Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_ea92cca8 Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_fa3ad9d0 Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_93fc3657 Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_804f8e7c Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_99d78950 Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_a68e498c Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_88de437f Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_ae9d0fa6 Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_cc93863b Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_ea92cca8 Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_fa3ad9d0 Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_b14f4c5d Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_93fc3657 Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_804f8e7c Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_99d78950 Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_a68e498c Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_88de437f Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_ae9d0fa6 Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_389ee3e9 Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_cc93863b Author: unknown |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_8aa7b5d3 Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Detects Mirai Botnet Malware Author: Florian Roth |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Detects Mirai Botnet Malware Author: Florian Roth |
Source: Process Memory Space: boatnet.x86.elf PID: 6214, type: MEMORYSTR |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c Author: unknown |
Source: Process Memory Space: boatnet.x86.elf PID: 6214, type: MEMORYSTR |
Matched rule: Linux_Trojan_Gafgyt_ea92cca8 Author: unknown |
Source: Process Memory Space: boatnet.x86.elf PID: 6218, type: MEMORYSTR |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c Author: unknown |
Source: Process Memory Space: boatnet.x86.elf PID: 6218, type: MEMORYSTR |
Matched rule: Linux_Trojan_Gafgyt_ea92cca8 Author: unknown |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = a2c6beaec18ca876e8487c11bcc7a29279669588aacb7d3027d8d8df8f5bcead, id = 28a2fe0c-eed5-4c79-81e6-3b11b73a4ebd, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_ea92cca8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = aa4aee9f3d6bedd8234eaf8778895a0f5d71c42b21f2a428f01f121e85704e8e, id = ea92cca8-bba7-4a1c-9b88-a2d051ad0021, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_fa3ad9d0 reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = fe93a3552b72b107f95cc5a7e59da64fe84d31df833bf36c81d8f31d8d79d7ca, id = fa3ad9d0-7c55-4621-90fc-6b154c44a67b, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_93fc3657 reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = d01a9e85a01fad913ca048b60bda1e5a2762f534e5308132c1d3098ac3f561ee, id = 93fc3657-fd21-4e93-a728-c084fc0a6a4a, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_804f8e7c reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 1080d8502848d532a0b38861437485d98a41d945acaf3cb676a7a2a2f6793ac6, id = 804f8e7c-4786-42bc-92e4-c68c24ca530e, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_99d78950 reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 3008edc4e7a099b64139a77d15ec0e2c3c1b55fc23ab156304571c4d14bc654c, id = 99d78950-ea23-4166-a85a-7a029209f5b1, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_a68e498c reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 951c9dfcba531e5112c872395f6c144c4bc8b71c666d2c7d9d8574a23c163883, id = a68e498c-0768-4321-ab65-42dd6ef85323, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_ae9d0fa6 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = ca2bf2771844bec95563800d19a35dd230413f8eff0bd44c8ab0b4c596f81bfc, id = ae9d0fa6-be06-4656-9b13-8edfc0ee9e71, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = a2c6beaec18ca876e8487c11bcc7a29279669588aacb7d3027d8d8df8f5bcead, id = 28a2fe0c-eed5-4c79-81e6-3b11b73a4ebd, last_modified = 2021-09-16 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_ea92cca8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = aa4aee9f3d6bedd8234eaf8778895a0f5d71c42b21f2a428f01f121e85704e8e, id = ea92cca8-bba7-4a1c-9b88-a2d051ad0021, last_modified = 2021-09-16 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_fa3ad9d0 reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = fe93a3552b72b107f95cc5a7e59da64fe84d31df833bf36c81d8f31d8d79d7ca, id = fa3ad9d0-7c55-4621-90fc-6b154c44a67b, last_modified = 2021-09-16 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_b14f4c5d os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = a70d052918dd2fbc66db241da6438015130f0fb6929229bfe573546fe98da817, id = b14f4c5d-054f-46e6-9fa8-3588f1ef68b7, last_modified = 2021-09-16 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_93fc3657 reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = d01a9e85a01fad913ca048b60bda1e5a2762f534e5308132c1d3098ac3f561ee, id = 93fc3657-fd21-4e93-a728-c084fc0a6a4a, last_modified = 2021-09-16 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_804f8e7c reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 1080d8502848d532a0b38861437485d98a41d945acaf3cb676a7a2a2f6793ac6, id = 804f8e7c-4786-42bc-92e4-c68c24ca530e, last_modified = 2021-09-16 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_99d78950 reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 3008edc4e7a099b64139a77d15ec0e2c3c1b55fc23ab156304571c4d14bc654c, id = 99d78950-ea23-4166-a85a-7a029209f5b1, last_modified = 2021-09-16 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_a68e498c reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 951c9dfcba531e5112c872395f6c144c4bc8b71c666d2c7d9d8574a23c163883, id = a68e498c-0768-4321-ab65-42dd6ef85323, last_modified = 2021-09-16 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_ae9d0fa6 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = ca2bf2771844bec95563800d19a35dd230413f8eff0bd44c8ab0b4c596f81bfc, id = ae9d0fa6-be06-4656-9b13-8edfc0ee9e71, last_modified = 2021-09-16 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_389ee3e9 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 59f2359dc1f41d385d639d157b4cd9fc73d76d8abb7cc09d47632bb4c9a39e6e, id = 389ee3e9-70c1-4c93-a999-292cf6ff1652, last_modified = 2022-01-26 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26 |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_8aa7b5d3 reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 02a2c18c362df4b1fceb33f3b605586514ba9a00c7afedf71c04fa54d8146444, id = 8aa7b5d3-e1eb-4b55-b36a-0d3a242c06e9, last_modified = 2022-01-26 |
