Linux
Analysis Report
xd.arm.elf
Overview
General Information
Sample name: | xd.arm.elf |
Analysis ID: | 1655045 |
MD5: | c21a996dad5c78e727809509e9f637b9 |
SHA1: | 98a9448e9e447fb8b73d5e0b715320bb41a41298 |
SHA256: | 56d5484a6d9354dc27a42303ae5cf0f174bb3cb8dfe06e304ee342d28722430b |
Tags: | elfuser-abuse_ch |
Infos: |
Detection
Score: | 96 |
Range: | 0 - 100 |
Signatures
Classification
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1655045 |
Start date and time: | 2025-04-02 22:18:24 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 5m 0s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultlinuxfilecookbook.jbs |
Analysis system description: | Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11) |
Analysis Mode: | default |
Sample name: | xd.arm.elf |
Detection: | MAL |
Classification: | mal96.spre.troj.evad.linELF@0/12@3/0 |
- Connection to analysis system has been lost, crash info: Unknown
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- system is lnxubuntu20
- xd.arm.elf New Fork (PID: 6239, Parent: 6237)
- xd.arm.elf New Fork (PID: 6241, Parent: 6237)
- xd.arm.elf New Fork (PID: 6242, Parent: 6237)
- xd.arm.elf New Fork (PID: 6245, Parent: 6242)
- xd.arm.elf New Fork (PID: 6246, Parent: 6242)
- xd.arm.elf New Fork (PID: 6248, Parent: 6242)
- systemd New Fork (PID: 6259, Parent: 1)
- systemd New Fork (PID: 6277, Parent: 1)
- systemd New Fork (PID: 6279, Parent: 1)
- systemd New Fork (PID: 6280, Parent: 1)
- systemd New Fork (PID: 6281, Parent: 1)
- systemd New Fork (PID: 6282, Parent: 1)
- systemd New Fork (PID: 6313, Parent: 1)
- systemd New Fork (PID: 6326, Parent: 1)
- systemd New Fork (PID: 6338, Parent: 1)
- gnome-session-binary New Fork (PID: 6340, Parent: 1477)
- systemd New Fork (PID: 6341, Parent: 1)
- systemd New Fork (PID: 6343, Parent: 1)
- systemd New Fork (PID: 6344, Parent: 1860)
- gdm3 New Fork (PID: 6345, Parent: 1320)
- gdm3 New Fork (PID: 6346, Parent: 1320)
- gdm3 New Fork (PID: 6347, Parent: 1320)
- systemd New Fork (PID: 6351, Parent: 1)
- gpu-manager New Fork (PID: 6353, Parent: 6351)
- sh New Fork (PID: 6355, Parent: 6353)
- gpu-manager New Fork (PID: 6357, Parent: 6351)
- sh New Fork (PID: 6358, Parent: 6357)
- gpu-manager New Fork (PID: 6361, Parent: 6351)
- sh New Fork (PID: 6363, Parent: 6361)
- gpu-manager New Fork (PID: 6365, Parent: 6351)
- sh New Fork (PID: 6366, Parent: 6365)
- gpu-manager New Fork (PID: 6367, Parent: 6351)
- sh New Fork (PID: 6368, Parent: 6367)
- gpu-manager New Fork (PID: 6369, Parent: 6351)
- sh New Fork (PID: 6370, Parent: 6369)
- gpu-manager New Fork (PID: 6371, Parent: 6351)
- sh New Fork (PID: 6372, Parent: 6371)
- gpu-manager New Fork (PID: 6373, Parent: 6351)
- sh New Fork (PID: 6374, Parent: 6373)
- systemd New Fork (PID: 6352, Parent: 1)
- systemd New Fork (PID: 6356, Parent: 1)
- systemd New Fork (PID: 6360, Parent: 1)
- systemd New Fork (PID: 6362, Parent: 1)
- systemd New Fork (PID: 6364, Parent: 1)
- systemd New Fork (PID: 6376, Parent: 1)
- generate-config New Fork (PID: 6377, Parent: 6376)
- systemd New Fork (PID: 6378, Parent: 1)
- systemd (deleted) New Fork (PID: 6379, Parent: 1)
- gvfsd-fuse New Fork (PID: 6382, Parent: 2038)
- dash New Fork (PID: 6387, Parent: 4331)
- dash New Fork (PID: 6388, Parent: 4331)
- systemd (deleted) New Fork (PID: 6409, Parent: 1)
- systemd (deleted) New Fork (PID: 6410, Parent: 1)
- systemd (deleted) New Fork (PID: 6411, Parent: 1)
- systemd (deleted) New Fork (PID: 6412, Parent: 1)
- systemd (deleted) New Fork (PID: 6413, Parent: 1)
- gpu-manager New Fork (PID: 6415, Parent: 6413)
- gpu-manager New Fork (PID: 6416, Parent: 6413)
- gpu-manager New Fork (PID: 6417, Parent: 6413)
- gpu-manager New Fork (PID: 6418, Parent: 6413)
- gpu-manager New Fork (PID: 6419, Parent: 6413)
- gpu-manager New Fork (PID: 6420, Parent: 6413)
- gpu-manager New Fork (PID: 6421, Parent: 6413)
- gpu-manager New Fork (PID: 6422, Parent: 6413)
- systemd (deleted) New Fork (PID: 6414, Parent: 1)
- systemd (deleted) New Fork (PID: 6423, Parent: 1)
- systemd (deleted) New Fork (PID: 6424, Parent: 1)
- gpu-manager New Fork (PID: 6425, Parent: 6424)
- gpu-manager New Fork (PID: 6426, Parent: 6424)
- gpu-manager New Fork (PID: 6427, Parent: 6424)
- gpu-manager New Fork (PID: 6428, Parent: 6424)
- gpu-manager New Fork (PID: 6429, Parent: 6424)
- gpu-manager New Fork (PID: 6430, Parent: 6424)
- gpu-manager New Fork (PID: 6431, Parent: 6424)
- gpu-manager New Fork (PID: 6432, Parent: 6424)
- systemd (deleted) New Fork (PID: 6433, Parent: 1)
- systemd (deleted) New Fork (PID: 6434, Parent: 1)
- gpu-manager New Fork (PID: 6435, Parent: 6434)
- gpu-manager New Fork (PID: 6436, Parent: 6434)
- gpu-manager New Fork (PID: 6437, Parent: 6434)
- gpu-manager New Fork (PID: 6438, Parent: 6434)
- gpu-manager New Fork (PID: 6439, Parent: 6434)
- gpu-manager New Fork (PID: 6440, Parent: 6434)
- gpu-manager New Fork (PID: 6441, Parent: 6434)
- gpu-manager New Fork (PID: 6442, Parent: 6434)
- systemd (deleted) New Fork (PID: 6443, Parent: 1)
- systemd (deleted) New Fork (PID: 6444, Parent: 1)
- gpu-manager New Fork (PID: 6445, Parent: 6444)
- gpu-manager New Fork (PID: 6446, Parent: 6444)
- gpu-manager New Fork (PID: 6447, Parent: 6444)
- gpu-manager New Fork (PID: 6448, Parent: 6444)
- gpu-manager New Fork (PID: 6449, Parent: 6444)
- gpu-manager New Fork (PID: 6450, Parent: 6444)
- gpu-manager New Fork (PID: 6451, Parent: 6444)
- gpu-manager New Fork (PID: 6452, Parent: 6444)
- systemd (deleted) New Fork (PID: 6453, Parent: 1)
- systemd (deleted) New Fork (PID: 6454, Parent: 1)
- systemd (deleted) New Fork (PID: 6455, Parent: 1)
- systemd (deleted) New Fork (PID: 6456, Parent: 1)
- systemd (deleted) New Fork (PID: 6458, Parent: 1860)
- cleanup
Name | Description | Attribution | Blogpost URLs | Link |
---|---|---|---|---|
Mirai | Mirai is one of the first significant botnets targeting exposed networking devices running Linux. Found in August 2016 by MalwareMustDie, its name means "future" in Japanese. Nowadays it targets a wide range of networked embedded devices such as IP cameras, home routers (many vendors involved), and other IoT devices. Since the source code was published on "Hack Forums" many variants of the Mirai family appeared, infecting mostly home networks all around the world. | No Attribution |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_Mirai_9 | Yara detected Mirai | Joe Security | ||
JoeSecurity_Mirai_5 | Yara detected Mirai | Joe Security | ||
JoeSecurity_Mirai_8 | Yara detected Mirai | Joe Security | ||
Linux_Trojan_Gafgyt_28a2fe0c | unknown | unknown |
| |
Linux_Trojan_Gafgyt_ea92cca8 | unknown | unknown |
| |
Click to see the 59 entries |
- • AV Detection
- • Bitcoin Miner
- • Networking
- • System Summary
- • Data Obfuscation
- • Persistence and Installation Behavior
- • Hooking and other Techniques for Hiding and Protection
- • Malware Analysis System Evasion
- • Stealing of Sensitive Information
- • Remote Access Functionality
Click to jump to signature section
AV Detection |
---|
Source: | ReversingLabs: | |||
Source: | Virustotal: | Perma Link |
Source: | Reads CPU info from /sys: | Jump to behavior | ||
Source: | Reads CPU info from /sys: | Jump to behavior |
