Loading ...

Play interactive tourEdit tour

Linux Analysis Report SNVXns6sZV

Overview

General Information

Sample Name:SNVXns6sZV
Analysis ID:494051
MD5:d7429c915222ec4345077f346bf9ac80
SHA1:0cc01a1a1ea2decf9447ad2fc5d63e944f053ad0
SHA256:e1e69618c4e44a5253f36be032db4db75d590f0aadadf0e5506303acf8e964a6
Infos:

Detection

Score:1
Range:0 - 100
Whitelisted:false

Signatures

Tries to connect to HTTP servers, but all servers are down (expired dropper behavior)
Sample has stripped symbol table

Classification

Analysis Advice

Static ELF header type description suggests that the sample is a shared object file and not-self-executable
Exit code information suggests that the sample terminated abnormally, try to lookup the sample's target architecture
All HTTP servers contacted by the sample do not answer. Likely the sample is an old dropper which does no longer work
Non-zero exit code suggests an error during the execution. Lookup the error code for hints.

General Information

Joe Sandbox Version:33.0.0 White Diamond
Analysis ID:494051
Start date:30.09.2021
Start time:09:24:30
Joe Sandbox Product:CloudBasic
Overall analysis duration:0h 4m 46s
Hypervisor based Inspection enabled:false
Report type:full
Sample file name:SNVXns6sZV
Cookbook file name:defaultlinuxfilecookbook.jbs
Analysis system description:Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11)
Analysis Mode:default
Detection:CLEAN
Classification:clean1.lin@0/0@0/0

Process Tree

  • system is lnxubuntu20
  • SNVXns6sZV (PID: 5224, Parent: 5112, MD5: d7429c915222ec4345077f346bf9ac80) Arguments: /tmp/SNVXns6sZV
  • cleanup

Yara Overview

No yara matches

Jbx Signature Overview

Click to jump to signature section

Show All Signature Results

There are no malicious signatures, click here to show all signatures.

Source: global trafficTCP traffic: 192.168.2.23:43928 -> 91.189.91.42:443
Source: global trafficTCP traffic: 192.168.2.23:42836 -> 91.189.91.43:443
Source: global trafficTCP traffic: 192.168.2.23:42516 -> 109.202.202.202:80
Source: unknownNetwork traffic detected: HTTP traffic on port 43928 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 42836 -> 443
Source: unknownTCP traffic detected without corresponding DNS query: 91.189.91.42
Source: unknownTCP traffic detected without corresponding DNS query: 91.189.91.43
Source: unknownTCP traffic detected without corresponding DNS query: 109.202.202.202
Source: unknownTCP traffic detected without corresponding DNS query: 91.189.91.42
Source: ELF static info symbol of initial sample.symtab present: no
Source: classification engineClassification label: clean1.lin@0/0@0/0

Mitre Att&ck Matrix

Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionExfiltrationCommand and ControlNetwork EffectsRemote Service EffectsImpact
Valid AccountsWindows Management InstrumentationPath InterceptionPath InterceptionDirect Volume AccessOS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local SystemExfiltration Over Other Network MediumEncrypted Channel1Eavesdrop on Insecure Network CommunicationRemotely Track Device Without AuthorizationModify System Partition
Default AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization ScriptsRootkitLSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable MediaExfiltration Over BluetoothApplication Layer Protocol1Exploit SS7 to Redirect Phone Calls/SMSRemotely Wipe Data Without AuthorizationDevice Lockout

Malware Configuration

No configs have been found

Behavior Graph

Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Number of created Files
  • Is malicious
  • Internet

Antivirus, Machine Learning and Genetic Malware Detection

Initial Sample

SourceDetectionScannerLabelLink
SNVXns6sZV0%VirustotalBrowse
SNVXns6sZV0%ReversingLabs