Source: 6214.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Mirai_Botnet_Malware date = 2016-10-04, hash5 = 420bf9215dfb04e5008c5e522eee9946599e2b323b17f17919cd802ebb012175, hash4 = 2efa09c124f277be2199bee58f49fc0ce6c64c0bef30079dfb3d94a6de492a69, hash3 = 20683ff7a5fec1237fc09224af40be029b9548c62c693844624089af568c89d4, hash2 = 05c78c3052b390435e53a87e3d31e9fb17f7c76bb4df2814313bca24735ce81c, hash1 = 05c78c3052b390435e53a87e3d31e9fb17f7c76bb4df2814313bca24735ce81c, author = Florian Roth, description = Detects Mirai Botnet Malware, hash10 = c61bf95146c68bfbbe01d7695337ed0e93ea759f59f651799f07eecdb339f83f, hash11 = d9573c3850e2ae35f371dff977fc3e5282a5e67db8e3274fd7818e8273fd5c89, hash12 = f1100c84abff05e0501e77781160d9815628e7fd2de9e53f5454dbcac7c84ca5, hash9 = bf0471b37dba7939524a30d7d5afc8fcfb8d4a7c9954343196737e72ea4e2dc4, hash8 = 89570ae59462e6472b6769545a999bde8457e47ae0d385caaa3499ab735b8147, hash7 = 70bb0ec35dd9afcfd52ec4e1d920e7045dc51dca0573cd4c753987c9d79405c0, hash6 = 62cdc8b7fffbaf5683a466f6503c03e68a15413a90f6afd5a13ba027631460c6, reference = Internal Research, license = https://creativecommons.org/licenses/by-nc/4.0/, hash13 = fb713ccf839362bf0fbe01aedd6796f4d74521b133011b408e42c1fd9ab8246b |
Source: 6218.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Mirai_Botnet_Malware date = 2016-10-04, hash5 = 420bf9215dfb04e5008c5e522eee9946599e2b323b17f17919cd802ebb012175, hash4 = 2efa09c124f277be2199bee58f49fc0ce6c64c0bef30079dfb3d94a6de492a69, hash3 = 20683ff7a5fec1237fc09224af40be029b9548c62c693844624089af568c89d4, hash2 = 05c78c3052b390435e53a87e3d31e9fb17f7c76bb4df2814313bca24735ce81c, hash1 = 05c78c3052b390435e53a87e3d31e9fb17f7c76bb4df2814313bca24735ce81c, author = Florian Roth, description = Detects Mirai Botnet Malware, hash10 = c61bf95146c68bfbbe01d7695337ed0e93ea759f59f651799f07eecdb339f83f, hash11 = d9573c3850e2ae35f371dff977fc3e5282a5e67db8e3274fd7818e8273fd5c89, hash12 = f1100c84abff05e0501e77781160d9815628e7fd2de9e53f5454dbcac7c84ca5, hash9 = bf0471b37dba7939524a30d7d5afc8fcfb8d4a7c9954343196737e72ea4e2dc4, hash8 = 89570ae59462e6472b6769545a999bde8457e47ae0d385caaa3499ab735b8147, hash7 = 70bb0ec35dd9afcfd52ec4e1d920e7045dc51dca0573cd4c753987c9d79405c0, hash6 = 62cdc8b7fffbaf5683a466f6503c03e68a15413a90f6afd5a13ba027631460c6, reference = Internal Research, license = https://creativecommons.org/licenses/by-nc/4.0/, hash13 = fb713ccf839362bf0fbe01aedd6796f4d74521b133011b408e42c1fd9ab8246b |
Source: Process Memory Space: boatnet.x86.elf PID: 6214, type: MEMORYSTR |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = a2c6beaec18ca876e8487c11bcc7a29279669588aacb7d3027d8d8df8f5bcead, id = 28a2fe0c-eed5-4c79-81e6-3b11b73a4ebd, last_modified = 2021-09-16 |
Source: Process Memory Space: boatnet.x86.elf PID: 6214, type: MEMORYSTR |
Matched rule: Linux_Trojan_Gafgyt_ea92cca8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = aa4aee9f3d6bedd8234eaf8778895a0f5d71c42b21f2a428f01f121e85704e8e, id = ea92cca8-bba7-4a1c-9b88-a2d051ad0021, last_modified = 2021-09-16 |
Source: Process Memory Space: boatnet.x86.elf PID: 6218, type: MEMORYSTR |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = a2c6beaec18ca876e8487c11bcc7a29279669588aacb7d3027d8d8df8f5bcead, id = 28a2fe0c-eed5-4c79-81e6-3b11b73a4ebd, last_modified = 2021-09-16 |
Source: Process Memory Space: boatnet.x86.elf PID: 6218, type: MEMORYSTR |
Matched rule: Linux_Trojan_Gafgyt_ea92cca8 os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = aa4aee9f3d6bedd8234eaf8778895a0f5d71c42b21f2a428f01f121e85704e8e, id = ea92cca8-bba7-4a1c-9b88-a2d051ad0021, last_modified = 2021-09-16 |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6223) |
Directory: /home/saturnino/.Xdefaults-galassia |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6223) |
Directory: /usr/share/fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6223) |
Directory: /usr/local/share/fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6223) |
Directory: /home/saturnino/.local/share/fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6223) |
Directory: /home/saturnino/.fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6223) |
Directory: /usr/share/fonts/X11/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6223) |
Directory: /usr/share/fonts/cMap/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6224) |
Directory: /home/saturnino/.Xdefaults-galassia |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /home/saturnino/.Xdefaults-galassia |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/local/share/fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /home/saturnino/.local/share/fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /home/saturnino/.fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/X11/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/cMap/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/cmap/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/opentype/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/type1/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/X11/Type1/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/X11/encodings/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/X11/misc/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/X11/util/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/cmap/adobe-cns1/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/cmap/adobe-gb1/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/cmap/adobe-japan1/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/cmap/adobe-japan2/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/cmap/adobe-korea1/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/opentype/malayalam/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/opentype/mathjax/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/opentype/noto/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/opentype/urw-base35/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/Gargi/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/Gubbi/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/Nakula/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/Navilu/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/Sahadeva/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/Sarai/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/abyssinica/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/ancient-scripts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/dejavu/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/droid/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/fonts-beng-extra/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/fonts-deva-extra/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/fonts-gujr-extra/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/fonts-guru-extra/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/fonts-kalapi/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/fonts-orya-extra/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/fonts-telu-extra/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/fonts-yrsa-rasa/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/freefont/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/kacst/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/kacst-one/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lao/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lato/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/liberation/