Source: | TCP traffic: |
Source: | HTTP traffic detected: |
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior | ||
Source: | Socket: | Jump to behavior |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
System Summary |
---|
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior |
Source: | Program segment: |
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior | ||
Source: | SIGKILL sent: | Jump to behavior |
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Classification label: |
Data Obfuscation |
---|
Source: | String containing UPX found: | ||
Source: | String containing UPX found: | ||
Source: | String containing UPX found: |
Persistence and Installation Behavior |
---|
Source: | File: | Jump to behavior |
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior |
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior | ||
Source: | Shell command executed: | Jump to behavior |
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior | ||
Source: | Grep executable: | Jump to behavior |
Source: | Pkill executable: | Jump to behavior |
Source: | Rm executable: | Jump to behavior | ||
Source: | Rm executable: | Jump to behavior |
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior |
Source: | Log file created: | |||
Source: | Log file created: | |||
Source: | Log file created: | |||
Source: | Log file created: | Jump to dropped file |
Hooking and other Techniques for Hiding and Protection |
---|
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior |
Source: | Submission file: |
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior | ||
Source: | Truncated file: | Jump to behavior |
Source: | Reads CPU info from /sys: | Jump to behavior | ||
Source: | Reads CPU info from /sys: | Jump to behavior |
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior | ||
Source: | Queries kernel information via 'uname': | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Stealing of Sensitive Information |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Remote Access Functionality |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | 1 Scripting | Valid Accounts | Windows Management Instrumentation | 1 Scripting | Path Interception | 1 File and Directory Permissions Modification | 1 OS Credential Dumping | 11 Security Software Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | 1 Service Stop |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Disable or Modify Tools | LSASS Memory | 1 File and Directory Discovery | Remote Desktop Protocol | Data from Removable Media | 1 Non-Standard Port | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 11 Obfuscated Files or Information | Security Account Manager | 1 System Information Discovery | SMB/Windows Admin Shares | Data from Network Shared Drive | 2 Non-Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | 1 Indicator Removal | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Application Layer Protocol | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | 11 File Deletion | LSA Secrets | Internet Connection Discovery | SSH | Keylogging | Fallback Channels | Scheduled Transfer | Data Encrypted for Impact |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
42% | ReversingLabs | Linux.Backdoor.Mirai | ||
25% | Virustotal | Browse |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
daisy.ubuntu.com | 162.213.35.25 | true | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
18.254.109.131 | unknown | United States | 16509 | AMAZON-02US | false | |
65.23.74.1 | unknown | United States | 26510 | FTCH-HQ-ASNUS | false | |
4.23.203.211 | unknown | United States | 3356 | LEVEL3US | false | |
107.111.168.108 | unknown | United States | 7018 | ATT-INTERNET4US | false | |
44.178.37.237 | unknown | United States | 7377 | UCSDUS | false | |
246.61.137.117 | unknown | Reserved | unknown | unknown | false | |
164.61.45.205 | unknown | Germany | 8569 | MSYSDE | false | |
98.110.92.145 | unknown | United States | 701 | UUNETUS | false | |
76.146.72.144 | unknown | United States | 7922 | COMCAST-7922US | false | |
91.81.147.169 | unknown | Italy | 30722 | VODAFONE-IT-ASNIT | false | |
153.139.208.161 | unknown | Japan | 4713 | OCNNTTCommunicationsCorporationJP | false | |
146.90.117.50 | unknown | United Kingdom | 6871 | PLUSNETUKInternetServiceProviderGB | false | |
168.31.211.199 | unknown | United States | 3479 | PEACHNET-AS1US | false | |
218.188.161.112 | unknown | Hong Kong | 9304 | HUTCHISON-AS-APHGCGlobalCommunicationsLimitedHK | false | |
138.215.120.231 | unknown | Sweden | 3246 | TDCSONGTele2BusinessTDCSwedenSE | false | |
1.33.140.225 | unknown | Japan | 2514 | INFOSPHERENTTPCCommunicationsIncJP | false | |
70.43.152.150 | unknown | United States | 7029 | WINDSTREAMUS | false | |
158.129.162.112 | unknown | Lithuania | 5479 | UNI-VILNIUSUniversityNetworkinVilniusLT | false | |
151.21.166.244 | unknown | Italy | 1267 | ASN-WINDTREIUNETEU | false | |
91.189.91.43 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false | |
91.189.91.42 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false | |
86.16.249.51 | unknown | United Kingdom | 5089 | NTLGB | false | |
136.72.176.33 | unknown | United States | 60311 | ONEFMCH | false | |
216.153.28.169 | unknown | United States | 6203 | ISDN-NETUS | false | |
207.42.245.114 | unknown | United States | 18649 | ST-DALUS | false | |
195.25.174.79 | unknown | France | 3215 | FranceTelecom-OrangeFR | false | |
31.4.178.250 | unknown | Spain | 12430 | VODAFONE_ESES | false | |
253.23.112.103 | unknown | Reserved | unknown | unknown | false | |
176.187.107.146 | unknown | France | 5410 | BOUYGTEL-ISPFR | false | |
17.148.202.84 | unknown | United States | 714 | APPLE-ENGINEERINGUS | false | |
40.234.204.79 | unknown | United States | 4249 | LILLY-ASUS | false | |
42.233.232.94 | unknown | China | 4837 | CHINA169-BACKBONECHINAUNICOMChina169BackboneCN | false | |
17.101.27.50 | unknown | United States | 714 | APPLE-ENGINEERINGUS | false | |
58.159.92.153 | unknown | Japan | 17506 | UCOMARTERIANetworksCorporationJP | false | |
57.140.168.181 | unknown | Belgium | 2686 | ATGS-MMD-ASUS | false | |
79.113.0.230 | unknown | Romania | 8708 | RCS-RDS73-75DrStaicoviciRO | false | |
205.225.157.230 | unknown | United States | 1226 | CTA-42-AS1226US | false | |
69.0.25.214 | unknown | United States | 7018 | ATT-INTERNET4US | false | |
46.96.235.233 | unknown | Ukraine | 34058 | LIFECELL-ASUA | false | |
206.48.20.156 | unknown | United States | 11816 | SetarNetAW | false | |
166.181.114.207 | unknown | United States | 6614 | USCC-ASNUS | false | |
143.239.205.209 | unknown | Ireland | 1213 | HEANETIE | false | |
19.244.164.99 | unknown | United States | 3 | MIT-GATEWAYSUS | false | |
98.201.241.33 | unknown | United States | 7922 | COMCAST-7922US | false | |
104.175.237.87 | unknown | United States | 20001 | TWC-20001-PACWESTUS | false | |
185.91.126.85 | unknown | United Kingdom | 47474 | VIRTUAL1GB | false | |
66.186.78.42 | unknown | Canada | 5690 | VIANET-NOCA | false | |
155.239.86.35 | unknown | South Africa | 5713 | SAIX-NETZA | false | |
17.211.151.195 | unknown | United States | 714 | APPLE-ENGINEERINGUS | false | |