Dropped Files

No Antivirus matches

Domains

No Antivirus matches

URLs

No Antivirus matches

Domains and IPs

Contacted Domains

No contacted domains info

Contacted IPs

  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs

Public

IPDomainCountryFlagASNASN NameMalicious
109.202.202.202
unknownSwitzerland
13030INIT7CHfalse
91.189.91.43
unknownUnited Kingdom
41231CANONICAL-ASGBfalse
91.189.91.42
unknownUnited Kingdom
41231CANONICAL-ASGBfalse


Runtime Messages

Command:/tmp/SNVXns6sZV
Exit Code:139
Exit Code Info:SIGSEGV (11) Segmentation fault invalid memory reference
Killed:False
Standard Output:

Standard Error:

Joe Sandbox View / Context

IPs

MatchAssociated Sample Name / URLSHA 256DetectionLinkContext
109.202.202.202sora.x86Get hashmaliciousBrowse
    sora.arm7Get hashmaliciousBrowse
      sora.armGet hashmaliciousBrowse
        arm7-20210930-0638Get hashmaliciousBrowse
          fR9W8GTDgSGet hashmaliciousBrowse
            bAuetYhMZ3Get hashmaliciousBrowse
              svLUQhuu0HGet hashmaliciousBrowse
                MGeJpkjmrnGet hashmaliciousBrowse
                  uNniggqVWfGet hashmaliciousBrowse
                    WKyZkxwuxxGet hashmaliciousBrowse
                      lpKET05gLPGet hashmaliciousBrowse
                        41kgYd4ZV6Get hashmaliciousBrowse
                          6lSXjCnYWhGet hashmaliciousBrowse
                            62B23Vvne2Get hashmaliciousBrowse
                              nKQcBF55zcGet hashmaliciousBrowse
                                jdNTC2Hxm5Get hashmaliciousBrowse
                                  x9uzZrml24Get hashmaliciousBrowse
                                    wqY8ybd2UPGet hashmaliciousBrowse
                                      07LRmRCeC5Get hashmaliciousBrowse
                                        BZdYBfVSyJGet hashmaliciousBrowse
                                          91.189.91.43sora.x86Get hashmaliciousBrowse
                                            sora.arm7Get hashmaliciousBrowse
                                              sora.armGet hashmaliciousBrowse
                                                arm7-20210930-0638Get hashmaliciousBrowse
                                                  fR9W8GTDgSGet hashmaliciousBrowse
                                                    bAuetYhMZ3Get hashmaliciousBrowse
                                                      svLUQhuu0HGet hashmaliciousBrowse
                                                        MGeJpkjmrnGet hashmaliciousBrowse
                                                          uNniggqVWfGet hashmaliciousBrowse
                                                            WKyZkxwuxxGet hashmaliciousBrowse
                                                              lpKET05gLPGet hashmaliciousBrowse
                                                                41kgYd4ZV6Get hashmaliciousBrowse
                                                                  6lSXjCnYWhGet hashmaliciousBrowse
                                                                    62B23Vvne2Get hashmaliciousBrowse
                                                                      nKQcBF55zcGet hashmaliciousBrowse
                                                                        jdNTC2Hxm5Get hashmaliciousBrowse
                                                                          x9uzZrml24Get hashmaliciousBrowse
                                                                            wqY8ybd2UPGet hashmaliciousBrowse
                                                                              07LRmRCeC5Get hashmaliciousBrowse
                                                                                BZdYBfVSyJGet hashmaliciousBrowse
                                                                                  91.189.91.42sora.x86Get hashmaliciousBrowse
                                                                                    sora.arm7Get hashmaliciousBrowse
                                                                                      sora.armGet hashmaliciousBrowse
                                                                                        arm7-20210930-0638Get hashmaliciousBrowse
                                                                                          fR9W8GTDgSGet hashmaliciousBrowse
                                                                                            bAuetYhMZ3Get hashmaliciousBrowse
                                                                                              svLUQhuu0HGet hashmaliciousBrowse
                                                                                                MGeJpkjmrnGet hashmaliciousBrowse
                                                                                                  uNniggqVWfGet hashmaliciousBrowse
                                                                                                    WKyZkxwuxxGet hashmaliciousBrowse
                                                                                                      lpKET05gLPGet hashmaliciousBrowse
                                                                                                        41kgYd4ZV6Get hashmaliciousBrowse
                                                                                                          6lSXjCnYWhGet hashmaliciousBrowse
                                                                                                            62B23Vvne2Get hashmaliciousBrowse
                                                                                                              nKQcBF55zcGet hashmaliciousBrowse
                                                                                                                jdNTC2Hxm5Get hashmaliciousBrowse
                                                                                                                  x9uzZrml24Get hashmaliciousBrowse
                                                                                                                    wqY8ybd2UPGet hashmaliciousBrowse
                                                                                                                      07LRmRCeC5Get hashmaliciousBrowse
                                                                                                                        BZdYBfVSyJGet hashmaliciousBrowse

