Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Gafgyt_9e9530a7 Author: unknown |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Gafgyt_807911a2 Author: unknown |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Gafgyt_d4227dbf Author: unknown |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Gafgyt_d996d335 Author: unknown |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Gafgyt_620087b9 Author: unknown |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Gafgyt_33b4111a Author: unknown |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Mirai_1e0c5ce0 Author: unknown |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Mirai_520deeb8 Author: unknown |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Mirai_6a77af0f Author: unknown |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Mirai_01e4a728 Author: unknown |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Mirai_e0cf29e2 Author: unknown |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_9e9530a7 Author: unknown |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_807911a2 Author: unknown |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_d4227dbf Author: unknown |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_d996d335 Author: unknown |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_620087b9 Author: unknown |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_33b4111a Author: unknown |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_1e0c5ce0 Author: unknown |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_520deeb8 Author: unknown |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_6a77af0f Author: unknown |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_01e4a728 Author: unknown |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_e0cf29e2 Author: unknown |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_9e9530a7 Author: unknown |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_807911a2 Author: unknown |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_d4227dbf Author: unknown |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_d996d335 Author: unknown |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_620087b9 Author: unknown |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_33b4111a Author: unknown |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_1e0c5ce0 Author: unknown |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_520deeb8 Author: unknown |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_6a77af0f Author: unknown |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_01e4a728 Author: unknown |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_e0cf29e2 Author: unknown |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_9e9530a7 Author: unknown |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_807911a2 Author: unknown |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_d4227dbf Author: unknown |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_d996d335 Author: unknown |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_620087b9 Author: unknown |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_33b4111a Author: unknown |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_1e0c5ce0 Author: unknown |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_520deeb8 Author: unknown |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_6a77af0f Author: unknown |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_01e4a728 Author: unknown |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_e0cf29e2 Author: unknown |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 789, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 796, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 799, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1349, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1389, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1463, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1465, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1477, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1489, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1579, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1582, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1586, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1594, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1599, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1622, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1623, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1627, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1629, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1632, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1633, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1638, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1639, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1642, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1648, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1654, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1656, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1661, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1664, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1668, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1698, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1699, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1809, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1888, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1890, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2009, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2018, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2025, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2033, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2038, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2077, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2078, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2079, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2080, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2083, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2084, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2114, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2128, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2129, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2146, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2156, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2180, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2195, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2208, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2226, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2235, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2242, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 789, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 796, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 799, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1349, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1389, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1463, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1465, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1477, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1489, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1579, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1582, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1586, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1594, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1599, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1622, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1623, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1627, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1629, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1632, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1633, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1638, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1639, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1642, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1648, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1654, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1656, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1661, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1664, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1668, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1698, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1699, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1809, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1888, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 1890, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2009, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2018, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2025, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2033, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2038, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2077, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2078, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2079, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2080, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2083, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2084, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2114, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2128, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2129, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2146, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2156, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2180, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2195, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2208, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2226, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2235, result: successful | Jump to behavior |
Source: /tmp/x86_64.elf (PID: 6258) | SIGKILL sent: pid: 2242, result: successful | Jump to behavior |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Gafgyt_9e9530a7 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = d6ad6512051e87c8c35dc168d82edd071b122d026dce21d39b9782b3d6a01e50, id = 9e9530a7-ad4d-4a44-b764-437b7621052f, last_modified = 2021-09-16 |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Gafgyt_807911a2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = f409037091b7372f5a42bbe437316bd11c655e7a5fe1fcf83d1981cb5c4a389f, id = 807911a2-f6ec-4e65-924f-61cb065dafc6, last_modified = 2021-09-16 |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Gafgyt_d4227dbf reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 58c4b1d4d167876b64cfa10f609911a80284180e4db093917fea16fae8ccd4e3, id = d4227dbf-6ab4-4637-a6ba-0e604acaafb4, last_modified = 2021-09-16 |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Gafgyt_d996d335 reference_sample = b511eacd4b44744c8cf82d1b4a9bc6f1022fe6be7c5d17356b171f727ddc6eda, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = e9ccb8412f32187c309b0e9afcc3a6da21ad2f1ffa251c27f9f720ccb284e3ac, id = d996d335-e049-4052-bf36-6cd07c911a8b, last_modified = 2021-09-16 |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Gafgyt_620087b9 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 06cd7e6eb62352ec2ccb9ed48e58c0583c02fefd137cd048d053ab30b5330307, id = 620087b9-c87d-4752-89e8-ca1c16486b28, last_modified = 2021-09-16 |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Gafgyt_33b4111a reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 9c3b63b9a0f54006bae12abcefdb518904a85f78be573f0780f0a265b12d2d6e, id = 33b4111a-e59e-48db-9d74-34ca44fcd9f5, last_modified = 2021-09-16 |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Mirai_1e0c5ce0 reference_sample = 5b1f95840caebf9721bf318126be27085ec08cf7881ec64a884211a934351c2d, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 8e45538b59f9c9b8bc49661069044900c8199e487714c715c1b1f970fd528e3b, id = 1e0c5ce0-3b76-4da4-8bed-2e5036b6ce79, last_modified = 2021-09-16 |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Mirai_520deeb8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f4dfd1d76e07ff875eedfe0ef4f861bee1e4d8e66d68385f602f29cc35e30cca, id = 520deeb8-cbc0-4225-8d23-adba5e040471, last_modified = 2021-09-16 |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Mirai_6a77af0f os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 4e436f509e7e732e3d0326bcbdde555bba0653213ddf31b43cfdfbe16abb0016, id = 6a77af0f-31fa-4793-82aa-10b065ba1ec0, last_modified = 2021-09-16 |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Mirai_01e4a728 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = d90477364982bdc6cd22079c245d866454475749f762620273091f2fab73c196, id = 01e4a728-7c1c-479b-aed0-cb76d64dbb02, last_modified = 2021-09-16 |
Source: x86_64.elf, type: SAMPLE | Matched rule: Linux_Trojan_Mirai_e0cf29e2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 3f124c3c9f124264dfbbcca1e4b4d7cfcf3274170d4bf8966b6559045873948f, id = e0cf29e2-88d7-4aa4-b60a-c24626f2b246, last_modified = 2021-09-16 |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_9e9530a7 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = d6ad6512051e87c8c35dc168d82edd071b122d026dce21d39b9782b3d6a01e50, id = 9e9530a7-ad4d-4a44-b764-437b7621052f, last_modified = 2021-09-16 |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_807911a2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = f409037091b7372f5a42bbe437316bd11c655e7a5fe1fcf83d1981cb5c4a389f, id = 807911a2-f6ec-4e65-924f-61cb065dafc6, last_modified = 2021-09-16 |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_d4227dbf reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 58c4b1d4d167876b64cfa10f609911a80284180e4db093917fea16fae8ccd4e3, id = d4227dbf-6ab4-4637-a6ba-0e604acaafb4, last_modified = 2021-09-16 |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_d996d335 reference_sample = b511eacd4b44744c8cf82d1b4a9bc6f1022fe6be7c5d17356b171f727ddc6eda, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = e9ccb8412f32187c309b0e9afcc3a6da21ad2f1ffa251c27f9f720ccb284e3ac, id = d996d335-e049-4052-bf36-6cd07c911a8b, last_modified = 2021-09-16 |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_620087b9 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 06cd7e6eb62352ec2ccb9ed48e58c0583c02fefd137cd048d053ab30b5330307, id = 620087b9-c87d-4752-89e8-ca1c16486b28, last_modified = 2021-09-16 |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_33b4111a reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 9c3b63b9a0f54006bae12abcefdb518904a85f78be573f0780f0a265b12d2d6e, id = 33b4111a-e59e-48db-9d74-34ca44fcd9f5, last_modified = 2021-09-16 |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_1e0c5ce0 reference_sample = 5b1f95840caebf9721bf318126be27085ec08cf7881ec64a884211a934351c2d, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 8e45538b59f9c9b8bc49661069044900c8199e487714c715c1b1f970fd528e3b, id = 1e0c5ce0-3b76-4da4-8bed-2e5036b6ce79, last_modified = 2021-09-16 |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_520deeb8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f4dfd1d76e07ff875eedfe0ef4f861bee1e4d8e66d68385f602f29cc35e30cca, id = 520deeb8-cbc0-4225-8d23-adba5e040471, last_modified = 2021-09-16 |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_6a77af0f os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 4e436f509e7e732e3d0326bcbdde555bba0653213ddf31b43cfdfbe16abb0016, id = 6a77af0f-31fa-4793-82aa-10b065ba1ec0, last_modified = 2021-09-16 |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_01e4a728 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = d90477364982bdc6cd22079c245d866454475749f762620273091f2fab73c196, id = 01e4a728-7c1c-479b-aed0-cb76d64dbb02, last_modified = 2021-09-16 |