95.169.148.233 | unknown | Russian Federation | 25086 | URALTC-ASRU | false | |
130.170.13.58 | unknown | United States | 12173 | UAUS | false | |
104.119.199.110 | unknown | United States | 16625 | AKAMAI-ASUS | false | |
187.70.139.90 | unknown | Brazil | 22085 | ClaroSABR | false | |
255.80.227.49 | unknown | Reserved | unknown | unknown | false | |
58.118.101.15 | unknown | China | 4847 | CNIX-APChinaNetworksInter-ExchangeCN | false | |
24.34.206.83 | unknown | United States | 7922 | COMCAST-7922US | false | |
34.249.145.219 | unknown | United States | 16509 | AMAZON-02US | false | |
190.106.50.2 | unknown | Nicaragua | 25607 | IBWCommunicationsNI | false | |
148.78.202.211 | unknown | United States | 16811 | SAGENET-GTHUS | false | |
144.66.194.244 | unknown | New Zealand | 3243 | MEO-RESIDENCIALPT | false | |
171.153.107.153 | unknown | United States | 9874 | STARHUB-MOBILEStarHubLtdSG | false | |
121.215.152.153 | unknown | Australia | 1221 | ASN-TELSTRATelstraCorporationLtdAU | false | |
61.210.89.146 | unknown | Japan | 2510 | INFOWEBFUJITSULIMITEDJP | false | |
14.67.88.105 | unknown | Korea Republic of | 4766 | KIXS-AS-KRKoreaTelecomKR | false | |
73.154.135.7 | unknown | United States | 7922 | COMCAST-7922US | false | |
174.142.167.245 | unknown | Canada | 32613 | IWEB-ASCA | false | |
2.127.7.36 | unknown | United Kingdom | 5607 | BSKYB-BROADBAND-ASGB | false | |
74.20.99.232 | unknown | United States | 7922 | COMCAST-7922US | false | |
104.74.41.206 | unknown | United States | 16625 | AKAMAI-ASUS | false | |
41.102.13.144 | unknown | Algeria | 36947 | ALGTEL-ASDZ | false | |
41.17.76.58 | unknown | South Africa | 29975 | VODACOM-ZA | false | |
246.118.132.64 | unknown | Reserved | unknown | unknown | false | |
101.43.161.160 | unknown | China | 4847 | CNIX-APChinaNetworksInter-ExchangeCN | false | |
20.131.222.216 | unknown | United States | 8075 | MICROSOFT-CORP-MSN-AS-BLOCKUS | false | |
251.47.134.58 | unknown | Reserved | unknown | unknown | false | |
31.29.86.55 | unknown | United Arab Emirates | 56479 | HCT-ASAE | false | |
213.209.129.92 | unknown | Germany | 42821 | RAPIDNET-DEHaunstetterStr19DE | false | |
248.60.17.66 | unknown | Reserved | unknown | unknown | false | |
41.63.31.4 | unknown | Zambia | 37532 | ZAMRENZM | false | |
243.41.175.218 | unknown | Reserved | unknown | unknown | false | |
67.191.247.185 | unknown | United States | 7922 | COMCAST-7922US | false | |
247.167.202.110 | unknown | Reserved | unknown | unknown | false | |
98.82.158.255 | unknown | United States | 11351 | TWC-11351-NORTHEASTUS | false | |
179.142.178.199 | unknown | Brazil | 53037 | NEXTELTELECOMUNICACOESLTDABR | false | |
218.214.231.176 | unknown | Australia | 9443 | VOCUS-RETAIL-AUVocusRetailAU | false | |
255.207.225.35 | unknown | Reserved | unknown | unknown | false | |
47.35.175.36 | unknown | United States | 20115 | CHARTER-20115US | false | |
76.102.124.246 | unknown | United States | 7922 | COMCAST-7922US | false | |
160.160.12.199 | unknown | Morocco | 6713 | IAM-ASMA | false | |
251.112.128.89 | unknown | Reserved | unknown | unknown | false | |
67.12.53.176 | unknown | United States | 33363 | BHN-33363US | false | |
209.169.198.126 | unknown | United States | 11232 | MIDCO-NETUS | false | |
162.213.35.24 | unknown | United States | 41231 | CANONICAL-ASGB | false | |
200.61.173.216 | unknown | Argentina | 16814 | NSSSAAR | false | |
252.60.111.32 | unknown | Reserved | unknown | unknown | false | |
41.142.145.165 | unknown | Morocco | 36903 | MT-MPLSMA | false | |
197.70.143.150 | unknown | South Africa | 16637 | MTNNS-ASZA | false | |
251.139.123.160 | unknown | Reserved | unknown | unknown | false | |
195.63.228.176 | unknown | Germany | 12312 | ECOTELDE | false | |
61.247.1.158 | unknown | Indonesia | 23700 | FASTNET-AS-IDLinknet-FastnetASNID | false |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
91.189.91.43 | Get hash | malicious | Mirai | Browse | ||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Prometei | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Prometei | Browse | |||
91.189.91.42 | Get hash | malicious | Mirai | Browse | ||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Prometei | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Mirai | Browse | |||
Get hash | malicious | Prometei | Browse |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
daisy.ubuntu.com | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
ATT-INTERNET4US | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
AMAZON-02US | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Prometei | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
LEVEL3US | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
FTCH-HQ-ASNUS | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Gafgyt Mirai | Browse |
|
Process: | /usr/bin/pulseaudio |
File Type: | |
Category: | dropped |
Size (bytes): | 10 |
Entropy (8bit): | 2.9219280948873623 |
Encrypted: | false |
SSDEEP: | 3:5bkPn:pkP |
MD5: | FF001A15CE15CF062A3704CEA2991B5F |
SHA1: | B06F6855F376C3245B82212AC73ADED55DFE5DEF |
SHA-256: | C54830B41ECFA1B6FBDC30397188DDA86B7B200E62AEAC21AE694A6192DCC38A |
SHA-512: | 65EBF7C31F6F65713CE01B38A112E97D0AE64A6BD1DA40CE4C1B998F10CD3912EE1A48BB2B279B24493062118AAB3B8753742E2AF28E56A31A7AAB27DE80E7BF |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | /usr/bin/pulseaudio |
File Type: | |
Category: | dropped |
Size (bytes): | 18 |
Entropy (8bit): | 3.4613201402110088 |
Encrypted: | false |
SSDEEP: | 3:5bkrIZsXvn:pkckv |
MD5: | 28FE6435F34B3367707BB1C5D5F6B430 |
SHA1: | EB8FE2D16BD6BBCCE106C94E4D284543B2573CF6 |
SHA-256: | 721A37C69E555799B41D308849E8F8125441883AB021B723FED90A9B744F36C0 |
SHA-512: | 6B6AB7C0979629D0FEF6BE47C5C6BCC367EDD0AAE3FC973F4DE2FD5F0A819C89E7656DB65D453B1B5398E54012B27EDFE02894AD87A7E0AF3A9C5F2EB24A9919 |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | /usr/sbin/gdm3 |
File Type: | |
Category: | dropped |
Size (bytes): | 5 |
Entropy (8bit): | 2.321928094887362 |
Encrypted: | false |
SSDEEP: | 3:Ze:M |
MD5: | 440F41DC9493D4461CC5019CBD8F621F |
SHA1: | 14E2905711A7CF695462F6FAE195794991590310 |
SHA-256: | B705F8557613B6F45A5B690979E3FD29DAE8D58E8D6A693406F5512C5E7D7A12 |
SHA-512: | 2487A9BA27F88D0FF784C7A4D52A7D1BD36B4A6ABD4BCD586E451A7C0EAB02059018AD986768291D030A311B0C9600800269A186E3B38F1AD637B0EBB1C5D73D |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | /usr/bin/pulseaudio |
File Type: | |
Category: | dropped |
Size (bytes): | 5 |
Entropy (8bit): | 1.9219280948873623 |
Encrypted: | false |
SSDEEP: | 3:aJ:aJ |
MD5: | 8E0E918653C2C936524527B7AF907534 |
SHA1: | 142BC7928697AAF7BE15D2A7C85B283EAADC167F |
SHA-256: | 25C0A4ED10C1AFE5630B7DC59C311B6F4ED96A12BE43FF406892D32D21B1D7E6 |
SHA-512: | 0E47C2E379DE4A29DCC175EF651EFF735D85D79DD6076518568637A90EEB37DB574114A9BC7084F05EA2679DB099028D51CE91EAEE2028CD1B7489B01EB42288 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | /usr/bin/gpu-manager |
File Type: | |
Category: | dropped |
Size (bytes): | 25 |
Entropy (8bit): | 2.7550849518197795 |
Encrypted: | false |
SSDEEP: | 3:JoT/V9fDVbn:M/V3n |
MD5: | 078760523943E160756979906B85FB5E |
SHA1: | 0962643266F4C5537F7D125046F28F21D6DD0C89 |