                                                                                                                          Domains

                                                                                                                          No context

                                                                                                                          ASN

                                                                                                                          MatchAssociated Sample Name / URLSHA 256DetectionLinkContext
                                                                                                                          CANONICAL-ASGBsora.x86Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          sora.arm7Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          sora.armGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          arm7-20210930-0638Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          fR9W8GTDgSGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          bAuetYhMZ3Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          svLUQhuu0HGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          MGeJpkjmrnGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          uNniggqVWfGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          WKyZkxwuxxGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          lpKET05gLPGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          41kgYd4ZV6Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          6lSXjCnYWhGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          62B23Vvne2Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          nKQcBF55zcGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          jdNTC2Hxm5Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          x9uzZrml24Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          wqY8ybd2UPGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          07LRmRCeC5Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          BZdYBfVSyJGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          CANONICAL-ASGBsora.x86Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          sora.arm7Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          sora.armGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          arm7-20210930-0638Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          fR9W8GTDgSGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          bAuetYhMZ3Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          svLUQhuu0HGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          MGeJpkjmrnGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          uNniggqVWfGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          WKyZkxwuxxGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          lpKET05gLPGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          41kgYd4ZV6Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          6lSXjCnYWhGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          62B23Vvne2Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          nKQcBF55zcGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          jdNTC2Hxm5Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          x9uzZrml24Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          wqY8ybd2UPGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          07LRmRCeC5Get hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          BZdYBfVSyJGet hashmaliciousBrowse
                                                                                                                          • 91.189.91.42
                                                                                                                          INIT7CHsora.x86Get hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          sora.arm7Get hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          sora.armGet hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          arm7-20210930-0638Get hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          fR9W8GTDgSGet hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          bAuetYhMZ3Get hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          svLUQhuu0HGet hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          MGeJpkjmrnGet hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          uNniggqVWfGet hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          WKyZkxwuxxGet hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          lpKET05gLPGet hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          41kgYd4ZV6Get hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          6lSXjCnYWhGet hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          62B23Vvne2Get hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          nKQcBF55zcGet hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          jdNTC2Hxm5Get hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          x9uzZrml24Get hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          wqY8ybd2UPGet hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          07LRmRCeC5Get hashmaliciousBrowse
                                                                                                                          • 109.202.202.202
                                                                                                                          BZdYBfVSyJGet hashmaliciousBrowse
                                                                                                                          • 109.202.202.202

