.2.23 | 189.178.191.183 |
Apr 2, 2025 22:13:18.600311041 CEST | 19733 | 23 | 192.168.2.23 | 156.209.222.153 |
Apr 2, 2025 22:13:18.807231903 CEST | 7887 | 60532 | 213.209.129.92 | 192.168.2.23 |
Apr 2, 2025 22:13:22.876785040 CEST | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Apr 2, 2025 22:13:24.156701088 CEST | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Apr 2, 2025 22:13:26.204246044 CEST | 33606 | 443 | 192.168.2.23 | 54.171.230.55 |
Apr 2, 2025 22:13:37.978858948 CEST | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Apr 2, 2025 22:13:43.347035885 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:43.347073078 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:43.347171068 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:44.121710062 CEST | 33606 | 443 | 192.168.2.23 | 54.171.230.55 |
Apr 2, 2025 22:13:46.581391096 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.581413031 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.801312923 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.801798105 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.801798105 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.801798105 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.801815033 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.801830053 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.801909924 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.802273035 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.802273989 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.802279949 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.802577972 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.848269939 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.996898890 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997061968 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997062922 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997062922 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997092009 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997102976 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997112989 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997112989 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997118950 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997136116 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997160912 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997160912 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997162104 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997170925 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997180939 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997184992 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997189999 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997189999 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997196913 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997203112 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997210979 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997214079 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997230053 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997230053 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997236013 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997237921 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997457981 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997457981 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997463942 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997486115 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997486115 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997486115 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997493982 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997494936 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997499943 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997510910 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997528076 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997533083 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997572899 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997581005 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997591019 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997591019 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997600079 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997611046 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997637033 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997642040 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997649908 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997649908 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997654915 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997661114 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997663975 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997673988 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997700930 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997700930 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997706890 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997713089 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997716904 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997716904 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:46.997724056 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:46.997730017 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:47.525588036 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:47.525685072 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:47.525736094 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:47.525736094 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:47.525768042 CEST | 443 | 37608 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:13:47.528270006 CEST | 37608 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:13:50.265397072 CEST | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Apr 2, 2025 22:13:54.360479116 CEST | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Apr 2, 2025 22:14:08.963462114 CEST | 33606 | 443 | 192.168.2.23 | 54.171.230.55 |
Apr 2, 2025 22:14:09.136234045 CEST | 443 | 33606 | 54.171.230.55 | 192.168.2.23 |