SHA-256: | 048416AC7A9A99690B8B53718CD39F32F637B55CC8DD8E67E58E5AEF060DD41C |
SHA-512: | DEFAAE8F8B54C61A716A0B0B4884358FEB8EB44DFEA01AAA5A687FDA7182792B7DEBB34AA840672EB3B40EB59FD0186749E08E47D181786C7FAA8C8F73F0104D |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | /usr/bin/gpu-manager |
File Type: | |
Category: | dropped |
Size (bytes): | 1371 |
Entropy (8bit): | 4.8296848499188485 |
Encrypted: | false |
SSDEEP: | 24:wPXXX9uV6BNu3WDF3GF3XFFxFFed2uk2HUvJlfWkpPpx7uvvAdow9555cJz:wPXXXe6vejpeC2HUR5WkpPpcvAdow95O |
MD5: | 3AF77E630DA00B3BE24F4E8AA5D78B13 |
SHA1: | BCF2D99E002F6DE2413A183227B011CFBEF5673D |
SHA-256: | EB1CBBA20845237B4409274D693FEAE13F835274DA3337B7A9D14F4D7FDF9DEA |
SHA-512: | 8524B1E8A761F962B32F396812099B9B0B2DCF3C9FCA8605424753CFCFF4DC67EDC5EE1D8C91B9C0ED7FAE6BB1E752898B8D514B7C421D1839D6FEDA609C593C |
Malicious: | false |
Preview: |
File type: | |
Entropy (8bit): | 7.948597375515882 |
TrID: |
|
File name: | xd.arm.elf |
File size: | 29'992 bytes |
MD5: | c21a996dad5c78e727809509e9f637b9 |
SHA1: | 98a9448e9e447fb8b73d5e0b715320bb41a41298 |
SHA256: | 56d5484a6d9354dc27a42303ae5cf0f174bb3cb8dfe06e304ee342d28722430b |
SHA512: | 39ae4c7f2046ff8dd56f3d26d28428f53e1f7f2f5bd73337b1c3ade94fbd1c83be4ddd2cc31a1562120bd51a5d0f54f2bee1934b7f9372b6ecd38c1decf42a56 |
SSDEEP: | 384:AymTK4fnB92B5LvzcNvTTtKgat/WTgpFu4uVC+A/T5a862EYGf/ye1LgRJv1hymm:/ILfnB92B5MNvTZalN+OxeJgls3Uoz5 |
TLSH: | C0D2E126E7C67D77F3C184739A280E4BB2120B7905F7B132055882876ADAE4F657CB53 |
File Content Preview: | .ELF...a..........(.........4...........4. ...(.....................?t..?t..........................................Q.td............................s.y.UPX!....................R..........?.E.h;.}...^..........f.....T....h............+h.*.......zj.,.C;6..C |
ELF header | |
---|---|
Class: | |
Data: | |
Version: | |
Machine: | |
Version Number: | |
Type: | |
OS/ABI: | |
ABI Version: | 0 |
Entry Point Address: | |
Flags: | |
ELF Header Size: | 52 |
Program Header Offset: | 52 |
Program Header Size: | 32 |
Number of Program Headers: | 3 |
Section Header Offset: | 0 |
Section Header Size: | 40 |
Number of Section Headers: | 0 |
Header String Table Index: | 0 |
Type | Offset | Virtual Address | Physical Address | File Size | Memory Size | Entropy | Flags | Flags Description | Align | Prog Interpreter | Section Mappings |
---|---|---|---|---|---|---|---|---|---|---|---|
LOAD | 0x0 | 0x8000 | 0x8000 | 0x743f | 0x743f | 7.9517 | 0x5 | R E | 0x8000 | ||
LOAD | 0x1914 | 0x21914 | 0x21914 | 0x0 | 0x0 | 0.0000 | 0x6 | RW | 0x8000 | ||
GNU_STACK | 0x0 | 0x0 | 0x0 | 0x0 | 0x0 | 0.0000 | 0x7 | RWE | 0x4 |
Download Network PCAP: filtered – full
- Total Packets: 200
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 2, 2025 22:19:21.043549061 CEST | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Apr 2, 2025 22:19:22.653304100 CEST | 60526 | 7887 | 192.168.2.23 | 213.209.129.92 |
Apr 2, 2025 22:19:22.689537048 CEST | 3064 | 23 | 192.168.2.23 | 160.160.12.199 |
Apr 2, 2025 22:19:22.689677954 CEST | 3064 | 23 | 192.168.2.23 | 41.139.7.199 |
Apr 2, 2025 22:19:22.689702988 CEST | 3064 | 23 | 192.168.2.23 | 91.81.147.169 |
Apr 2, 2025 22:19:22.689738035 CEST | 3064 | 23 | 192.168.2.23 | 251.47.134.58 |
Apr 2, 2025 22:19:22.689738035 CEST | 3064 | 23 | 192.168.2.23 | 44.178.37.237 |
Apr 2, 2025 22:19:22.689990997 CEST | 3064 | 23 | 192.168.2.23 | 164.61.45.205 |
Apr 2, 2025 22:19:22.689990997 CEST | 3064 | 23 | 192.168.2.23 | 95.169.148.233 |
Apr 2, 2025 22:19:22.689990997 CEST | 3064 | 23 | 192.168.2.23 | 243.41.175.218 |
Apr 2, 2025 22:19:22.689990997 CEST | 3064 | 23 | 192.168.2.23 | 57.140.168.181 |
Apr 2, 2025 22:19:22.689990997 CEST | 3064 | 23 | 192.168.2.23 | 222.235.71.0 |
Apr 2, 2025 22:19:22.689990997 CEST | 3064 | 23 | 192.168.2.23 | 98.82.158.255 |
Apr 2, 2025 22:19:22.689995050 CEST | 3064 | 23 | 192.168.2.23 | 17.211.151.195 |
Apr 2, 2025 22:19:22.689995050 CEST | 3064 | 23 | 192.168.2.23 | 98.73.119.53 |
Apr 2, 2025 22:19:22.689996004 CEST | 3064 | 23 | 192.168.2.23 | 200.61.173.216 |
Apr 2, 2025 22:19:22.689999104 CEST | 3064 | 23 | 192.168.2.23 | 176.187.107.146 |
Apr 2, 2025 22:19:22.689999104 CEST | 3064 | 23 | 192.168.2.23 | 69.0.25.214 |
Apr 2, 2025 22:19:22.689999104 CEST | 3064 | 23 | 192.168.2.23 | 143.239.205.209 |
Apr 2, 2025 22:19:22.689999104 CEST | 3064 | 23 | 192.168.2.23 | 41.102.13.144 |
Apr 2, 2025 22:19:22.689999104 CEST | 3064 | 23 | 192.168.2.23 | 144.66.194.244 |
Apr 2, 2025 22:19:22.689997911 CEST | 3064 | 23 | 192.168.2.23 | 150.231.47.252 |
Apr 2, 2025 22:19:22.689997911 CEST | 3064 | 23 | 192.168.2.23 | 157.111.213.97 |
Apr 2, 2025 22:19:22.690000057 CEST | 3064 | 23 | 192.168.2.23 | 194.83.129.106 |
Apr 2, 2025 22:19:22.690000057 CEST | 3064 | 23 | 192.168.2.23 | 40.234.204.79 |
Apr 2, 2025 22:19:22.690000057 CEST | 3064 | 23 | 192.168.2.23 | 166.181.114.207 |
Apr 2, 2025 22:19:22.690000057 CEST | 3064 | 23 | 192.168.2.23 | 86.16.249.51 |
Apr 2, 2025 22:19:22.690001011 CEST | 3064 | 23 | 192.168.2.23 | 20.225.226.167 |
Apr 2, 2025 22:19:22.690001011 CEST | 3064 | 23 | 192.168.2.23 | 19.244.164.99 |
Apr 2, 2025 22:19:22.690002918 CEST | 3064 | 23 | 192.168.2.23 | 122.211.243.9 |
Apr 2, 2025 22:19:22.689997911 CEST | 3064 | 23 | 192.168.2.23 | 185.91.126.85 |
Apr 2, 2025 22:19:22.690004110 CEST | 3064 | 23 | 192.168.2.23 | 41.75.56.168 |
Apr 2, 2025 22:19:22.690001011 CEST | 3064 | 23 | 192.168.2.23 | 117.201.117.99 |
Apr 2, 2025 22:19:22.690004110 CEST | 3064 | 23 | 192.168.2.23 | 252.60.111.32 |
Apr 2, 2025 22:19:22.690001011 CEST | 3064 | 23 | 192.168.2.23 | 142.43.42.97 |
Apr 2, 2025 22:19:22.690004110 CEST | 3064 | 23 | 192.168.2.23 | 246.118.132.64 |
Apr 2, 2025 22:19:22.689997911 CEST | 3064 | 23 | 192.168.2.23 | 246.61.137.117 |
Apr 2, 2025 22:19:22.689997911 CEST | 3064 | 23 | 192.168.2.23 | 104.175.237.87 |
Apr 2, 2025 22:19:22.690004110 CEST | 3064 | 23 | 192.168.2.23 | 106.31.146.132 |
Apr 2, 2025 22:19:22.690001011 CEST | 3064 | 23 | 192.168.2.23 | 66.186.78.42 |
Apr 2, 2025 22:19:22.690004110 CEST | 3064 | 23 | 192.168.2.23 | 88.83.120.214 |
Apr 2, 2025 22:19:22.690001011 CEST | 3064 | 23 | 192.168.2.23 | 216.153.28.169 |
Apr 2, 2025 22:19:22.690001011 CEST | 3064 | 23 | 192.168.2.23 | 40.160.94.228 |
Apr 2, 2025 22:19:22.690046072 CEST | 3064 | 23 | 192.168.2.23 | 173.45.150.119 |
Apr 2, 2025 22:19:22.690047026 CEST | 3064 | 23 | 192.168.2.23 | 4.23.203.211 |
Apr 2, 2025 22:19:22.690047026 CEST | 3064 | 23 | 192.168.2.23 | 18.254.109.131 |
Apr 2, 2025 22:19:22.690054893 CEST | 3064 | 23 | 192.168.2.23 | 174.142.167.245 |
Apr 2, 2025 22:19:22.690054893 CEST | 3064 | 23 | 192.168.2.23 | 197.70.143.150 |
Apr 2, 2025 22:19:22.690054893 CEST | 3064 | 23 | 192.168.2.23 | 74.104.47.34 |
Apr 2, 2025 22:19:22.690054893 CEST | 3064 | 23 | 192.168.2.23 | 121.215.152.153 |
Apr 2, 2025 22:19:22.690054893 CEST | 3064 | 23 | 192.168.2.23 | 153.139.208.161 |
Apr 2, 2025 22:19:22.690057039 CEST | 3064 | 23 | 192.168.2.23 | 47.35.175.36 |
Apr 2, 2025 22:19:22.690056086 CEST | 3064 | 23 | 192.168.2.23 | 111.43.231.178 |
Apr 2, 2025 22:19:22.690057039 CEST | 3064 | 23 | 192.168.2.23 | 31.29.86.55 |
Apr 2, 2025 22:19:22.690054893 CEST | 3064 | 23 | 192.168.2.23 | 16.32.111.204 |