                                                                                                                          JA3 Fingerprints

                                                                                                                          No context

                                                                                                                          Dropped Files

                                                                                                                          No context

                                                                                                                          Created / dropped Files

                                                                                                                          No created / dropped files found

                                                                                                                          Static File Info

                                                                                                                          General

                                                                                                                          File type:ELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, BuildID[sha1]=fc19b68fec75a2869f3a3916fb57a5d61a6b681c, for GNU/Linux 3.2.0, stripped
                                                                                                                          Entropy (8bit):3.251383868653352
                                                                                                                          TrID:
                                                                                                                          • ELF Executable and Linkable format (Linux) (4029/14) 49.77%
                                                                                                                          • ELF Executable and Linkable format (generic) (4004/1) 49.46%
                                                                                                                          • Lumena CEL bitmap (63/63) 0.78%
                                                                                                                          File name:SNVXns6sZV
                                                                                                                          File size:18664
                                                                                                                          MD5:d7429c915222ec4345077f346bf9ac80
                                                                                                                          SHA1:0cc01a1a1ea2decf9447ad2fc5d63e944f053ad0
                                                                                                                          SHA256:e1e69618c4e44a5253f36be032db4db75d590f0aadadf0e5506303acf8e964a6
                                                                                                                          SHA512:d9fd750f37a10ec848becab09d32f797130464f3695ed8729df14acb212db63e672961c1f8f02ed2c8fbe564f5fe1c8952e66177a6ed48e7669021acaa8e157d
                                                                                                                          SSDEEP:192:Rl8mm9AERh5RYZGTAexLVsWUc7vjrN+thTHtqnsbn8nY38XaYOSid:7m9XRh5R0+5JXnB+tdHcsYqMHO
                                                                                                                          File Content Preview:.ELF..............>.............@.......hA..........@.8...@.............................................................................................e.......e........................0.......0.......0.......................................>.......N.....

                                                                                                                          Static ELF Info

                                                                                                                          ELF header

                                                                                                                          Class:ELF64
                                                                                                                          Data:2's complement, little endian
                                                                                                                          Version:1 (current)
                                                                                                                          Machine:Advanced Micro Devices X86-64
                                                                                                                          Version Number:0x1
                                                                                                                          Type:DYN (Shared object file)
                                                                                                                          OS/ABI:UNIX - System V
                                                                                                                          ABI Version:0
                                                                                                                          Entry Point Address:0x10c0
                                                                                                                          Flags:0x0
                                                                                                                          ELF Header Size:64
                                                                                                                          Program Header Offset:64
                                                                                                                          Program Header Size:56
                                                                                                                          Number of Program Headers:11
                                                                                                                          Section Header Offset:16744
                                                                                                                          Section Header Size:64
                                                                                                                          Number of Section Headers:30
                                                                                                                          Header String Table Index:29

                                                                                                                          Sections

                                                                                                                          NameTypeAddressOffsetSizeEntSizeFlagsFlags DescriptionLinkInfoAlign
                                                                                                                          NULL0x00x00x00x00x0000
                                                                                                                          .note.gnu.propertyNOTE0x2a80x2a80x200x00x2A008
                                                                                                                          .note.gnu.build-idNOTE0x2c80x2c80x240x00x2A004
                                                                                                                          .note.ABI-tagNOTE0x2ec0x2ec0x200x00x2A004
                                                                                                                          .hashHASH0x3100x3100x400x40x2A608
                                                                                                                          .gnu.hashGNU_HASH0x3500x3500x280x00x2A608
                                                                                                                          .dynsymDYNSYM0x3780x3780x1080x180x2A718
                                                                                                                          .dynstrSTRTAB0x4800x4800xe20x00x2A001
                                                                                                                          .gnu.versionVERSYM0x5620x5620x160x20x2A602
                                                                                                                          .gnu.version_rVERNEED0x5780x5780x400x00x2A718
                                                                                                                          .rela.dynRELA0x5b80x5b80xa80x180x2A608
                                                                                                                          .rela.pltRELA0x6600x6600x600x180x42AI6258
                                                                                                                          .initPROGBITS0x10000x10000x1b0x00x6AX004
                                                                                                                          .pltPROGBITS0x10200x10200x500x100x6AX0016
                                                                                                                          .plt.gotPROGBITS0x10700x10700x100x100x6AX0016
                                                                                                                          .plt.secPROGBITS0x10800x10800x400x100x6AX0016
                                                                                                                          .textPROGBITS0x10c00x10c00x10960x00x6AX0016
                                                                                                                          .finiPROGBITS0x21580x21580xd0x00x6AX004
                                                                                                                          .rodataPROGBITS0x30000x30000x7400x00x2A0032
                                                                                                                          .eh_frame_hdrPROGBITS0x37400x37400x3c0x00x2A004
                                                                                                                          .eh_framePROGBITS0x37800x37800x1440x00x2A008
                                                                                                                          .init_arrayINIT_ARRAY0x4e000x3e000x80x80x3WA008
                                                                                                                          .fini_arrayFINI_ARRAY0x4e080x3e080x80x80x3WA008
                                                                                                                          .dynamicDYNAMIC0x4e100x3e100x1d00x100x3WA708
                                                                                                                          .gotPROGBITS0x4fe00x3fe00x200x80x3WA008
                                                                                                                          .got.pltPROGBITS0x50000x40000x380x80x3WA008
                                                                                                                          .dataPROGBITS0x50380x40380x80x00x3WA008
                                                                                                                          .bssNOBITS0x50400x40400x80x00x3WA001
                                                                                                                          .gnu_debuglinkPROGBITS0x00x40400x140x00x0004
                                                                                                                          .shstrtabSTRTAB0x00x40540x1110x00x0001

