Source: unknown | TCP traffic detected without corresponding DNS query: 216.9.227.143 |
Source: unknown | TCP traffic detected without corresponding DNS query: 216.9.227.143 |
Source: unknown | TCP traffic detected without corresponding DNS query: 216.9.227.143 |
Source: unknown | TCP traffic detected without corresponding DNS query: 91.189.91.43 |
Source: unknown | TCP traffic detected without corresponding DNS query: 109.202.202.202 |
Source: unknown | TCP traffic detected without corresponding DNS query: 216.9.227.143 |
Source: unknown | TCP traffic detected without corresponding DNS query: 216.9.227.143 |
Source: unknown | TCP traffic detected without corresponding DNS query: 91.189.91.42 |
Source: unknown | TCP traffic detected without corresponding DNS query: 91.189.91.43 |
Source: unknown | TCP traffic detected without corresponding DNS query: 109.202.202.202 |
Source: unknown | TCP traffic detected without corresponding DNS query: 91.189.91.42 |
Source: unknown | TCP traffic detected without corresponding DNS query: 216.9.227.143 |
Source: unknown | TCP traffic detected without corresponding DNS query: 216.9.227.143 |
Source: unknown | TCP traffic detected without corresponding DNS query: 216.9.227.143 |
Source: unknown | TCP traffic detected without corresponding DNS query: 216.9.227.143 |
Source: unknown | TCP traffic detected without corresponding DNS query: 216.9.227.143 |
Source: unknown | TCP traffic detected without corresponding DNS query: 216.9.227.143 |
Source: I586.elf, type: SAMPLE | Matched rule: Linux_Trojan_Mirai_ec591e81 Author: unknown |
Source: 6214.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_c573932b Author: unknown |
Source: 6214.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown |
Source: 6214.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_6122acdf Author: unknown |
Source: 6214.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_71e487ea Author: unknown |
Source: 6214.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_7167d08f Author: unknown |
Source: 6214.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown |
Source: 6216.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_c573932b Author: unknown |
Source: 6216.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown |
Source: 6216.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_6122acdf Author: unknown |
Source: 6215.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_c573932b Author: unknown |
Source: 6215.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_5bf62ce4 Author: unknown |
Source: 6215.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_6122acdf Author: unknown |
Source: 6215.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_71e487ea Author: unknown |
Source: 6215.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_7167d08f Author: unknown |
Source: 6215.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown |
Source: 6216.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_71e487ea Author: unknown |
Source: 6216.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_7167d08f Author: unknown |
Source: 6216.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown |
Source: I586.elf, type: SAMPLE | Matched rule: Linux_Trojan_Mirai_ec591e81 reference_sample = 7d45a4a128c25f317020b5d042ab893e9875b6ff0ef17482b984f5b3fe87e451, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = fe3d305202ca5376be7103d0b40f746fc26f8e442f8337a1e7c6d658b00fc4aa, id = ec591e81-8594-4317-89b0-0fb4d43e14c1, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_c573932b reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 18a3025ebb8af46605970ee8d7d18214854b86200001d576553e102cb71df266, id = c573932b-9b3f-4ab7-a6b6-32dcc7473790, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_6122acdf os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 283275705c729be23d7dc75056388ecae00390bd25ee7b66b0cfc9b85feee212, id = 6122acdf-1eef-45ea-83ea-699d21c2dc20, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_71e487ea reference_sample = b8d044f2de21d20c7e4b43a2baf5d8cdb97fba95c3b99816848c0f214515295b, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 8df69968ddfec5821500949015192b6cdbc188c74f785a272effd7bc9707f661, id = 71e487ea-a592-469c-a03e-0c64d2549e74, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_7167d08f reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = b9df4ab322a2a329168f684b07b7b05ee3d03165c5b9050a4710eae7aeca6cd9, id = 7167d08f-bfeb-4d78-9783-3a1df2ef0ed3, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26 |
Source: 6216.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_c573932b reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 18a3025ebb8af46605970ee8d7d18214854b86200001d576553e102cb71df266, id = c573932b-9b3f-4ab7-a6b6-32dcc7473790, last_modified = 2021-09-16 |
Source: 6216.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16 |
Source: 6216.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_6122acdf os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 283275705c729be23d7dc75056388ecae00390bd25ee7b66b0cfc9b85feee212, id = 6122acdf-1eef-45ea-83ea-699d21c2dc20, last_modified = 2021-09-16 |
Source: 6215.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_c573932b reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 18a3025ebb8af46605970ee8d7d18214854b86200001d576553e102cb71df266, id = c573932b-9b3f-4ab7-a6b6-32dcc7473790, last_modified = 2021-09-16 |
Source: 6215.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_5bf62ce4 reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 3ffc398303f7208e77c4fbdfb50ac896e531b7cee3be2fa820bc8d70cfb20af3, id = 5bf62ce4-619b-4d46-b221-c5bf552474bb, last_modified = 2021-09-16 |
Source: 6215.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_6122acdf os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 283275705c729be23d7dc75056388ecae00390bd25ee7b66b0cfc9b85feee212, id = 6122acdf-1eef-45ea-83ea-699d21c2dc20, last_modified = 2021-09-16 |
Source: 6215.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_71e487ea reference_sample = b8d044f2de21d20c7e4b43a2baf5d8cdb97fba95c3b99816848c0f214515295b, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 8df69968ddfec5821500949015192b6cdbc188c74f785a272effd7bc9707f661, id = 71e487ea-a592-469c-a03e-0c64d2549e74, last_modified = 2021-09-16 |
Source: 6215.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_7167d08f reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = b9df4ab322a2a329168f684b07b7b05ee3d03165c5b9050a4710eae7aeca6cd9, id = 7167d08f-bfeb-4d78-9783-3a1df2ef0ed3, last_modified = 2021-09-16 |
Source: 6215.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26 |
Source: 6216.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_71e487ea reference_sample = b8d044f2de21d20c7e4b43a2baf5d8cdb97fba95c3b99816848c0f214515295b, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 8df69968ddfec5821500949015192b6cdbc188c74f785a272effd7bc9707f661, id = 71e487ea-a592-469c-a03e-0c64d2549e74, last_modified = 2021-09-16 |
Source: 6216.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Gafgyt_7167d08f reference_sample = 4c6aeaa6f6a0c40a3f4116a2e19e669188a8b1678a8930350889da1bab531c68, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = b9df4ab322a2a329168f684b07b7b05ee3d03165c5b9050a4710eae7aeca6cd9, id = 7167d08f-bfeb-4d78-9783-3a1df2ef0ed3, last_modified = 2021-09-16 |
Source: 6216.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY | Matched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26 |