Apr 2, 2025 22:19:22.690054893 CEST | 3064 | 23 | 192.168.2.23 | 104.74.41.206 |
Apr 2, 2025 22:19:22.690054893 CEST | 3064 | 23 | 192.168.2.23 | 139.206.231.18 |
Apr 2, 2025 22:19:22.690054893 CEST | 3064 | 23 | 192.168.2.23 | 195.25.174.79 |
Apr 2, 2025 22:19:22.690054893 CEST | 3064 | 23 | 192.168.2.23 | 41.17.76.58 |
Apr 2, 2025 22:19:22.690054893 CEST | 3064 | 23 | 192.168.2.23 | 138.215.120.231 |
Apr 2, 2025 22:19:22.690072060 CEST | 3064 | 23 | 192.168.2.23 | 130.170.13.58 |
Apr 2, 2025 22:19:22.690072060 CEST | 3064 | 23 | 192.168.2.23 | 98.201.241.33 |
Apr 2, 2025 22:19:22.690072060 CEST | 3064 | 23 | 192.168.2.23 | 104.119.199.110 |
Apr 2, 2025 22:19:22.690072060 CEST | 3064 | 23 | 192.168.2.23 | 187.70.139.90 |
Apr 2, 2025 22:19:22.690072060 CEST | 3064 | 23 | 192.168.2.23 | 23.146.245.251 |
Apr 2, 2025 22:19:22.690072060 CEST | 3064 | 23 | 192.168.2.23 | 16.162.45.24 |
Apr 2, 2025 22:19:22.690073967 CEST | 3064 | 23 | 192.168.2.23 | 35.97.221.168 |
Apr 2, 2025 22:19:22.690073967 CEST | 3064 | 23 | 192.168.2.23 | 253.23.112.103 |
Apr 2, 2025 22:19:22.690098047 CEST | 3064 | 23 | 192.168.2.23 | 1.33.140.225 |
Apr 2, 2025 22:19:22.690099001 CEST | 3064 | 23 | 192.168.2.23 | 74.20.99.232 |
Apr 2, 2025 22:19:22.690099001 CEST | 3064 | 23 | 192.168.2.23 | 111.76.103.160 |
Apr 2, 2025 22:19:22.690099001 CEST | 3064 | 23 | 192.168.2.23 | 136.115.91.31 |
Apr 2, 2025 22:19:22.690099001 CEST | 3064 | 23 | 192.168.2.23 | 17.148.202.84 |
Apr 2, 2025 22:19:22.690099001 CEST | 3064 | 23 | 192.168.2.23 | 146.90.117.50 |
Apr 2, 2025 22:19:22.690099001 CEST | 3064 | 23 | 192.168.2.23 | 251.112.128.89 |
Apr 2, 2025 22:19:22.690099001 CEST | 3064 | 23 | 192.168.2.23 | 136.72.176.33 |
Apr 2, 2025 22:19:22.690099001 CEST | 3064 | 23 | 192.168.2.23 | 73.154.135.7 |
Apr 2, 2025 22:19:22.690104961 CEST | 3064 | 23 | 192.168.2.23 | 105.98.41.18 |
Apr 2, 2025 22:19:22.690109968 CEST | 3064 | 23 | 192.168.2.23 | 115.54.56.199 |
Apr 2, 2025 22:19:22.690109968 CEST | 3064 | 23 | 192.168.2.23 | 61.247.1.158 |
Apr 2, 2025 22:19:22.690114021 CEST | 3064 | 23 | 192.168.2.23 | 76.108.232.5 |
Apr 2, 2025 22:19:22.690121889 CEST | 3064 | 23 | 192.168.2.23 | 76.102.124.246 |
Apr 2, 2025 22:19:22.690125942 CEST | 3064 | 23 | 192.168.2.23 | 67.12.53.176 |
Apr 2, 2025 22:19:22.690135002 CEST | 3064 | 23 | 192.168.2.23 | 155.239.86.35 |
Apr 2, 2025 22:19:22.690135002 CEST | 3064 | 23 | 192.168.2.23 | 58.118.101.15 |
Apr 2, 2025 22:19:22.690135002 CEST | 3064 | 23 | 192.168.2.23 | 217.170.220.62 |
Apr 2, 2025 22:19:22.690135002 CEST | 3064 | 23 | 192.168.2.23 | 166.98.74.255 |
Apr 2, 2025 22:19:22.690135002 CEST | 3064 | 23 | 192.168.2.23 | 61.210.89.146 |
Apr 2, 2025 22:19:22.690135002 CEST | 3064 | 23 | 192.168.2.23 | 216.57.65.238 |
Apr 2, 2025 22:19:22.690140963 CEST | 3064 | 23 | 192.168.2.23 | 218.214.231.176 |
Apr 2, 2025 22:19:22.690140963 CEST | 3064 | 23 | 192.168.2.23 | 58.159.92.153 |
Apr 2, 2025 22:19:22.690150023 CEST | 3064 | 23 | 192.168.2.23 | 107.111.168.108 |
Apr 2, 2025 22:19:22.690150976 CEST | 3064 | 23 | 192.168.2.23 | 202.132.254.0 |
Apr 2, 2025 22:19:22.690150976 CEST | 3064 | 23 | 192.168.2.23 | 2.127.7.36 |
Apr 2, 2025 22:19:22.690151930 CEST | 3064 | 23 | 192.168.2.23 | 149.119.246.164 |
Apr 2, 2025 22:19:22.690150976 CEST | 3064 | 23 | 192.168.2.23 | 149.113.202.227 |
Apr 2, 2025 22:19:22.690150976 CEST | 3064 | 23 | 192.168.2.23 | 170.89.65.146 |
Apr 2, 2025 22:19:22.690155029 CEST | 3064 | 23 | 192.168.2.23 | 65.23.74.1 |
Apr 2, 2025 22:19:22.690155029 CEST | 3064 | 23 | 192.168.2.23 | 101.43.161.160 |
Apr 2, 2025 22:19:22.690169096 CEST | 3064 | 23 | 192.168.2.23 | 42.233.232.94 |
Apr 2, 2025 22:19:22.690175056 CEST | 3064 | 23 | 192.168.2.23 | 41.142.145.165 |
Apr 2, 2025 22:19:22.690197945 CEST | 3064 | 23 | 192.168.2.23 | 255.80.227.49 |
Apr 2, 2025 22:19:22.690229893 CEST | 3064 | 23 | 192.168.2.23 | 122.46.166.137 |
Apr 2, 2025 22:19:22.690231085 CEST | 3064 | 23 | 192.168.2.23 | 151.21.166.244 |
Apr 2, 2025 22:19:22.690253973 CEST | 3064 | 23 | 192.168.2.23 | 251.139.123.160 |
Apr 2, 2025 22:19:22.690254927 CEST | 3064 | 23 | 192.168.2.23 | 14.67.88.105 |
Apr 2, 2025 22:19:22.690275908 CEST | 3064 | 23 | 192.168.2.23 | 190.106.50.2 |
Apr 2, 2025 22:19:22.690280914 CEST | 3064 | 23 | 192.168.2.23 | 148.78.202.211 |
Apr 2, 2025 22:19:22.690296888 CEST | 3064 | 23 | 192.168.2.23 | 255.207.225.35 |
Apr 2, 2025 22:19:22.690296888 CEST | 3064 | 23 | 192.168.2.23 | 206.48.20.156 |
Apr 2, 2025 22:19:22.690296888 CEST | 3064 | 23 | 192.168.2.23 | 20.71.159.186 |
Apr 2, 2025 22:19:22.690309048 CEST | 3064 | 23 | 192.168.2.23 | 174.69.69.193 |
Apr 2, 2025 22:19:22.690321922 CEST | 3064 | 23 | 192.168.2.23 | 87.226.159.113 |
Apr 2, 2025 22:19:22.690321922 CEST | 3064 | 23 | 192.168.2.23 | 17.101.27.50 |
Apr 2, 2025 22:19:22.690335035 CEST | 3064 | 23 | 192.168.2.23 | 67.191.247.185 |
Apr 2, 2025 22:19:22.690337896 CEST | 3064 | 23 | 192.168.2.23 | 254.12.176.72 |
Apr 2, 2025 22:19:22.690341949 CEST | 3064 | 23 | 192.168.2.23 | 145.222.26.41 |
Apr 2, 2025 22:19:22.690347910 CEST | 3064 | 23 | 192.168.2.23 | 20.131.222.216 |
Apr 2, 2025 22:19:22.690349102 CEST | 3064 | 23 | 192.168.2.23 | 247.167.202.110 |
Apr 2, 2025 22:19:22.690361023 CEST | 3064 | 23 | 192.168.2.23 | 245.238.183.28 |
Apr 2, 2025 22:19:22.690383911 CEST | 3064 | 23 | 192.168.2.23 | 207.42.245.114 |
Apr 2, 2025 22:19:22.690383911 CEST | 3064 | 23 | 192.168.2.23 | 73.243.138.62 |
Apr 2, 2025 22:19:22.690392971 CEST | 3064 | 23 | 192.168.2.23 | 212.236.178.129 |
Apr 2, 2025 22:19:22.690402031 CEST | 3064 | 23 | 192.168.2.23 | 31.4.178.250 |
Apr 2, 2025 22:19:22.690409899 CEST | 3064 | 23 | 192.168.2.23 | 248.60.17.66 |
Apr 2, 2025 22:19:22.690411091 CEST | 3064 | 23 | 192.168.2.23 | 79.113.0.230 |
Apr 2, 2025 22:19:22.690423012 CEST | 3064 | 23 | 192.168.2.23 | 13.80.229.64 |
Apr 2, 2025 22:19:22.690426111 CEST | 3064 | 23 | 192.168.2.23 | 46.96.235.233 |
Apr 2, 2025 22:19:22.690440893 CEST | 3064 | 23 | 192.168.2.23 | 158.129.162.112 |
Apr 2, 2025 22:19:22.690440893 CEST | 3064 | 23 | 192.168.2.23 | 24.34.206.83 |
Apr 2, 2025 22:19:22.690457106 CEST | 3064 | 23 | 192.168.2.23 | 162.142.34.67 |
Apr 2, 2025 22:19:22.690458059 CEST | 3064 | 23 | 192.168.2.23 | 212.106.63.54 |
Apr 2, 2025 22:19:22.690464973 CEST | 3064 | 23 | 192.168.2.23 | 41.63.31.4 |
Apr 2, 2025 22:19:22.690475941 CEST | 3064 | 23 | 192.168.2.23 | 168.31.211.199 |
Apr 2, 2025 22:19:22.690485001 CEST | 3064 | 23 | 192.168.2.23 | 70.43.152.150 |
Apr 2, 2025 22:19:22.690505981 CEST | 3064 | 23 | 192.168.2.23 | 209.169.198.126 |
Apr 2, 2025 22:19:22.690506935 CEST | 3064 | 23 | 192.168.2.23 | 218.177.29.95 |
Apr 2, 2025 22:19:22.690675974 CEST | 3064 | 23 | 192.168.2.23 | 159.0.22.139 |
Apr 2, 2025 22:19:22.690680027 CEST | 3064 | 23 | 192.168.2.23 | 171.153.107.153 |
Apr 2, 2025 22:19:22.690701008 CEST | 3064 | 23 | 192.168.2.23 | 218.188.161.112 |
Apr 2, 2025 22:19:22.690704107 CEST | 3064 | 23 | 192.168.2.23 | 183.70.162.36 |
Apr 2, 2025 22:19:22.690720081 CEST | 3064 | 23 | 192.168.2.23 | 195.63.228.176 |
Apr 2, 2025 22:19:22.690731049 CEST | 3064 | 23 | 192.168.2.23 | 179.142.178.199 |
Apr 2, 2025 22:19:22.690809011 CEST | 3064 | 23 | 192.168.2.23 | 94.61.241.107 |
