Source: /usr/bin/pkill (PID: 5531) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5545) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5550) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5553) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5558) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5561) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5566) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5590) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5595) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5600) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5603) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5609) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5612) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5617) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5620) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5625) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5628) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5633) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5638) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5643) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5648) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5651) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5657) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5660) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5665) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5668) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5673) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5678) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5681) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5686) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5691) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5694) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5700) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5703) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5708) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5713) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5716) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5721) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5726) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5731) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5736) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5739) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5743) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5748) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: unknown |
TCP traffic detected without corresponding DNS query: 200.45.177.207 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 12.233.191.131 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 171.232.4.249 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 243.63.122.204 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 152.25.176.134 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 141.198.55.107 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 179.172.182.165 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 49.37.178.100 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 164.169.167.153 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 151.59.233.163 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 105.161.229.21 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 138.105.15.24 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 222.179.207.143 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 89.2.243.170 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 217.206.246.194 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 56.48.167.93 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 175.197.3.73 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 240.92.215.123 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 69.103.20.244 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 45.23.189.140 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 203.141.28.164 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 16.144.79.251 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 141.149.0.198 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 69.40.36.158 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 118.58.227.187 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 251.119.126.12 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 8.78.9.22 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 246.154.98.103 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 154.169.16.17 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 162.116.222.61 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 150.221.72.129 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 158.111.205.3 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 14.155.232.54 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 6.162.45.182 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 33.119.48.79 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 142.238.219.217 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 49.128.71.168 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 33.124.70.132 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 53.244.176.211 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 80.64.22.114 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 100.253.214.199 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 216.172.147.222 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 152.222.150.47 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 188.94.48.75 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 249.153.1.232 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 118.231.247.79 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 149.12.47.101 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 57.8.212.158 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 7.43.102.159 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 203.196.215.1 |