                                                                                                                          Program Segments

                                                                                                                          TypeOffsetVirtual AddressPhysical AddressFile SizeMemory SizeEntropyFlagsFlags DescriptionAlignProg InterpreterSection Mappings
                                                                                                                          LOAD0x00x00x00x6c00x6c02.50980x4R 0x1000.note.gnu.property .note.gnu.build-id .note.ABI-tag .hash .gnu.hash .dynsym .dynstr .gnu.version .gnu.version_r .rela.dyn .rela.plt
                                                                                                                          LOAD0x10000x10000x10000x11650x11653.58250x5R E0x1000.init .plt .plt.got .plt.sec .text .fini
                                                                                                                          LOAD0x30000x30000x30000x8c40x8c43.62430x4R 0x1000.rodata .eh_frame_hdr .eh_frame
                                                                                                                          LOAD0x3e000x4e000x4e000x2400x2481.14280x6RW 0x1000.init_array .fini_array .dynamic .got .got.plt .data .bss
                                                                                                                          DYNAMIC0x3e100x4e100x4e100x1d00x1d01.09230x6RW 0x8.dynamic
                                                                                                                          NOTE0x2a80x2a80x2a80x200x201.71540x4R 0x8.note.gnu.property
                                                                                                                          NOTE0x2c80x2c80x2c80x440x442.50150x4R 0x4.note.gnu.build-id .note.ABI-tag
                                                                                                                          LOOS+474e5530x2a80x2a80x2a80x200x201.71540x4R 0x8.note.gnu.property
                                                                                                                          GNU_EH_FRAME0x37400x37400x37400x3c0x3c1.57590x4R 0x4.eh_frame_hdr
                                                                                                                          GNU_STACK0x00x00x00x00x00.00000x6RW 0x10
                                                                                                                          GNU_RELRO0x3e000x4e000x4e000x2000x2001.08220x4R 0x1.init_array .fini_array .dynamic .got