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/liberation2/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lohit-assamese/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lohit-bengali/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lohit-devanagari/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lohit-gujarati/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lohit-kannada/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lohit-malayalam/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lohit-oriya/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lohit-punjabi/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lohit-tamil/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lohit-tamil-classical/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/lohit-telugu/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/malayalam/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/noto/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/openoffice/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/padauk/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/pagul/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/samyak/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/samyak-fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/sinhala/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/tibetan-machine/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/tlwg/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/ttf-khmeros-core/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/truetype/ubuntu/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/type1/urw-base35/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /usr/share/fonts/X11/encodings/large/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /home/saturnino/.cache |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /home/saturnino/.local |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6225) |
Directory: /home/saturnino/.config |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /home/saturnino/.Xdefaults-galassia |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/local/share/fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /home/saturnino/.local/share/fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /home/saturnino/.fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/X11/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/cMap/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/cmap/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/opentype/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/type1/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/X11/Type1/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/X11/encodings/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/X11/misc/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/X11/util/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/cmap/adobe-cns1/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/cmap/adobe-gb1/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/cmap/adobe-japan1/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/cmap/adobe-japan2/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/cmap/adobe-korea1/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/opentype/malayalam/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/opentype/mathjax/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/opentype/noto/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/opentype/urw-base35/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/Gargi/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/Gubbi/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/Nakula/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/Navilu/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/Sahadeva/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/Sarai/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/abyssinica/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/ancient-scripts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/dejavu/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/droid/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/fonts-beng-extra/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/fonts-deva-extra/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/fonts-gujr-extra/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/fonts-guru-extra/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/fonts-kalapi/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/fonts-orya-extra/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/fonts-telu-extra/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/fonts-yrsa-rasa/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/freefont/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/kacst/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/kacst-one/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lao/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lato/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/liberation/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/liberation2/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lohit-assamese/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lohit-bengali/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lohit-devanagari/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lohit-gujarati/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lohit-kannada/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lohit-malayalam/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lohit-oriya/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lohit-punjabi/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lohit-tamil/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lohit-tamil-classical/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/lohit-telugu/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/malayalam/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/noto/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/openoffice/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/padauk/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/pagul/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/samyak/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/samyak-fonts/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/sinhala/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/tibetan-machine/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/tlwg/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/ttf-khmeros-core/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/truetype/ubuntu/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/type1/urw-base35/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6226) |
Directory: /usr/share/fonts/X11/encodings/large/.uuid |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-2.0 (PID: 6227) |
Directory: /home/saturnino/.Xdefaults-galassia |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/xfconf/xfconfd (PID: 6242) |