Source: yakuza.i686.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Gafgyt_f51c5ac3 Author: unknown |
Source: yakuza.i686.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Gafgyt_27de1106 Author: unknown |
Source: yakuza.i686.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Gafgyt_1b2e2a3a Author: unknown |
Source: yakuza.i686.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Tsunami_0fa3a6e9 Author: unknown |
Source: yakuza.i686.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Tsunami_8a11f9be Author: unknown |
Source: yakuza.i686.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Tsunami_6b3974b2 Author: unknown |
Source: 5526.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_f51c5ac3 Author: unknown |
Source: 5526.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_27de1106 Author: unknown |
Source: 5526.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_1b2e2a3a Author: unknown |
Source: 5526.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Tsunami_0fa3a6e9 Author: unknown |
Source: 5526.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Tsunami_8a11f9be Author: unknown |
Source: 5526.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Tsunami_6b3974b2 Author: unknown |
Source: Process Memory Space: yakuza.i686.elf PID: 5526, type: MEMORYSTR |
Matched rule: Linux_Trojan_Tsunami_8a11f9be Author: unknown |
Source: yakuza.i686.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Gafgyt_f51c5ac3 reference_sample = 899c072730590003b98278bdda21c15ecaa2f49ad51e417ed59e88caf054a72d, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 34f254afdf94b1eb29bae4eb8e3864ea49e918a5dbe6e4c9d06a4292c104a792, id = f51c5ac3-ade9-4d01-b578-3473a2b116db, last_modified = 2021-09-16 |
Source: yakuza.i686.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Gafgyt_27de1106 reference_sample = 899c072730590003b98278bdda21c15ecaa2f49ad51e417ed59e88caf054a72d, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 9a747f0fc7ccc55f24f2654344484f643103da709270a45de4c1174d8e4101cc, id = 27de1106-497d-40a0-8fc4-929f7a927628, last_modified = 2021-09-16 |
Source: yakuza.i686.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Gafgyt_1b2e2a3a reference_sample = 899c072730590003b98278bdda21c15ecaa2f49ad51e417ed59e88caf054a72d, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 6f24b67d0a6a4fc4e1cfea5a5414b82af1332a3e6074eb2178aee6b27702b407, id = 1b2e2a3a-1302-41c7-be99-43edb5563294, last_modified = 2021-09-16 |
Source: yakuza.i686.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Tsunami_0fa3a6e9 reference_sample = 40a15a186373a062bfb476b37a73c61e1ba84e5fa57282a7f9ec0481860f372a, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Tsunami, fingerprint = fed796c5275e2e91c75dcdbf73d0c0ab37591115989312c6f6c5adcd138bc91f, id = 0fa3a6e9-89f3-4bc8-8dc1-e9ccbeeb836d, last_modified = 2021-09-16 |
Source: yakuza.i686.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Tsunami_8a11f9be reference_sample = 1f773d0e00d40eecde9e3ab80438698923a2620036c2fc33315ef95229e98571, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Tsunami, fingerprint = 91e2572a3bb8583e20042578e95e1746501c6a71ef7635af2c982a05b18d7c6d, id = 8a11f9be-dc85-4695-9f38-80ca0304780e, last_modified = 2021-09-16 |
Source: yakuza.i686.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Tsunami_6b3974b2 reference_sample = 2216776ba5c6495d86a13f6a3ce61b655b72a328ca05b3678d1abb7a20829d04, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Tsunami, fingerprint = 942a35f7acacf1d07577fe159a34dc7b04e5d07ff32ea13be975cfeea23e34be, id = 6b3974b2-fd7f-4ebf-8aba-217761e7b846, last_modified = 2021-09-16 |
Source: 5526.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_f51c5ac3 reference_sample = 899c072730590003b98278bdda21c15ecaa2f49ad51e417ed59e88caf054a72d, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 34f254afdf94b1eb29bae4eb8e3864ea49e918a5dbe6e4c9d06a4292c104a792, id = f51c5ac3-ade9-4d01-b578-3473a2b116db, last_modified = 2021-09-16 |
Source: 5526.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_27de1106 reference_sample = 899c072730590003b98278bdda21c15ecaa2f49ad51e417ed59e88caf054a72d, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 9a747f0fc7ccc55f24f2654344484f643103da709270a45de4c1174d8e4101cc, id = 27de1106-497d-40a0-8fc4-929f7a927628, last_modified = 2021-09-16 |
Source: 5526.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_1b2e2a3a reference_sample = 899c072730590003b98278bdda21c15ecaa2f49ad51e417ed59e88caf054a72d, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = 6f24b67d0a6a4fc4e1cfea5a5414b82af1332a3e6074eb2178aee6b27702b407, id = 1b2e2a3a-1302-41c7-be99-43edb5563294, last_modified = 2021-09-16 |
Source: 5526.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Tsunami_0fa3a6e9 reference_sample = 40a15a186373a062bfb476b37a73c61e1ba84e5fa57282a7f9ec0481860f372a, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Tsunami, fingerprint = fed796c5275e2e91c75dcdbf73d0c0ab37591115989312c6f6c5adcd138bc91f, id = 0fa3a6e9-89f3-4bc8-8dc1-e9ccbeeb836d, last_modified = 2021-09-16 |