Apr 2, 2025 22:19:22.690813065 CEST | 3064 | 23 | 192.168.2.23 | 63.51.11.163 |
Apr 2, 2025 22:19:22.690826893 CEST | 3064 | 23 | 192.168.2.23 | 205.225.157.230 |
Apr 2, 2025 22:19:22.690830946 CEST | 3064 | 23 | 192.168.2.23 | 76.146.72.144 |
Apr 2, 2025 22:19:22.690849066 CEST | 3064 | 23 | 192.168.2.23 | 98.110.92.145 |
Apr 2, 2025 22:19:22.690850973 CEST | 3064 | 23 | 192.168.2.23 | 31.215.158.57 |
Apr 2, 2025 22:19:22.690855026 CEST | 3064 | 23 | 192.168.2.23 | 186.145.102.136 |
Apr 2, 2025 22:19:22.690855026 CEST | 3064 | 23 | 192.168.2.23 | 197.69.242.82 |
Apr 2, 2025 22:19:22.690875053 CEST | 3064 | 23 | 192.168.2.23 | 173.162.160.76 |
Apr 2, 2025 22:19:22.690929890 CEST | 3064 | 23 | 192.168.2.23 | 250.144.27.203 |
Apr 2, 2025 22:19:22.881573915 CEST | 7887 | 60526 | 213.209.129.92 | 192.168.2.23 |
Apr 2, 2025 22:19:26.418912888 CEST | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Apr 2, 2025 22:19:27.442766905 CEST | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Apr 2, 2025 22:19:32.725891113 CEST | 39248 | 443 | 192.168.2.23 | 34.249.145.219 |
Apr 2, 2025 22:19:32.725939989 CEST | 443 | 39248 | 34.249.145.219 | 192.168.2.23 |
Apr 2, 2025 22:19:32.726072073 CEST | 39248 | 443 | 192.168.2.23 | 34.249.145.219 |
Apr 2, 2025 22:19:32.726258039 CEST | 39248 | 443 | 192.168.2.23 | 34.249.145.219 |
Apr 2, 2025 22:19:32.726273060 CEST | 443 | 39248 | 34.249.145.219 | 192.168.2.23 |
Apr 2, 2025 22:19:41.776748896 CEST | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Apr 2, 2025 22:19:48.649992943 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:48.650024891 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:48.650077105 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:52.015255928 CEST | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Apr 2, 2025 22:19:52.960119963 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:52.960161924 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.193401098 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.193486929 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.193829060 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.193844080 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.194150925 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.194164991 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.194288015 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.194340944 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.194356918 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.194397926 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.194878101 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.236267090 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.381344080 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.381417990 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381505966 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381505966 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381532907 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.381546974 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.381562948 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381562948 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381581068 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.381582975 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381582975 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381607056 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381609917 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.381620884 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381633043 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.381642103 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381663084 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.381668091 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381668091 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381685019 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381730080 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381730080 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381822109 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.381906986 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381922007 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.381936073 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.381989002 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.382114887 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.382148981 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.382181883 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.382181883 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.382190943 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.382206917 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.382236004 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.382247925 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.819631100 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.819713116 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.819745064 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.819761038 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.819786072 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.819809914 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:53.819856882 CEST | 37604 | 443 | 192.168.2.23 | 162.213.35.24 |
Apr 2, 2025 22:19:53.819865942 CEST | 443 | 37604 | 162.213.35.24 | 192.168.2.23 |
Apr 2, 2025 22:19:58.158668995 CEST | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Apr 2, 2025 22:20:22.731209993 CEST | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Apr 2, 2025 22:20:32.718406916 CEST | 39248 | 443 | 192.168.2.23 | 34.249.145.219 |
Apr 2, 2025 22:20:32.764277935 CEST | 443 | 39248 | 34.249.145.219 | 192.168.2.23 |
Apr 2, 2025 22:20:43.208374023 CEST | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 2, 2025 22:19:48.217657089 CEST | 43324 | 53 | 192.168.2.23 | 1.1.1.1 |
Apr 2, 2025 22:19:48.217657089 CEST | 53828 | 53 | 192.168.2.23 | 1.1.1.1 |
Apr 2, 2025 22:19:48.319693089 CEST | 53 | 53828 | 1.1.1.1 | 192.168.2.23 |
Apr 2, 2025 22:19:48.319808006 CEST | 53 | 43324 | 1.1.1.1 | 192.168.2.23 |
Apr 2, 2025 22:19:48.485068083 CEST | 48955 | 53 | 192.168.2.23 | 1.1.1.1 |
Apr 2, 2025 22:19:48.631278992 CEST | 53 | 48955 | 1.1.1.1 | 192.168.2.23 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Apr 2, 2025 22:19:50.457226038 CEST | 192.168.2.23 | 192.168.2.1 | 8283 | (Port unreachable) | Destination Unreachable |
Apr 2, 2025 22:21:10.474150896 CEST | 192.168.2.23 | 192.168.2.1 | 8283 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 2, 2025 22:19:48.217657089 CEST | 192.168.2.23 | 1.1.1.1 | 0x141 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 22:19:48.217657089 CEST | 192.168.2.23 | 1.1.1.1 | 0x833b | Standard query (0) | 28 | IN (0x0001) | false | |
Apr 2, 2025 22:19:48.485068083 CEST | 192.168.2.23 | 1.1.1.1 | 0xf375 | Standard query (0) | 28 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 2, 2025 22:19:48.319808006 CEST | 1.1.1.1 | 192.168.2.23 | 0x141 | No error (0) | 162.213.35.25 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 22:19:48.319808006 CEST | 1.1.1.1 | 192.168.2.23 | 0x141 | No error (0) | 162.213.35.24 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.23 | 37604 | 162.213.35.24 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 20:19:53 UTC | 307 | OUT | |
