Source: amd64.elf |
ReversingLabs: Detection: 15% |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 91.189.91.42 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 34.249.145.219 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 109.202.202.202 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 91.189.91.42 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 91.189.91.42 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 156.234.42.40 |
Source: unknown |
Network traffic detected: HTTP traffic on port 43928 -> 443 |
Source: unknown |
Network traffic detected: HTTP traffic on port 443 -> 39256 |
Source: unknown |
Network traffic detected: HTTP traffic on port 39256 -> 443 |
Source: ELF static info symbol of initial sample |
.symtab present: no |
Source: classification engine |
Classification label: mal48.linELF@0/0@0/0 |
Source: /usr/bin/dash (PID: 6276) |
Rm executable: /usr/bin/rm -> rm -f /tmp/tmp.81eTWBWmI7 /tmp/tmp.o9DTYjt50x /tmp/tmp.si5gMoxVnA |
Jump to behavior |
Source: /usr/bin/dash (PID: 6277) |
Rm executable: /usr/bin/rm -> rm -f /tmp/tmp.81eTWBWmI7 /tmp/tmp.o9DTYjt50x /tmp/tmp.si5gMoxVnA |
Jump to behavior |
Source: submitted sample |
Stderr: 2024/10/27 14:19:14 Forking2024/10/27 14:19:14 Connecting to 156.234.42.40:802024/10/27 14:19:17 Successfully connnected
156.234.42.40:80: exit code = 0 |
Source: /proc/self/exe (PID: 6269) |
Queries kernel information via 'uname': |
Jump to behavior |