Source: 5526.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Tsunami_8a11f9be reference_sample = 1f773d0e00d40eecde9e3ab80438698923a2620036c2fc33315ef95229e98571, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Tsunami, fingerprint = 91e2572a3bb8583e20042578e95e1746501c6a71ef7635af2c982a05b18d7c6d, id = 8a11f9be-dc85-4695-9f38-80ca0304780e, last_modified = 2021-09-16 |
Source: 5526.1.0000000008048000.000000000805e000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Tsunami_6b3974b2 reference_sample = 2216776ba5c6495d86a13f6a3ce61b655b72a328ca05b3678d1abb7a20829d04, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Tsunami, fingerprint = 942a35f7acacf1d07577fe159a34dc7b04e5d07ff32ea13be975cfeea23e34be, id = 6b3974b2-fd7f-4ebf-8aba-217761e7b846, last_modified = 2021-09-16 |
Source: Process Memory Space: yakuza.i686.elf PID: 5526, type: MEMORYSTR |
Matched rule: Linux_Trojan_Tsunami_8a11f9be reference_sample = 1f773d0e00d40eecde9e3ab80438698923a2620036c2fc33315ef95229e98571, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Tsunami, fingerprint = 91e2572a3bb8583e20042578e95e1746501c6a71ef7635af2c982a05b18d7c6d, id = 8a11f9be-dc85-4695-9f38-80ca0304780e, last_modified = 2021-09-16 |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/110/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/110/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/231/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/231/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/111/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/111/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/112/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/112/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/233/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/233/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/113/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/113/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/114/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/114/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/235/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/235/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/115/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/115/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/1333/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/1333/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/116/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/116/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/1695/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/1695/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/117/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/117/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/118/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/118/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/119/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/119/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/911/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/911/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/914/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/914/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/10/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/10/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/917/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/917/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/11/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/11/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/12/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/12/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/13/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/13/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/14/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/14/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/15/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/15/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/16/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/16/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/17/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/17/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/18/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/18/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/19/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/19/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/1591/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/1591/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/120/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/120/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/121/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/121/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/1/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/1/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/122/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/122/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/243/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/243/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/2/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/2/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/123/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/123/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/3/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/3/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/124/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/124/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/1588/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/1588/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/125/