                                                                                                                          Dynamic Tags

                                                                                                                          TypeMetaValueTag
                                                                                                                          DT_NEEDEDsharedliblibc.so.60x1
                                                                                                                          DT_INITvalue0x10000xc
                                                                                                                          DT_FINIvalue0x21580xd
                                                                                                                          DT_INIT_ARRAYvalue0x4e000x19
                                                                                                                          DT_INIT_ARRAYSZbytes80x1b
                                                                                                                          DT_FINI_ARRAYvalue0x4e080x1a
                                                                                                                          DT_FINI_ARRAYSZbytes80x1c
                                                                                                                          DT_HASHvalue0x3100x4
                                                                                                                          DT_GNU_HASHvalue0x3500x6ffffef5
                                                                                                                          DT_STRTABvalue0x4800x5
                                                                                                                          DT_SYMTABvalue0x3780x6
                                                                                                                          DT_STRSZbytes2260xa
                                                                                                                          DT_SYMENTbytes240xb
                                                                                                                          DT_PLTGOTvalue0x50000x3
                                                                                                                          DT_PLTRELSZbytes960x2
                                                                                                                          DT_PLTRELpltrelDT_RELA0x14
                                                                                                                          DT_JMPRELvalue0x6600x17
                                                                                                                          DT_RELAvalue0x5b80x7
                                                                                                                          DT_RELASZbytes1680x8
                                                                                                                          DT_RELAENTbytes240x9
                                                                                                                          DT_VERNEEDvalue0x5780x6ffffffe
                                                                                                                          DT_VERNEEDNUMvalue10x6fffffff
                                                                                                                          DT_VERSYMvalue0x5620x6ffffff0
                                                                                                                          DT_RELACOUNTvalue30x6ffffff9
                                                                                                                          DT_NULLvalue0x00x0

                                                                                                                          Symbols

                                                                                                                          NameVersion Info NameVersion Info File NameSection NameValueSizeSymbol TypeSymbol BindSymbol VisibilityNdx
                                                                                                                          .dynsym0x00NOTYPE<unknown>DEFAULTSHN_UNDEF
                                                                                                                          _ITM_deregisterTMCloneTable.dynsym0x00NOTYPE<unknown>DEFAULTSHN_UNDEF
                                                                                                                          _ITM_registerTMCloneTable.dynsym0x00NOTYPE<unknown>DEFAULTSHN_UNDEF
                                                                                                                          __assert_failGLIBC_2.2.5libc.so.6.dynsym0x00FUNC<unknown>DEFAULTSHN_UNDEF
                                                                                                                          __cxa_finalizeGLIBC_2.2.5libc.so.6.dynsym0x00FUNC<unknown>DEFAULTSHN_UNDEF
                                                                                                                          __gconv_transliterateGLIBC_PRIVATElibc.so.6.dynsym0x00FUNC<unknown>DEFAULTSHN_UNDEF
                                                                                                                          __gmon_start__.dynsym0x00NOTYPE<unknown>DEFAULTSHN_UNDEF
                                                                                                                          __stack_chk_failGLIBC_2.4libc.so.6.dynsym0x00FUNC<unknown>DEFAULTSHN_UNDEF
                                                                                                                          _dl_mcount_wrapper_checkGLIBC_2.2.5libc.so.6.dynsym0x00FUNC<unknown>DEFAULTSHN_UNDEF
                                                                                                                          gconv.dynsym0x12403862FUNC<unknown>DEFAULT16
                                                                                                                          gconv_init.dynsym0x11a0150FUNC<unknown>DEFAULT16

                                                                                                                          Network Behavior

                                                                                                                          Network Port Distribution

                                                                                                                          TCP Packets

                                                                                                                          TimestampSource PortDest PortSource IPDest IP
                                                                                                                          Sep 30, 2021 09:25:31.482986927 CEST43928443192.168.2.2391.189.91.42
                                                                                                                          Sep 30, 2021 09:25:41.722430944 CEST42836443192.168.2.2391.189.91.43
                                                                                                                          Sep 30, 2021 09:25:45.818351984 CEST4251680192.168.2.23109.202.202.202
                                                                                                                          Sep 30, 2021 09:26:12.441106081 CEST43928443192.168.2.2391.189.91.42

                                                                                                                          System Behavior

                                                                                                                          General

                                                                                                                          Start time:09:25:15
                                                                                                                          Start date:30/09/2021
                                                                                                                          Path:/tmp/SNVXns6sZV
                                                                                                                          Arguments:/tmp/SNVXns6sZV
                                                                                                                          File size:18664 bytes
                                                                                                                          MD5 hash:d7429c915222ec4345077f346bf9ac80