2025-04-02 20:19:53 UTC | 25 | IN | |
2025-04-02 20:19:53 UTC | 16384 | OUT | |
2025-04-02 20:19:53 UTC | 16384 | OUT | |
2025-04-02 20:19:53 UTC | 16384 | OUT | |
2025-04-02 20:19:53 UTC | 16384 | OUT | |
2025-04-02 20:19:53 UTC | 16384 | OUT | |
2025-04-02 20:19:53 UTC | 16384 | OUT | |
2025-04-02 20:19:53 UTC | 16384 | OUT | |
2025-04-02 20:19:53 UTC | 16384 | OUT | |
2025-04-02 20:19:53 UTC | 16384 | OUT | |
2025-04-02 20:19:53 UTC | 16384 | OUT | |
2025-04-02 20:19:53 UTC | 279 | IN |
System Behavior
Start time (UTC): | 20:19:21 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.arm.elf |
Arguments: | /tmp/xd.arm.elf |
File size: | 4956856 bytes |
MD5 hash: | 5ebfcae4fe2471fcc5695c2394773ff1 |
Start time (UTC): | 20:19:22 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.arm.elf |
Arguments: | - |
File size: | 4956856 bytes |
MD5 hash: | 5ebfcae4fe2471fcc5695c2394773ff1 |
Start time (UTC): | 20:19:22 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.arm.elf |
Arguments: | - |
File size: | 4956856 bytes |
MD5 hash: | 5ebfcae4fe2471fcc5695c2394773ff1 |
Start time (UTC): | 20:19:22 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.arm.elf |
Arguments: | - |
File size: | 4956856 bytes |
MD5 hash: | 5ebfcae4fe2471fcc5695c2394773ff1 |
Start time (UTC): | 20:19:22 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.arm.elf |
Arguments: | - |
File size: | 4956856 bytes |
MD5 hash: | 5ebfcae4fe2471fcc5695c2394773ff1 |
Start time (UTC): | 20:19:22 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.arm.elf |
Arguments: | - |
File size: | 4956856 bytes |
MD5 hash: | 5ebfcae4fe2471fcc5695c2394773ff1 |
Start time (UTC): | 20:19:22 |
Start date (UTC): | 02/04/2025 |
Path: | /tmp/xd.arm.elf |
Arguments: | - |
File size: | 4956856 bytes |
MD5 hash: | 5ebfcae4fe2471fcc5695c2394773ff1 |
Start time (UTC): | 20:19:34 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:34 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/journalctl |
Arguments: | /usr/bin/journalctl --smart-relinquish-var |
File size: | 80120 bytes |
MD5 hash: | bf3a987344f3bacafc44efd882abda8b |
Start time (UTC): | 20:19:34 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:34 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:34 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:35 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:35 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/libexec/gnome-session-binary |
Arguments: | - |
File size: | 334664 bytes |
MD5 hash: | d9b90be4f7db60cb3c2d3da6a1d31bfb |
Start time (UTC): | 20:19:46 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/pulseaudio |
Arguments: | /usr/bin/pulseaudio --daemonize=no --log-target=journal |
File size: | 100832 bytes |
MD5 hash: | 0c3b4c789d8ffb12b25507f27e14c186 |
Start time (UTC): | 20:19:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/sbin/gdm3 |
Arguments: | - |
File size: | 453296 bytes |
MD5 hash: | 2492e2d8d34f9377e3e530a61a15674f |
Start time (UTC): | 20:19:47 |
Start date (UTC): | 02/04/2025 |
Path: | /etc/gdm3/PrimeOff/Default |
Arguments: | /etc/gdm3/PrimeOff/Default |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/sbin/gdm3 |
Arguments: | - |
File size: | 453296 bytes |
MD5 hash: | 2492e2d8d34f9377e3e530a61a15674f |
Start time (UTC): | 20:19:47 |
Start date (UTC): | 02/04/2025 |
Path: | /etc/gdm3/PrimeOff/Default |
Arguments: | /etc/gdm3/PrimeOff/Default |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:47 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/sbin/gdm3 |
Arguments: | - |
File size: | 453296 bytes |
MD5 hash: | 2492e2d8d34f9377e3e530a61a15674f |
Start time (UTC): | 20:19:47 |
Start date (UTC): | 02/04/2025 |
Path: | /etc/gdm3/PrimeOff/Default |
Arguments: | /etc/gdm3/PrimeOff/Default |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:48 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:19:49 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:19:49 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /etc/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:49 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:49 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*nvidia[[:space:]]*$ /etc/modprobe.d/alsa-base.conf /etc/modprobe.d/amd64-microcode-blacklist.conf /etc/modprobe.d/blacklist-ath_pci.conf /etc/modprobe.d/blacklist-firewire.conf /etc/modprobe.d/blacklist-framebuffer.conf /etc/modprobe.d/blacklist-modem.conf /etc/modprobe.d/blacklist-oss.conf /etc/modprobe.d/blacklist-rare-network.conf /etc/modprobe.d/blacklist.conf /etc/modprobe.d/intel-microcode-blacklist.conf /etc/modprobe.d/iwlwifi.conf /etc/modprobe.d/mdadm.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:19:49 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:19:49 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*nvidia[[:space:]]*$\" /lib/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:49 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:49 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*nvidia[[:space:]]*$ /lib/modprobe.d/aliases.conf /lib/modprobe.d/blacklist_linux_5.4.0-72-generic.conf /lib/modprobe.d/blacklist_linux_5.4.0-81-generic.conf /lib/modprobe.d/fbdev-blacklist.conf /lib/modprobe.d/systemd.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /etc/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*radeon[[:space:]]*$ /etc/modprobe.d/alsa-base.conf /etc/modprobe.d/amd64-microcode-blacklist.conf /etc/modprobe.d/blacklist-ath_pci.conf /etc/modprobe.d/blacklist-firewire.conf /etc/modprobe.d/blacklist-framebuffer.conf /etc/modprobe.d/blacklist-modem.conf /etc/modprobe.d/blacklist-oss.conf /etc/modprobe.d/blacklist-rare-network.conf /etc/modprobe.d/blacklist.conf /etc/modprobe.d/intel-microcode-blacklist.conf /etc/modprobe.d/iwlwifi.conf /etc/modprobe.d/mdadm.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*radeon[[:space:]]*$\" /lib/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*radeon[[:space:]]*$ /lib/modprobe.d/aliases.conf /lib/modprobe.d/blacklist_linux_5.4.0-72-generic.conf /lib/modprobe.d/blacklist_linux_5.4.0-81-generic.conf /lib/modprobe.d/fbdev-blacklist.conf /lib/modprobe.d/systemd.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /etc/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*amdgpu[[:space:]]*$ /etc/modprobe.d/alsa-base.conf /etc/modprobe.d/amd64-microcode-blacklist.conf /etc/modprobe.d/blacklist-ath_pci.conf /etc/modprobe.d/blacklist-firewire.conf /etc/modprobe.d/blacklist-framebuffer.conf /etc/modprobe.d/blacklist-modem.conf /etc/modprobe.d/blacklist-oss.conf /etc/modprobe.d/blacklist-rare-network.conf /etc/modprobe.d/blacklist.conf /etc/modprobe.d/intel-microcode-blacklist.conf /etc/modprobe.d/iwlwifi.conf /etc/modprobe.d/mdadm.