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/125/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/4/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/4/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/246/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/246/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/126/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/126/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/5/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/5/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/127/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/127/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/6/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/6/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/1585/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/1585/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/128/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/128/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/7/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/7/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/129/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/129/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/8/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/8/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/800/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/800/cmdline |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/9/status |
Source: /usr/bin/pkill (PID: 5681) |
File opened: /proc/9/cmdline |
Source: /tmp/yakuza.i686.elf (PID: 5530) |
Shell command executed: sh -c "pkill -9 902i13 || busybox pkill -9 902i13" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5544) |
Shell command executed: sh -c "pkill -9 BzSxLxBxeY || busybox pkill -9 BzSxLxBxeY" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5549) |
Shell command executed: sh -c "pkill -9 HOHO-LUGO7 || busybox pkill -9 HOHO-LUGO7" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5552) |
Shell command executed: sh -c "pkill -9 HOHO-U79OL || busybox pkill -9 HOHO-U79OL" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5557) |
Shell command executed: sh -c "pkill -9 JuYfouyf87 || busybox pkill -9 JuYfouyf87" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5560) |
Shell command executed: sh -c "pkill -9 NiGGeR69xd || busybox pkill -9 NiGGeR69xd" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5565) |
Shell command executed: sh -c "pkill -9 SO190Ij1X || busybox pkill -9 SO190Ij1X" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5589) |
Shell command executed: sh -c "pkill -9 LOLKIKEEEDDE || busybox pkill -9 LOLKIKEEEDDE" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5594) |
Shell command executed: sh -c "pkill -9 ekjheory98e || busybox pkill -9 ekjheory98e" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5599) |
Shell command executed: sh -c "pkill -9 scansh4 || busybox pkill -9 scansh4" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5602) |
Shell command executed: sh -c "pkill -9 MDMA || busybox pkill -9 MDMA" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5608) |
Shell command executed: sh -c "pkill -9 fdevalvex || busybox pkill -9 fdevalvex" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5611) |
Shell command executed: sh -c "pkill -9 scanspc || busybox pkill -9 scanspc" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5616) |
Shell command executed: sh -c "pkill -9 MELTEDNINJAREALZ || busybox pkill -9 MELTEDNINJAREALZ" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5619) |
Shell command executed: sh -c "pkill -9 flexsonskids || busybox pkill -9 flexsonskids" |
Jump to behavior |
Source: /tmp/yakuza.i686.elf (PID: 5624) |
Shell command executed: sh -c "pkill -9 scanx86 || busybox pkill -9 scanx86" |
|
Source: /tmp/yakuza.i686.elf (PID: 5627) |
Shell command executed: sh -c "pkill -9 MISAKI-U79OL || busybox pkill -9 MISAKI-U79OL" |
|
Source: /tmp/yakuza.i686.elf (PID: 5632) |
Shell command executed: sh -c "pkill -9 foAxi102kxe || busybox pkill -9 foAxi102kxe" |
|
Source: /tmp/yakuza.i686.elf (PID: 5637) |
Shell command executed: sh -c "pkill -9 swodjwodjwoj || busybox pkill -9 swodjwodjwoj" |
|
Source: /tmp/yakuza.i686.elf (PID: 5642) |
Shell command executed: sh -c "pkill -9 MmKiy7f87l || busybox pkill -9 MmKiy7f87l" |
|
Source: /tmp/yakuza.i686.elf (PID: 5647) |
Shell command executed: sh -c "pkill -9 freecookiex86 || busybox pkill -9 freecookiex86" |
|
Source: /tmp/yakuza.i686.elf (PID: 5650) |
Shell command executed: sh -c "pkill -9 sysgpu || busybox pkill -9 sysgpu" |
|
Source: /tmp/yakuza.i686.elf (PID: 5656) |
Shell command executed: sh -c "pkill -9 NiGGeR69xd || busybox pkill -9 NiGGeR69xd" |
|
Source: /tmp/yakuza.i686.elf (PID: 5659) |
Shell command executed: sh -c "pkill -9 frgege || busybox pkill -9 frgege" |
|
Source: /tmp/yakuza.i686.elf (PID: 5664) |
Shell command executed: sh -c "pkill -9 sysupdater || busybox pkill -9 sysupdater" |
|
Source: /tmp/yakuza.i686.elf (PID: 5667) |
Shell command executed: sh -c "pkill -9 0DnAzepd || busybox pkill -9 0DnAzepd" |
|
Source: /tmp/yakuza.i686.elf (PID: 5672) |
Shell command executed: sh -c "pkill -9 NiGGeRD0nks69 || busybox pkill -9 NiGGeRD0nks69" |
|
Source: /tmp/yakuza.i686.elf (PID: 5677) |
Shell command executed: sh -c "pkill -9 frgreu || busybox pkill -9 frgreu" |
|
Source: /tmp/yakuza.i686.elf (PID: 5680) |
Shell command executed: sh -c "pkill -9 telnetd || busybox pkill -9 telnetd" |
|
Source: /tmp/yakuza.i686.elf (PID: 5685) |
Shell command executed: sh -c "pkill -9 0x766f6964 || busybox pkill -9 0x766f6964" |
