weak password dictionary used by Mirai malware
Through dmesg and /proc/13181/exe
I capture so called qemu,but actually it is actually not.
I execute a command
strings qemu
The output is
...
root
Pon521
Zte521
root621
vizxv
oelinux123
wabjtam
Zxic521
tsgoingon
123456
xc3511
solokey
default
a1sev5y7c39k
hkipc2016
unisheen
Fireitup
hslwificam
jvbzd
1001chin
system
zlxx.
admin
7ujMko0vizxv
1234horses
antslq
xc12345
xmhdipc
icatch99
founder88
xirtam
taZz@01
/*6.=_ja
12345
t0talc0ntr0l4!
7ujMko0admin
telecomadmin
ipcam_rt5350
juantech
1234
dreambox
IPCam@sw
zhongxing
hi3518
hg2x0
dropper
ipc71a
root123
telnet
ipcam
grouter
GM8182
20080826
3ep5w2u
uFwfBht5
VnT3ch@dm1n
admin123
admin1234
admin@123
BrAhMoS@15
GeNeXiS@19
firetide
2601hx
service
password
supportadmin
telnetadmin
admintelecom
guest
video
user
nobody
daemon
1cDuLJ7c
tlJwpbo6
S2fGqNFs
OxhlwSG8
lJwpbo6
tluafed
vstarcam2015
20150602
support
hikvision
e8ehomeasb
e8ehome
e8telnet
cisco
...
I also referred to Anity Lab
The end
SHA1: c9151badebad2dac66dedea508f0b7bf2c1baa2a
评论
发表评论