ELF DIGEST
@elfdigest
Followers
284
Following
42
Media
0
Statuses
3K
Non-profit Linux malware analysis service created by @tolisec. The service performs static, behavioural and network analysis to identify IoC.
United Kingdom
Joined June 2021
Active IoT #botnet Domain: bot[.]hamsterrace[.]space C2: Mirai 84.54.51.82:59666 sample:
0
0
1
#ELF #Mirai C2 connections: 85.202.87[.]162:38241 85.217.144[.]91:38241 opewu[.]homes dfvzfvd[.]help pqahzam[.]ink Ref: https://t.co/0t5UpID38s Ref: https://t.co/mqQu0gaxpx Ref: https://t.co/e970wzxSI5 cc @elfdigest FYI
2
1
3
0
0
3
Active IoT #botnet Domains: d4xw[.]fun C2: type:Mirai 95.214.24.125:6734 Sample: https://t.co/255SgqTgw3
0
0
0
@tosscoinwitcher @James_inthe_box @Gi7w0rm @AnFam17 @pr0xylife @0xToxin Ditribution: hXXp://103.110.33.164 C2s: 103.110.33[.]164:19990 cantdown[.]space skyline2006[.]xyz bato.cantdown[.]space bato.skyline2006[.]xyz skyljne2006.ddns[.]net #ELF #Mirai cc @elfdigest FYI
1
1
5
Active IoT #botnet arch: x86 AvClass2: linux|11,mirai|10,server|3,backdoor|3 analysis:
0
1
1
Active IoT #botnet arch: x86 AvClass2: linux|12,mirai|8,server|5,backdoor|5 analysis:
0
0
0
Active IoT #botnet arch: x86 AvClass2: linux|12,mirai|9,server|3,backdoor|3,gafgyt|2 analysis:
0
0
0
Active IoT #botnet arch: arm AvClass2: linux|11,mirai|9,server|5,backdoor|5 analysis:
0
0
0
Active IoT #botnet arch: mips AvClass2: linux|13,mirai|10,server|5,backdoor|5 analysis:
0
0
0
Active IoT #botnet URL: 45[.]148.244.224/bins Port Scanning: 23 arch: arm AvClass2: linux|12,mirai|11,server|4,backdoor|4 analysis:
0
0
0
Active IoT #botnet arch: arm AvClass2: linux|9,mirai|8,server|3,backdoor|3 analysis: https://t.co/kUlxySe1rF
0
0
0
Active IoT #botnet arch: arm AvClass2: linux|10,mirai|7,server|4,backdoor|4 analysis: https://t.co/hoPKWkeyhz
0
0
0
Active IoT #botnet arch: mips AvClass2: linux|11,mirai|6,server|3,backdoor|3 analysis: https://t.co/kpuwrlgiKm
0
0
0
Active IoT #botnet suspect C2: 95.214.27.52:6075 Port Scanning: 2323,8083,23,37215,55555,5555 arch: x86 AvClass2: linux|13,mirai|7,server|4,backdoor|4,gafgyt|3 analysis: https://t.co/NZ0M0uqBac
0
0
1
Active IoT #botnet URL: 91[.]208.162.48/bins arch: x86 AvClass2: linux|11,mirai|10,server|3,backdoor|3 analysis: https://t.co/mwJLyBbCQV
0
0
0
Active IoT #botnet URL: 185[.]174.136.230/f2q2kke5aadloo4aasdjjjfirbmw domains: https://t.co/ncaOmR1FqQ suspect C2: 185.174.136.230:60195 arch: arm AvClass2: mirai|13,linux|13,server|3,backdoor|3,gafgyt|2 analysis: https://t.co/Lj7XYielwQ
0
0
1