Source: 6258.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_e0cf29e2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 3f124c3c9f124264dfbbcca1e4b4d7cfcf3274170d4bf8966b6559045873948f, id = e0cf29e2-88d7-4aa4-b60a-c24626f2b246, last_modified = 2021-09-16 |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_9e9530a7 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = d6ad6512051e87c8c35dc168d82edd071b122d026dce21d39b9782b3d6a01e50, id = 9e9530a7-ad4d-4a44-b764-437b7621052f, last_modified = 2021-09-16 |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_807911a2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = f409037091b7372f5a42bbe437316bd11c655e7a5fe1fcf83d1981cb5c4a389f, id = 807911a2-f6ec-4e65-924f-61cb065dafc6, last_modified = 2021-09-16 |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_d4227dbf reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 58c4b1d4d167876b64cfa10f609911a80284180e4db093917fea16fae8ccd4e3, id = d4227dbf-6ab4-4637-a6ba-0e604acaafb4, last_modified = 2021-09-16 |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_d996d335 reference_sample = b511eacd4b44744c8cf82d1b4a9bc6f1022fe6be7c5d17356b171f727ddc6eda, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = e9ccb8412f32187c309b0e9afcc3a6da21ad2f1ffa251c27f9f720ccb284e3ac, id = d996d335-e049-4052-bf36-6cd07c911a8b, last_modified = 2021-09-16 |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_620087b9 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 06cd7e6eb62352ec2ccb9ed48e58c0583c02fefd137cd048d053ab30b5330307, id = 620087b9-c87d-4752-89e8-ca1c16486b28, last_modified = 2021-09-16 |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_33b4111a reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 9c3b63b9a0f54006bae12abcefdb518904a85f78be573f0780f0a265b12d2d6e, id = 33b4111a-e59e-48db-9d74-34ca44fcd9f5, last_modified = 2021-09-16 |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_1e0c5ce0 reference_sample = 5b1f95840caebf9721bf318126be27085ec08cf7881ec64a884211a934351c2d, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 8e45538b59f9c9b8bc49661069044900c8199e487714c715c1b1f970fd528e3b, id = 1e0c5ce0-3b76-4da4-8bed-2e5036b6ce79, last_modified = 2021-09-16 |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_520deeb8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f4dfd1d76e07ff875eedfe0ef4f861bee1e4d8e66d68385f602f29cc35e30cca, id = 520deeb8-cbc0-4225-8d23-adba5e040471, last_modified = 2021-09-16 |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_6a77af0f os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 4e436f509e7e732e3d0326bcbdde555bba0653213ddf31b43cfdfbe16abb0016, id = 6a77af0f-31fa-4793-82aa-10b065ba1ec0, last_modified = 2021-09-16 |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_01e4a728 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = d90477364982bdc6cd22079c245d866454475749f762620273091f2fab73c196, id = 01e4a728-7c1c-479b-aed0-cb76d64dbb02, last_modified = 2021-09-16 |
Source: 6255.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_e0cf29e2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 3f124c3c9f124264dfbbcca1e4b4d7cfcf3274170d4bf8966b6559045873948f, id = e0cf29e2-88d7-4aa4-b60a-c24626f2b246, last_modified = 2021-09-16 |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_9e9530a7 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = d6ad6512051e87c8c35dc168d82edd071b122d026dce21d39b9782b3d6a01e50, id = 9e9530a7-ad4d-4a44-b764-437b7621052f, last_modified = 2021-09-16 |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_807911a2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = f409037091b7372f5a42bbe437316bd11c655e7a5fe1fcf83d1981cb5c4a389f, id = 807911a2-f6ec-4e65-924f-61cb065dafc6, last_modified = 2021-09-16 |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_d4227dbf reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 58c4b1d4d167876b64cfa10f609911a80284180e4db093917fea16fae8ccd4e3, id = d4227dbf-6ab4-4637-a6ba-0e604acaafb4, last_modified = 2021-09-16 |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_d996d335 reference_sample = b511eacd4b44744c8cf82d1b4a9bc6f1022fe6be7c5d17356b171f727ddc6eda, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = e9ccb8412f32187c309b0e9afcc3a6da21ad2f1ffa251c27f9f720ccb284e3ac, id = d996d335-e049-4052-bf36-6cd07c911a8b, last_modified = 2021-09-16 |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_620087b9 reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 06cd7e6eb62352ec2ccb9ed48e58c0583c02fefd137cd048d053ab30b5330307, id = 620087b9-c87d-4752-89e8-ca1c16486b28, last_modified = 2021-09-16 |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_33b4111a reference_sample = 01da73e0d425b4d97c5ad75c49657f95618b394d09bd6be644eb968a3b894961, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 9c3b63b9a0f54006bae12abcefdb518904a85f78be573f0780f0a265b12d2d6e, id = 33b4111a-e59e-48db-9d74-34ca44fcd9f5, last_modified = 2021-09-16 |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_1e0c5ce0 reference_sample = 5b1f95840caebf9721bf318126be27085ec08cf7881ec64a884211a934351c2d, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 8e45538b59f9c9b8bc49661069044900c8199e487714c715c1b1f970fd528e3b, id = 1e0c5ce0-3b76-4da4-8bed-2e5036b6ce79, last_modified = 2021-09-16 |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_520deeb8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f4dfd1d76e07ff875eedfe0ef4f861bee1e4d8e66d68385f602f29cc35e30cca, id = 520deeb8-cbc0-4225-8d23-adba5e040471, last_modified = 2021-09-16 |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_6a77af0f os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 4e436f509e7e732e3d0326bcbdde555bba0653213ddf31b43cfdfbe16abb0016, id = 6a77af0f-31fa-4793-82aa-10b065ba1ec0, last_modified = 2021-09-16 |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_01e4a728 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = d90477364982bdc6cd22079c245d866454475749f762620273091f2fab73c196, id = 01e4a728-7c1c-479b-aed0-cb76d64dbb02, last_modified = 2021-09-16 |
Source: 6259.1.0000000000400000.000000000040d000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_e0cf29e2 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 3f124c3c9f124264dfbbcca1e4b4d7cfcf3274170d4bf8966b6559045873948f, id = e0cf29e2-88d7-4aa4-b60a-c24626f2b246, last_modified = 2021-09-16 |