Apr 2, 2025 22:14:18.933089018 CEST | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 2, 2025 22:13:43.005259991 CEST | 39348 | 53 | 192.168.2.23 | 1.1.1.1 |
Apr 2, 2025 22:13:43.005346060 CEST | 57973 | 53 | 192.168.2.23 | 1.1.1.1 |
Apr 2, 2025 22:13:43.105911970 CEST | 53 | 57973 | 1.1.1.1 | 192.168.2.23 |
Apr 2, 2025 22:13:43.139689922 CEST | 53 | 39348 | 1.1.1.1 | 192.168.2.23 |
Apr 2, 2025 22:13:43.231615067 CEST | 58731 | 53 | 192.168.2.23 | 1.1.1.1 |
Apr 2, 2025 22:13:43.334218025 CEST | 53 | 58731 | 1.1.1.1 | 192.168.2.23 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Apr 2, 2025 22:13:46.123080015 CEST | 192.168.2.23 | 192.168.2.1 | 8283 | (Port unreachable) | Destination Unreachable |
Apr 2, 2025 22:15:06.142967939 CEST | 192.168.2.23 | 192.168.2.1 | 8283 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 2, 2025 22:13:43.005259991 CEST | 192.168.2.23 | 1.1.1.1 | 0xe8e2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 22:13:43.005346060 CEST | 192.168.2.23 | 1.1.1.1 | 0x2b43 | Standard query (0) | 28 | IN (0x0001) | false | |
Apr 2, 2025 22:13:43.231615067 CEST | 192.168.2.23 | 1.1.1.1 | 0x8810 | Standard query (0) | 28 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 2, 2025 22:13:43.139689922 CEST | 1.1.1.1 | 192.168.2.23 | 0xe8e2 | No error (0) | 162.213.35.25 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 22:13:43.139689922 CEST | 1.1.1.1 | 192.168.2.23 | 0xe8e2 | No error (0) | 162.213.35.24 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.23 | 37608 | 162.213.35.24 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 20:13:46 UTC | 307 | OUT | |
2025-04-02 20:13:46 UTC | 25 | IN | |
2025-04-02 20:13:46 UTC | 16384 | OUT | |
2025-04-02 20:13:46 UTC | 16384 | OUT | |
2025-04-02 20:13:46 UTC | 16384 | OUT | |
2025-04-02 20:13:46 UTC | 16384 | OUT | |
2025-04-02 20:13:46 UTC | 16384 | OUT | |
2025-04-02 20:13:46 UTC | 16384 | OUT | |
2025-04-02 20:13:46 UTC | 16384 | OUT | |
2025-04-02 20:13:46 UTC | 16384 | OUT | |
2025-04-02 20:13:46 UTC | 16384 | OUT | |
2025-04-02 20:13:46 UTC | 16384 | OUT | |
2025-04-02 20:13:47 UTC | 279 | IN |
System Behavior
Start time (UTC): | 20:13:17 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.m68k.elf |
Arguments: | /tmp/xd.m68k.elf |
File size: | 4463432 bytes |
MD5 hash: | cd177594338c77b895ae27c33f8f86cc |
Start time (UTC): | 20:13:17 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.m68k.elf |
Arguments: | - |
File size: | 4463432 bytes |
MD5 hash: | cd177594338c77b895ae27c33f8f86cc |
Start time (UTC): | 20:13:17 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.m68k.elf |
Arguments: | - |
File size: | 4463432 bytes |
MD5 hash: | cd177594338c77b895ae27c33f8f86cc |
Start time (UTC): | 20:13:17 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.m68k.elf |
Arguments: | - |
File size: | 4463432 bytes |
MD5 hash: | cd177594338c77b895ae27c33f8f86cc |
Start time (UTC): | 20:13:17 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.m68k.elf |
Arguments: | - |
File size: | 4463432 bytes |
MD5 hash: | cd177594338c77b895ae27c33f8f86cc |
Start time (UTC): | 20:13:17 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.m68k.elf |
Arguments: | - |
File size: | 4463432 bytes |
MD5 hash: | cd177594338c77b895ae27c33f8f86cc |
Start time (UTC): | 20:13:17 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.m68k.elf |
Arguments: | - |
File size: | 4463432 bytes |
MD5 hash: | cd177594338c77b895ae27c33f8f86cc |
Start time (UTC): | 20:13:29 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:29 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/journalctl |
Arguments: | /usr/bin/journalctl --smart-relinquish-var |
File size: | 80120 bytes |
MD5 hash: | bf3a987344f3bacafc44efd882abda8b |
Start time (UTC): | 20:13:29 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:29 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:29 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:29 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:29 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/pulseaudio |
Arguments: | /usr/bin/pulseaudio --daemonize=no --log-target=journal |
File size: | 100832 bytes |
MD5 hash: | 0c3b4c789d8ffb12b25507f27e14c186 |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/sbin/gdm3 |
Arguments: | - |
File size: | 453296 bytes |
MD5 hash: | 2492e2d8d34f9377e3e530a61a15674f |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /etc/gdm3/PrimeOff/Default |
Arguments: | /etc/gdm3/PrimeOff/Default |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/sbin/gdm3 |
Arguments: | - |
File size: | 453296 bytes |
MD5 hash: | 2492e2d8d34f9377e3e530a61a15674f |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /etc/gdm3/PrimeOff/Default |
Arguments: | /etc/gdm3/PrimeOff/Default |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/sbin/gdm3 |
Arguments: | - |
File size: | 453296 bytes |
MD5 hash: | 2492e2d8d34f9377e3e530a61a15674f |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /etc/gdm3/PrimeOff/Default |
Arguments: | /etc/gdm3/PrimeOff/Default |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:41 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:42 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:42 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:42 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:42 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:13:43 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:13:43 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /etc/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:43 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:43 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*nvidia[[:space:]]*$ /etc/modprobe.d/alsa-base.conf /etc/modprobe.d/amd64-microcode-blacklist.conf /etc/modprobe.d/blacklist-ath_pci.conf /etc/modprobe.d/blacklist-firewire.conf /etc/modprobe.d/blacklist-framebuffer.conf /etc/modprobe.d/blacklist-modem.conf /etc/modprobe.d/blacklist-oss.conf /etc/modprobe.d/blacklist-rare-network.conf /etc/modprobe.d/blacklist.conf /etc/modprobe.d/intel-microcode-blacklist.conf /etc/modprobe.d/iwlwifi.conf /etc/modprobe.d/mdadm.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:13:43 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:13:43 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /lib/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:43 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:43 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*nvidia[[:space:]]*$ /lib/modprobe.d/aliases.conf /lib/modprobe.d/blacklist_linux_5.4.0-72-generic.conf /lib/modprobe.d/blacklist_linux_5.4.0-81-generic.conf /lib/modprobe.d/fbdev-blacklist.conf /lib/modprobe.d/systemd.