qjerome
b2895c367e
Reviewed-on: #3 Co-authored-by: qjerome <quentin.jerome@circl.lu> Co-committed-by: qjerome <quentin.jerome@circl.lu> |
||
---|---|---|
.. | ||
analysis | ||
e59dd13dc8dbb2c9e3612c6f1188622067ed388f6248567c56479d1677c79e5b | ||
README.md | ||
virustotal.json |
Sample Information
VirusTotal Threat Label | trojan.tsunami/kaiten |
md5 | 7b1aec339bee5beed674c8cb576bb881 |
sha1 | 28cc31a46db6970ded6900cc3d6a51c0cb068702 |
sha256 | e59dd13dc8dbb2c9e3612c6f1188622067ed388f6248567c56479d1677c79e5b |
sha512 | 08867041b15afdfc586eb3b872859deed5c5b2c8abcdd500db04a0b7a190bf9657e1c6a2f184ec6ec7ed6c5e847235da46459b7896053414ff669138442ac2eb |
VirusTotal: https://www.virustotal.com/gui/file/e59dd13dc8dbb2c9e3612c6f1188622067ed388f6248567c56479d1677c79e5b
Analysis
Detection Names
a variant of Linux/Tsunami.NCD
Backdoor.BDS/Katien.R
Backdoor.Linux.aeeb
Backdoor:Linux/Tsunami.C!MTB
Backdoor.Linux.Tsunami.x
Backdoor.Tsunami/Linux!1.A1B2 (CLASSIC)
BDS/Katien.R
DDoS:Linux/Tsunami
Detected
E32/Mirai.DJ.gen!Camelot
ELF_KAITEN.SM
ELF:Tsunami-A
ELF:Tsunami-FP [Trj]
ELF/Tsunami.NCD!tr
Generic.Malware.GJIFg.78B1411A
Generic.Malware.GJIFg.78B1411A (B)
Gen:NN.Mirai.36808
HEUR:Backdoor.Linux.Tsunami.bh
Linux/DDoS-Kaiten.gen.a
Linux.Kaiten
Linux.Siggen.9999
Linux.Trojan.Gafgyt
Linux/Tsunami-A
Linux/Tsunami.Gen
Malicious (score: 99)
malware (ai score=100)
Script.Ks.Malware.3227
Static AI - Malicious ELF
Suspicious.Linux.Save.a
Trojan ( 0040f09d1 )
Trojan.Elf32.Tsunami.knlqdv
Trojan.Linux.Mirai
Trojan/Linux.Tsunami.a
Trojan.Linux.Tsunami.m!c
Win.Trojan.Tsunami-5