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:19:51 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:19:51 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*amdgpu[[:space:]]*$\" /lib/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:51 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:51 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*amdgpu[[:space:]]*$ /lib/modprobe.d/aliases.conf /lib/modprobe.d/blacklist_linux_5.4.0-72-generic.conf /lib/modprobe.d/blacklist_linux_5.4.0-81-generic.conf /lib/modprobe.d/fbdev-blacklist.conf /lib/modprobe.d/systemd.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:19:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:19:52 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*nouveau[[:space:]]*$\" /etc/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:52 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*nouveau[[:space:]]*$ /etc/modprobe.d/alsa-base.conf /etc/modprobe.d/amd64-microcode-blacklist.conf /etc/modprobe.d/blacklist-ath_pci.conf /etc/modprobe.d/blacklist-firewire.conf /etc/modprobe.d/blacklist-framebuffer.conf /etc/modprobe.d/blacklist-modem.conf /etc/modprobe.d/blacklist-oss.conf /etc/modprobe.d/blacklist-rare-network.conf /etc/modprobe.d/blacklist.conf /etc/modprobe.d/intel-microcode-blacklist.conf /etc/modprobe.d/iwlwifi.conf /etc/modprobe.d/mdadm.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:19:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:19:52 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | sh -c "grep -G \"^blacklist.*nouveau[[:space:]]*$\" /lib/modprobe.d/*.conf" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:52 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:52 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/grep |
Arguments: | grep -G ^blacklist.*nouveau[[:space:]]*$ /lib/modprobe.d/aliases.conf /lib/modprobe.d/blacklist_linux_5.4.0-72-generic.conf /lib/modprobe.d/blacklist_linux_5.4.0-81-generic.conf /lib/modprobe.d/fbdev-blacklist.conf /lib/modprobe.d/systemd.conf |
File size: | 199136 bytes |
MD5 hash: | 1e6ebb9dd094f774478f72727bdba0f5 |
Start time (UTC): | 20:19:49 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:49 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:49 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/share/gdm/generate-config |
Arguments: | /usr/share/gdm/generate-config |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/share/gdm/generate-config |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:19:53 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/pkill |
Arguments: | pkill --signal HUP --uid gdm dconf-service |
File size: | 30968 bytes |
MD5 hash: | fa96a75a08109d8842e4865b2907d51f |
Start time (UTC): | 20:19:56 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:19:56 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/gdm3/gdm-wait-for-drm |
Arguments: | /usr/lib/gdm3/gdm-wait-for-drm |
File size: | 14640 bytes |
MD5 hash: | 82043ba752c6930b4e6aaea2f7747545 |
Start time (UTC): | 20:20:07 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:20:07 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/sbin/gdm3 |
Arguments: | /usr/sbin/gdm3 |
File size: | 453296 bytes |
MD5 hash: | 2492e2d8d34f9377e3e530a61a15674f |
Start time (UTC): | 20:20:20 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/libexec/gvfsd-fuse |
Arguments: | - |
File size: | 47632 bytes |
MD5 hash: | d18fbf1cbf8eb57b17fac48b7b4be933 |
Start time (UTC): | 20:20:20 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/fusermount |
Arguments: | fusermount -u -q -z -- /run/user/1000/gvfs |
File size: | 39144 bytes |
MD5 hash: | 576a1b135c82bdcbc97a91acea900566 |
Start time (UTC): | 20:20:32 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/dash |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:20:32 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/rm |
Arguments: | rm -f /tmp/tmp.OoRRg2lor3 /tmp/tmp.0LYAALYHro /tmp/tmp.phAiVfUkbz |
File size: | 72056 bytes |
MD5 hash: | aa2b5496fdbfd88e38791ab81f90b95b |
Start time (UTC): | 20:20:32 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/dash |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 20:20:32 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/rm |
Arguments: | rm -f /tmp/tmp.OoRRg2lor3 /tmp/tmp.0LYAALYHro /tmp/tmp.phAiVfUkbz |
File size: | 72056 bytes |
MD5 hash: | aa2b5496fdbfd88e38791ab81f90b95b |
Start time (UTC): | 20:20:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:20:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:20:57 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:20:58 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:21:00 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:21:00 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:00 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:00 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:00 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:00 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:00 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:00 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:00 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:00 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:00 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:21:01 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:21:01 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:02 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:02 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:02 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:02 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:02 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:02 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:02 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:02 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:02 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:21:03 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:21:03 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | /usr/bin/gpu-manager --log /var/log/gpu-manager.log |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:03 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:03 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:03 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:03 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:03 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:03 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:03 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:03 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/bin/gpu-manager |
Arguments: | - |
File size: | 76616 bytes |
MD5 hash: | 8fae9dd5dd67e1f33d873089c2fd8761 |
Start time (UTC): | 20:21:04 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:21:05 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:21:05 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:21:06 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |
Start time (UTC): | 20:21:06 |
Start date (UTC): | 02/04/2025 |
Path: | /bin/plymouth |
Arguments: | /bin/plymouth quit |
File size: | 51352 bytes |
MD5 hash: | 87003efd8dad470042f5e75360a8f49f |
Start time (UTC): | 20:21:50 |
Start date (UTC): | 02/04/2025 |
Path: | /usr/lib/systemd/systemd (deleted) |
Arguments: | - |
File size: | 1620224 bytes |
MD5 hash: | 9b2bec7092a40488108543f9334aab75 |