|
Source: /tmp/yakuza.i686.elf (PID: 5690) |
Shell command executed: sh -c "pkill -9 NiGGeRd0nks1337 || busybox pkill -9 NiGGeRd0nks1337" |
|
Source: /tmp/yakuza.i686.elf (PID: 5693) |
Shell command executed: sh -c "pkill -9 gaft || busybox pkill -9 gaft" |
|
Source: /tmp/yakuza.i686.elf (PID: 5699) |
Shell command executed: sh -c "pkill -9 urasgbsigboa || busybox pkill -9 urasgbsigboa" |
|
Source: /tmp/yakuza.i686.elf (PID: 5702) |
Shell command executed: sh -c "pkill -9 120i3UI49 || busybox pkill -9 120i3UI49" |
|
Source: /tmp/yakuza.i686.elf (PID: 5707) |
Shell command executed: sh -c "pkill -9 OaF3 || busybox pkill -9 OaF3" |
|
Source: /tmp/yakuza.i686.elf (PID: 5712) |
Shell command executed: sh -c "pkill -9 geae || busybox pkill -9 geae" |
|
Source: /tmp/yakuza.i686.elf (PID: 5715) |
Shell command executed: sh -c "pkill -9 vaiolmao || busybox pkill -9 vaiolmao" |
|
Source: /tmp/yakuza.i686.elf (PID: 5720) |
Shell command executed: sh -c "pkill -9 123123a || busybox pkill -9 123123a" |
|
Source: /tmp/yakuza.i686.elf (PID: 5725) |
Shell command executed: sh -c "pkill -9 Ofurain0n4H34D || busybox pkill -9 Ofurain0n4H34D" |
|
Source: /tmp/yakuza.i686.elf (PID: 5730) |
Shell command executed: sh -c "pkill -9 ggTrex || busybox pkill -9 ggTrex" |
|
Source: /tmp/yakuza.i686.elf (PID: 5735) |
Shell command executed: sh -c "pkill -9 wasads || busybox pkill -9 wasads" |
|
Source: /tmp/yakuza.i686.elf (PID: 5738) |
Shell command executed: sh -c "pkill -9 1293194hjXD || busybox pkill -9 1293194hjXD" |
|
Source: /tmp/yakuza.i686.elf (PID: 5742) |
Shell command executed: sh -c "pkill -9 OthLaLosn || busybox pkill -9 OthLaLosn" |
|
Source: /tmp/yakuza.i686.elf (PID: 5747) |
Shell command executed: sh -c "pkill -9 ggt || busybox pkill -9 ggt" |
|
Source: /bin/sh (PID: 5531) |
Pkill executable: /usr/bin/pkill -> pkill -9 902i13 |
Jump to behavior |
Source: /bin/sh (PID: 5545) |
Pkill executable: /usr/bin/pkill -> pkill -9 BzSxLxBxeY |
Jump to behavior |
Source: /bin/sh (PID: 5550) |
Pkill executable: /usr/bin/pkill -> pkill -9 HOHO-LUGO7 |
Jump to behavior |
Source: /bin/sh (PID: 5553) |
Pkill executable: /usr/bin/pkill -> pkill -9 HOHO-U79OL |
Jump to behavior |
Source: /bin/sh (PID: 5558) |
Pkill executable: /usr/bin/pkill -> pkill -9 JuYfouyf87 |
Jump to behavior |
Source: /bin/sh (PID: 5561) |
Pkill executable: /usr/bin/pkill -> pkill -9 NiGGeR69xd |
Jump to behavior |
Source: /bin/sh (PID: 5566) |
Pkill executable: /usr/bin/pkill -> pkill -9 SO190Ij1X |
Jump to behavior |
Source: /bin/sh (PID: 5590) |
Pkill executable: /usr/bin/pkill -> pkill -9 LOLKIKEEEDDE |
Jump to behavior |
Source: /bin/sh (PID: 5595) |
Pkill executable: /usr/bin/pkill -> pkill -9 ekjheory98e |
Jump to behavior |
Source: /bin/sh (PID: 5600) |
Pkill executable: /usr/bin/pkill -> pkill -9 scansh4 |
Jump to behavior |
Source: /bin/sh (PID: 5603) |
Pkill executable: /usr/bin/pkill -> pkill -9 MDMA |
Jump to behavior |
Source: /bin/sh (PID: 5609) |
Pkill executable: /usr/bin/pkill -> pkill -9 fdevalvex |
Jump to behavior |
Source: /bin/sh (PID: 5612) |
Pkill executable: /usr/bin/pkill -> pkill -9 scanspc |
Jump to behavior |
Source: /bin/sh (PID: 5617) |
Pkill executable: /usr/bin/pkill -> pkill -9 MELTEDNINJAREALZ |
Jump to behavior |
Source: /bin/sh (PID: 5620) |
Pkill executable: /usr/bin/pkill -> pkill -9 flexsonskids |
Jump to behavior |
Source: /bin/sh (PID: 5625) |
Pkill executable: /usr/bin/pkill -> pkill -9 scanx86 |
|
Source: /bin/sh (PID: 5628) |
Pkill executable: /usr/bin/pkill -> pkill -9 MISAKI-U79OL |
|
Source: /bin/sh (PID: 5633) |
Pkill executable: /usr/bin/pkill -> pkill -9 foAxi102kxe |
|
Source: /bin/sh (PID: 5638) |
Pkill executable: /usr/bin/pkill -> pkill -9 swodjwodjwoj |
|
Source: /bin/sh (PID: 5643) |
Pkill executable: /usr/bin/pkill -> pkill -9 MmKiy7f87l |
|
Source: /bin/sh (PID: 5648) |
Pkill executable: /usr/bin/pkill -> pkill -9 freecookiex86 |
|
Source: /bin/sh (PID: 5651) |
Pkill executable: /usr/bin/pkill -> pkill -9 sysgpu |
|
Source: /bin/sh (PID: 5657) |
Pkill executable: /usr/bin/pkill -> pkill -9 NiGGeR69xd |
|
Source: /bin/sh (PID: 5660) |
Pkill executable: /usr/bin/pkill -> pkill -9 frgege |
|
Source: /bin/sh (PID: 5665) |
Pkill executable: /usr/bin/pkill -> pkill -9 sysupdater |
|
Source: /bin/sh (PID: 5668) |
Pkill executable: /usr/bin/pkill -> pkill -9 0DnAzepd |
|
Source: /bin/sh (PID: 5673) |
Pkill executable: /usr/bin/pkill -> pkill -9 NiGGeRD0nks69 |
|
Source: /bin/sh (PID: 5678) |
Pkill executable: /usr/bin/pkill -> pkill -9 frgreu |
|
Source: /bin/sh (PID: 5681) |
Pkill executable: /usr/bin/pkill -> pkill -9 telnetd |
|
Source: /bin/sh (PID: 5686) |
Pkill executable: /usr/bin/pkill -> pkill -9 0x766f6964 |
|
Source: /bin/sh (PID: 5691) |
Pkill executable: /usr/bin/pkill -> pkill -9 NiGGeRd0nks1337 |
|
Source: /bin/sh (PID: 5694) |
Pkill executable: /usr/bin/pkill -> pkill -9 gaft |
|
Source: /bin/sh (PID: 5700) |
Pkill executable: /usr/bin/pkill -> pkill -9 urasgbsigboa |
|
Source: /bin/sh (PID: 5703) |
Pkill executable: /usr/bin/pkill -> pkill -9 120i3UI49 |
|
Source: /bin/sh (PID: 5708) |
Pkill executable: /usr/bin/pkill -> pkill -9 OaF3 |
|
Source: /bin/sh (PID: 5713) |
Pkill executable: /usr/bin/pkill -> pkill -9 geae |
|
Source: /bin/sh (PID: 5716) |
Pkill executable: /usr/bin/pkill -> pkill -9 vaiolmao |
|
Source: /bin/sh (PID: 5721) |
Pkill executable: /usr/bin/pkill -> pkill -9 123123a |
|
Source: /bin/sh (PID: 5726) |
Pkill executable: /usr/bin/pkill -> pkill -9 Ofurain0n4H34D |
|
Source: /bin/sh (PID: 5731) |
Pkill executable: /usr/bin/pkill -> pkill -9 ggTrex |
|
Source: /bin/sh (PID: 5736) |
