Port 22

Owowa: the add-on that turns your OWA into a credential stealer and remote access panel

We found a suspicious binary and determined it as an IIS module, aimed at stealing credentials and enabling remote command execution from OWA. We named the malicious module Owowa,