Cryptojacking via CVE-2023-22527: Dissecting a Full-Scale Cryptomining Ecosystem ================================================================================== 5283CB0CC6F35423C9E41E1C3779B3F3 TROJ_FRS.0NA104H624/19.511.00 9741B569C88166BBC9BBDC2DEA6797B9 Coinminer.Linux.MALXMR.SMDSL64 B3BFC68DE683391E674ADA5CE72B584B Trojan.SH.STARTMINER.A A53A9CA8A074C7108F8412C3F8C1FC5D Trojan.SH.MALXMR.UWELT 2833C82055BF2D29C65CD9CF6684449A TROJ_GEN.R002C0DFO22 2E32D010E8C85A608022B317E5CB1FA7 Trojan.Win32.FRS.VSNW06H24/19.511.00 [IP Addresses/URLs] hxxp[:]//45[.]144[.]3[.]216:10000/rnv2ymcl hxxp[:]//45[.]144[.]3[.]216:10000/starrail/config/v2.json hxxp[:]//45[.]144[.]3[.]216:10000/starrail/cbt2zip/setup.exe hxxp[:]//45[.]144[.]3[.]216:10000/solr.sh hxxp[:]//175[.]118[.]126[.]65:8002/js/l.txt hxxp[:]//95[.]85[.]93[.]196:80/h4