Pkill executable: /usr/bin/pkill -> pkill -9 wasads |
|
Source: /bin/sh (PID: 5739) |
Pkill executable: /usr/bin/pkill -> pkill -9 1293194hjXD |
|
Source: /bin/sh (PID: 5743) |
Pkill executable: /usr/bin/pkill -> pkill -9 OthLaLosn |
|
Source: /bin/sh (PID: 5748) |
Pkill executable: /usr/bin/pkill -> pkill -9 ggt |
|
Source: /usr/bin/pkill (PID: 5531) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5545) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5550) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5553) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5558) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5561) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5566) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5590) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5595) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5600) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5603) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5609) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5612) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5617) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5620) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
Jump to behavior |
Source: /usr/bin/pkill (PID: 5625) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5628) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5633) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5638) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5643) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5648) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5651) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5657) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5660) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5665) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5668) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5673) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5678) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5681) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5686) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5691) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5694) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5700) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5703) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5708) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5713) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5716) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5721) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5726) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5731) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5736) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5739) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5743) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/pkill (PID: 5748) |
Reads CPU info from /sys: /sys/devices/system/cpu/online |
|
Source: /usr/bin/busybox (PID: 5543) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5546) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5551) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5556) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5559) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5564) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5588) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5593) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5596) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5601) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5604) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5610) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5615) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5618) |
Queries kernel information via 'uname': |
Jump to behavior |
Source: /usr/bin/busybox (PID: 5621) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5626) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5631) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5636) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5641) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5644) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5649) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5652) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5658) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5663) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5666) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5671) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5674) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5679) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5684) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5687) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5692) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5696) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5701) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5706) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5709) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5714) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5717) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5724) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5729) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5732) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5737) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5740) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5746) |
Queries kernel information via 'uname': |
|
Source: /usr/bin/busybox (PID: 5749) |
Queries kernel information via 'uname': |
|