IOC Report

loading gif

Files

File Path
Type
Category
Malicious
KPz4ERtS9a
ELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), statically linked, stripped
initial sample
malicious
/var/cache/motd-news
ASCII text
dropped
clean

Processes

Path
Cmdline
Malicious
/tmp/KPz4ERtS9a
/tmp/KPz4ERtS9a
clean
/tmp/KPz4ERtS9a
n/a
clean
/tmp/KPz4ERtS9a
n/a
clean
/usr/bin/dash
n/a
clean
/usr/bin/cat
cat /tmp/tmp.txS7eGBKCG
clean
/usr/bin/dash
n/a
clean
/usr/bin/head
head -n 10
clean
/usr/bin/dash
n/a
clean
/usr/bin/tr
tr -d \\000-\\011\\013\\014\\016-\\037
clean
/usr/bin/dash
n/a
clean
/usr/bin/cut
cut -c -80
clean
/usr/bin/dash
n/a
clean
/usr/bin/cat
cat /tmp/tmp.txS7eGBKCG
clean
/usr/bin/dash
n/a
clean
/usr/bin/head
head -n 10
clean
/usr/bin/dash
n/a
clean
/usr/bin/tr
tr -d \\000-\\011\\013\\014\\016-\\037
clean
/usr/bin/dash
n/a
clean
/usr/bin/cut
cut -c -80
clean
/usr/bin/dash
n/a
clean
/usr/bin/rm
rm -f /tmp/tmp.txS7eGBKCG /tmp/tmp.JsHkh9sVIe /tmp/tmp.UY8RlWyiIl
clean
There are 11 hidden processes, click here to show them.

URLs

Name
IP
Malicious
https://ubuntu.com/blog/microk8s-memory-optimisation
unknown
clean

Domains

Name
IP
Malicious
bots1.firewalla1337.cc
107.189.1.185
malicious

IPs

IP
Domain
Country
Malicious
206.61.188.190
unknown
United States
clean
154.109.4.238
unknown
Tunisia
clean
87.136.201.29
unknown
Germany
clean
96.155.237.246
unknown
United States
clean
114.53.103.116
unknown
Korea Republic of
clean
76.15.172.29
unknown
United States
clean
69.119.173.255
unknown
United States
clean
49.216.216.28
unknown
Taiwan; Republic of China (ROC)
clean
183.243.36.155
unknown
China
clean
19.249.21.160
unknown
United States
clean
182.200.28.120
unknown
China
clean
25.88.36.74
unknown
United Kingdom
clean
222.12.163.129
unknown
Japan
clean
86.17.238.169
unknown
United Kingdom
clean
192.154.238.237
unknown
United States
clean
20.169.237.13
unknown
United States
clean
36.20.185.59
unknown
China
clean
198.65.209.238
unknown
United States
clean
136.173.114.39
unknown
Luxembourg
clean
70.176.178.96
unknown
United States
clean
111.205.148.181
unknown
China
clean
182.104.254.37
unknown
China
clean
141.30.26.199
unknown
Germany
clean
135.122.218.248
unknown
United States
clean
4.107.107.55
unknown
United States
clean
176.149.9.225
unknown
France
clean
2.222.21.137
unknown
United Kingdom
clean
103.157.51.89
unknown
unknown
clean
167.108.230.242
unknown
Uruguay
clean
25.195.155.27
unknown
United Kingdom
clean
122.255.10.218
unknown
Sri Lanka
clean
42.243.149.119
unknown
China
clean
19.55.221.32
unknown
United States
clean
173.66.71.172
unknown
United States
clean
131.87.85.231
unknown
United States
clean
113.68.61.110
unknown
China
clean
17.54.245.74
unknown
United States
clean
163.57.235.167
unknown
unknown
clean
190.101.117.123
unknown
Chile
clean
199.121.191.229
unknown
United States
clean
12.138.97.107
unknown
United States
clean
103.159.224.199
unknown
unknown
clean
63.80.5.76
unknown
United States
clean
13.213.91.126
unknown
United States
clean
143.23.212.59
unknown
United States
clean
57.234.176.245
unknown
Belgium
clean
111.80.249.216
unknown
Taiwan; Republic of China (ROC)
clean
40.131.167.177
unknown
United States
clean
196.51.223.15
unknown
South Africa
clean
149.64.54.60
unknown
United States
clean
211.110.246.116
unknown
Korea Republic of
clean
153.31.237.205
unknown
United States
clean
42.130.115.68
unknown
China
clean
198.61.186.238
unknown
United States
clean
64.192.132.233
unknown
United States
clean
49.52.78.12
unknown
China
clean
179.188.242.121
unknown
Brazil
clean
8.36.137.236
unknown
United States
clean
152.170.97.196
unknown
Argentina
clean
64.95.129.152
unknown
United States
clean
194.25.238.144
unknown
Germany
clean
105.237.52.13
unknown
South Africa
clean
87.35.240.228
unknown
Ireland
clean
213.37.228.51
unknown
Spain
clean
191.14.68.220
unknown
Brazil
clean
161.87.168.175
unknown
Netherlands
clean
174.40.48.84
unknown
United States
clean
209.63.110.87
unknown
United States
clean
203.51.120.80
unknown
Australia
clean
31.219.164.78
unknown
United Arab Emirates
clean
187.177.237.196
unknown
Mexico
clean
35.176.86.255
unknown
United States
clean
179.62.170.72
unknown
Argentina
clean
82.148.164.138
unknown
Norway
clean
105.179.46.23
unknown
unknown
clean
221.200.240.250
unknown
China
clean
191.201.125.63
unknown
Brazil
clean
202.109.79.52
unknown
China
clean
174.162.235.66
unknown
United States
clean
165.223.234.228
unknown
United States
clean
149.131.179.149
unknown
United States
clean
213.215.187.119
unknown
Italy
clean
42.204.186.200
unknown
China
clean
200.252.67.136
unknown
Brazil
clean
141.239.2.110
unknown
United States
clean
211.41.228.38
unknown
Korea Republic of
clean
65.239.163.61
unknown
United States
clean
151.58.79.95
unknown
Italy
clean
25.148.142.254
unknown
United Kingdom
clean
92.179.237.117
unknown
France
clean
196.146.184.1
unknown
Egypt
clean
25.158.212.76
unknown
United Kingdom
clean
203.147.5.113
unknown
Thailand
clean
185.21.26.85
unknown
Italy
clean
60.252.146.232
unknown
China
clean
64.22.117.125
unknown
United States
clean
150.98.213.183
unknown
Japan
clean
13.133.76.171
unknown
United States
clean
132.150.213.184
unknown
Norway
clean
125.51.29.222
unknown
Japan
clean
There are 90 hidden IPs, click here to show them.