Directory: /home/saturnino/.cache |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/xfconf/xfconfd (PID: 6242) |
Directory: /home/saturnino/.local |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/xfconf/xfconfd (PID: 6242) |
Directory: /home/saturnino/.config |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/xfconf/xfconfd (PID: 6242) |
Directory: /home/saturnino/.config |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/notifyd/xfce4-notifyd (PID: 6272) |
Directory: /home/saturnino/.Xdefaults-galassia |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/notifyd/xfce4-notifyd (PID: 6272) |
Directory: /home/saturnino/.cache |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/notifyd/xfce4-notifyd (PID: 6272) |
Directory: /home/saturnino/.local |
Jump to behavior |
Source: /usr/lib/x86_64-linux-gnu/xfce4/notifyd/xfce4-notifyd (PID: 6272) |
Directory: /home/saturnino/.config |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1582/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2033/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2275/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/3088/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/6190/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1612/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1579/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1699/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1335/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1698/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2028/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1334/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1576/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2302/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/3236/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2025/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2146/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/910/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/4444/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/6227/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/4445/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/6226/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/912/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/4446/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/517/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/759/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/4447/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2307/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/918/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/6242/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1594/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2285/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2281/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1349/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1623/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/761/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1622/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/884/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1983/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2038/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1344/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1465/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1586/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1860/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1463/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2156/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/800/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/801/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1629/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1627/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1900/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/4472/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/4475/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/3021/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/491/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2294/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2050/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1877/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/772/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1633/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1599/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1632/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/774/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1477/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/654/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/896/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1476/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1872/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2048/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/655/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1475/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2289/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/656/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/777/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/657/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/658/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/4501/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/419/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/936/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1639/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1638/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2208/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2180/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1809/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1494/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1890/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2063/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2062/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1888/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1886/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/420/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1489/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/785/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1642/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/788/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/667/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/789/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/1648/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/6152/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/6310/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/6159/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2078/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2077/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2074/cmdline |
Jump to behavior |
Source: /tmp/boatnet.x86.elf (PID: 6217) |
File opened: /proc/2195/cmdline |
Jump to behavior |