Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.T; f66a/PV!E(95"dCT; fOOPV!a/EAT@@ |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.U; fb66a/PV!E(:%5CU; fOOPV!a/EAY@@ |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.U; f66a/PV!E(vw:75CU; fOOPV!a/EA_@@ |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.U; f?66a/PV!E(&(:5CU; fsOOPV!a/EAp@@v |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.U; f66a/PV!E(958NCU; fJJPV!a/E<:@@ |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.v; fI66a/PV!E(Z8:S5l "=v; fKOOPV!a/EA@@O |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.v; f66a/PV!E(59y-5,`"=v; fOOPV!a/EA@@E |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.v; fz66a/PV!E(9k9u5"=v; fC{OOPV!a/EA@@A |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.v; fD66a/PV!E(:d5"=v; fOOPV!a/EA@@+ |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.v; f66a/PV!E(:;5"=v; fTJJPV!a/E<N@@ |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; f3A66a/PV!E(ij5(H; f!BOOPV!a/EA@@d |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; fq66a/PV!E($j[594; fmOOPV!a/EA@@b |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; fr66a/PV!E(:i5Z; ftOOPV!a/EA@@S |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; f66a/PV!E(Ni9`5; fPOOPV!a/EA@@G |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; fd66a/PV!E(c:5c?; fdJJPV!a/E<l @@n |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; fh66a/PV!E(o@:>5CyQ; fiOOPV!a/EA|@@j |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; f66a/PV!E(9?5@Q; f?OOPV!a/EA@@_ |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; f66a/PV!E(95Q; f_OOPV!a/EA@@T |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; f866a/PV!E(fj5zQ; f~8OOPV!a/EA@@P |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; fj66a/PV!E(:P5DQ; fJJPV!a/E<{@@- |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; fIZ66a/PV!E(!:5; f[OOPV!a/EA,@@ |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; f66a/PV!E(&:5C; fOOPV!a/EA1@@ |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; fJ66a/PV!E(j5OXv; fLOOPV!a/EAI@@ |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; f66a/PV!E(W95l; f\OOPV!a/EA_@@ |
Source: unknown |
DNS traffic detected: query: kovey.mezo-api.xyz.; f~66a/PV!E(95]; f~JJPV!a/E<@@ |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c Author: unknown |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_268aac0b Author: unknown |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_0cb1699c Author: unknown |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_70ef58f1 Author: unknown |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_3a85a418 Author: unknown |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_2e3f67a9 Author: unknown |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_88de437f Author: unknown |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_cc93863b Author: unknown |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c Author: unknown |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_268aac0b Author: unknown |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_0cb1699c Author: unknown |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_70ef58f1 Author: unknown |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_3a85a418 Author: unknown |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_2e3f67a9 Author: unknown |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_88de437f Author: unknown |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_cc93863b Author: unknown |
Source: Process Memory Space: AkV7DALWTe.elf PID: 5460, type: MEMORYSTR |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c Author: unknown |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = a2c6beaec18ca876e8487c11bcc7a29279669588aacb7d3027d8d8df8f5bcead, id = 28a2fe0c-eed5-4c79-81e6-3b11b73a4ebd, last_modified = 2021-09-16 |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_268aac0b reference_sample = 49c94d184d7e387c3efe34ae6f021e011c3046ae631c9733ab0a230d5fe28ead, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 9c581721bf82af7dc6482a2c41af5fb3404e01c82545c7b2b29230f707014781, id = 268aac0b-c5c7-4035-8381-4e182de91e32, last_modified = 2021-09-16 |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_0cb1699c reference_sample = fc8741f67f39e7409ab2c6c62d4f9acdd168d3e53cf6976dd87501833771cacb, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6e44c68bba8c9fb53ac85080b9ad765579f027cabfea5055a0bb3a85b8671089, id = 0cb1699c-9a08-4885-aa7f-0f1ee2543cac, last_modified = 2021-09-16 |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_70ef58f1 reference_sample = fc8741f67f39e7409ab2c6c62d4f9acdd168d3e53cf6976dd87501833771cacb, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c46eac9185e5f396456004d1e0c42b54a9318e0450f797c55703122cfb8fea89, id = 70ef58f1-ac74-4e33-ae03-e68d1d5a4379, last_modified = 2021-09-16 |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_3a85a418 reference_sample = 86a43b39b157f47ab12e9dc1013b4eec0e1792092d4cef2772a21a9bf4fc518a, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 554aff5770bfe8fdeae94f5f5a0fd7f7786340a95633433d8e686af1c25b8cec, id = 3a85a418-2bd9-445a-86cb-657ca7edf566, last_modified = 2021-09-16 |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_2e3f67a9 reference_sample = fc8741f67f39e7409ab2c6c62d4f9acdd168d3e53cf6976dd87501833771cacb, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6a06815f3d2e5f1a7a67f4264953dbb2e9d14e5f3486b178da845eab5b922d4f, id = 2e3f67a9-6fd5-4457-a626-3a9015bdb401, last_modified = 2021-09-16 |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16 |
Source: AkV7DALWTe.elf, type: SAMPLE |
Matched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26 |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = a2c6beaec18ca876e8487c11bcc7a29279669588aacb7d3027d8d8df8f5bcead, id = 28a2fe0c-eed5-4c79-81e6-3b11b73a4ebd, last_modified = 2021-09-16 |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_268aac0b reference_sample = 49c94d184d7e387c3efe34ae6f021e011c3046ae631c9733ab0a230d5fe28ead, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 9c581721bf82af7dc6482a2c41af5fb3404e01c82545c7b2b29230f707014781, id = 268aac0b-c5c7-4035-8381-4e182de91e32, last_modified = 2021-09-16 |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_0cb1699c reference_sample = fc8741f67f39e7409ab2c6c62d4f9acdd168d3e53cf6976dd87501833771cacb, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6e44c68bba8c9fb53ac85080b9ad765579f027cabfea5055a0bb3a85b8671089, id = 0cb1699c-9a08-4885-aa7f-0f1ee2543cac, last_modified = 2021-09-16 |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_70ef58f1 reference_sample = fc8741f67f39e7409ab2c6c62d4f9acdd168d3e53cf6976dd87501833771cacb, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c46eac9185e5f396456004d1e0c42b54a9318e0450f797c55703122cfb8fea89, id = 70ef58f1-ac74-4e33-ae03-e68d1d5a4379, last_modified = 2021-09-16 |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_3a85a418 reference_sample = 86a43b39b157f47ab12e9dc1013b4eec0e1792092d4cef2772a21a9bf4fc518a, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 554aff5770bfe8fdeae94f5f5a0fd7f7786340a95633433d8e686af1c25b8cec, id = 3a85a418-2bd9-445a-86cb-657ca7edf566, last_modified = 2021-09-16 |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_2e3f67a9 reference_sample = fc8741f67f39e7409ab2c6c62d4f9acdd168d3e53cf6976dd87501833771cacb, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = 6a06815f3d2e5f1a7a67f4264953dbb2e9d14e5f3486b178da845eab5b922d4f, id = 2e3f67a9-6fd5-4457-a626-3a9015bdb401, last_modified = 2021-09-16 |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_88de437f reference_sample = 8dc745a6de6f319cd6021c3e147597315cc1be02099d78fc8aae94de0e1e4bc6, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = c19eb595c2b444a809bef8500c20342c9f46694d3018e268833f9b884133a1ea, id = 88de437f-9c98-4e1d-96c0-7b433c99886a, last_modified = 2021-09-16 |
Source: 5460.1.0000000008048000.0000000008057000.r-x.sdmp, type: MEMORY |
Matched rule: Linux_Trojan_Mirai_cc93863b reference_sample = 5217f2a46cb93946e04ab00e385ad0fe0a2844b6ea04ef75ee9187aac3f3d52f, os = linux, severity = x86, creation_date = 2022-01-05, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Mirai, fingerprint = f3ecd30f0b511a8e92cfa642409d559e7612c3f57a1659ca46c77aca809a00ac, id = cc93863b-1050-40ba-9d02-5ec9ce6a3a28, last_modified = 2022-01-26 |
Source: Process Memory Space: AkV7DALWTe.elf PID: 5460, type: MEMORYSTR |
Matched rule: Linux_Trojan_Gafgyt_28a2fe0c os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Gafgyt, fingerprint = a2c6beaec18ca876e8487c11bcc7a29279669588aacb7d3027d8d8df8f5bcead, id = 28a2fe0c-eed5-4c79-81e6-3b11b73a4ebd, last_modified = 2021-09-16 |