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:13:43 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:13:43 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /etc/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:43 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:43 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*radeon[[:space:]]*$ /etc/modprobe.d/alsa-base.conf /etc/modprobe.d/amd64-microcode-blacklist.conf /etc/modprobe.d/blacklist-ath_pci.conf /etc/modprobe.d/blacklist-firewire.conf /etc/modprobe.d/blacklist-framebuffer.conf /etc/modprobe.d/blacklist-modem.conf /etc/modprobe.d/blacklist-oss.conf /etc/modprobe.d/blacklist-rare-network.conf /etc/modprobe.d/blacklist.conf /etc/modprobe.d/intel-microcode-blacklist.conf /etc/modprobe.d/iwlwifi.conf /etc/modprobe.d/mdadm.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /lib/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*radeon[[:space:]]*$ /lib/modprobe.d/aliases.conf /lib/modprobe.d/blacklist_linux_5.4.0-72-generic.conf /lib/modprobe.d/blacklist_linux_5.4.0-81-generic.conf /lib/modprobe.d/fbdev-blacklist.conf /lib/modprobe.d/systemd.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /etc/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*amdgpu[[:space:]]*$ /etc/modprobe.d/alsa-base.conf /etc/modprobe.d/amd64-microcode-blacklist.conf /etc/modprobe.d/blacklist-ath_pci.conf /etc/modprobe.d/blacklist-firewire.conf /etc/modprobe.d/blacklist-framebuffer.conf /etc/modprobe.d/blacklist-modem.conf /etc/modprobe.d/blacklist-oss.conf /etc/modprobe.d/blacklist-rare-network.conf /etc/modprobe.d/blacklist.conf /etc/modprobe.d/intel-microcode-blacklist.conf /etc/modprobe.d/iwlwifi.conf /etc/modprobe.d/mdadm.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /lib/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*amdgpu[[:space:]]*$ /lib/modprobe.d/aliases.conf /lib/modprobe.d/blacklist_linux_5.4.0-72-generic.conf /lib/modprobe.d/blacklist_linux_5.4.0-81-generic.conf /lib/modprobe.d/fbdev-blacklist.conf /lib/modprobe.d/systemd.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:13:44 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*nouveau[[:space:]]*$\" /etc/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:45 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:45 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*nouveau[[:space:]]*$ /etc/modprobe.d/alsa-base.conf /etc/modprobe.d/amd64-microcode-blacklist.conf /etc/modprobe.d/blacklist-ath_pci.conf /etc/modprobe.d/blacklist-firewire.conf /etc/modprobe.d/blacklist-framebuffer.conf /etc/modprobe.d/blacklist-modem.conf /etc/modprobe.d/blacklist-oss.conf /etc/modprobe.d/blacklist-rare-network.conf /etc/modprobe.d/blacklist.conf /etc/modprobe.d/intel-microcode-blacklist.conf /etc/modprobe.d/iwlwifi.conf /etc/modprobe.d/mdadm.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:13:45 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:13:45 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*nouveau[[:space:]]*$\" /lib/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:45 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:45 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*nouveau[[:space:]]*$ /lib/modprobe.d/aliases.conf /lib/modprobe.d/blacklist_linux_5.4.0-72-generic.conf /lib/modprobe.d/blacklist_linux_5.4.0-81-generic.conf /lib/modprobe.d/fbdev-blacklist.conf /lib/modprobe.d/systemd.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:13:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/share/gdm/generate-config |
Arguments: | /usr/share/gdm/generate-config |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/share/gdm/generate-config |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:13:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/pkill |
Arguments: | pkill --signal HUP --uid gdm dconf-service |
File size: | 30968 bytes |
MD5 hash: | fa96a75a08109d8842e4865b2907d51f |
Start time (UTC): | 20:13:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/gdm3/gdm-wait-for-drm |
Arguments: | /usr/lib/gdm3/gdm-wait-for-drm |
File size: | 14640 bytes |
MD5 hash: | 82043ba752c6930b4e6aaea2f7747545 |
Start time (UTC): | 20:13:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/sbin/gdm3 |
Arguments: | /usr/sbin/gdm3 |
File size: | 453296 bytes |
MD5 hash: | 2492e2d8d34f9377e3e530a61a15674f |
Start time (UTC): | 20:13:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:13:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:07 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/dash |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:14:07 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/rm |
Arguments: | rm -f /tmp/tmp.DoGmkhIjL8 /tmp/tmp.absXHfGxPy /tmp/tmp.70h2CaxMMY |
File size: | 72056 bytes |
MD5 hash: | aa2b5496fdbfd88e38791ab81f90b95b |
Start time (UTC): | 20:14:07 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/dash |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:14:07 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/rm |
Arguments: | rm -f /tmp/tmp.DoGmkhIjL8 /tmp/tmp.absXHfGxPy /tmp/tmp.70h2CaxMMY |
File size: | 72056 bytes |
MD5 hash: | aa2b5496fdbfd88e38791ab81f90b95b |
Start time (UTC): | 20:14:12 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/libexec/gvfsd-fuse |
Arguments: | - |
File size: | 47632 bytes |
MD5 hash: | d18fbf1cbf8eb57b17fac48b7b4be933 |
Start time (UTC): | 20:14:12 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/fusermount |
Arguments: | fusermount -u -q -z -- /run/user/1000/gvfs |
File size: | 39144 bytes |
MD5 hash: | 576a1b135c82bdcbc97a91acea900566 |
Start time (UTC): | 20:14:45 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:45 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:14:54 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:55 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:14:55 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/plymouth |
Arguments: | /bin/plymouth quit |
File size: | 51352 bytes |
MD5 hash: | 87003efd8dad470042f5e75360a8f49f |
Start time (UTC): | 20:15:42 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |