Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
/usr/bin/dash
|
-
|
||
/usr/bin/rm
|
rm -f /tmp/tmp.MmAZb2pPGC /tmp/tmp.O9axEUqqLy /tmp/tmp.PgVEO2aX3H
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/cat
|
cat /tmp/tmp.MmAZb2pPGC
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/head
|
head -n 10
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/tr
|
tr -d \\000-\\011\\013\\014\\016-\\037
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/cut
|
cut -c -80
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/cat
|
cat /tmp/tmp.MmAZb2pPGC
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/head
|
head -n 10
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/tr
|
tr -d \\000-\\011\\013\\014\\016-\\037
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/cut
|
cut -c -80
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/rm
|
rm -f /tmp/tmp.MmAZb2pPGC /tmp/tmp.O9axEUqqLy /tmp/tmp.PgVEO2aX3H
|
||
/tmp/la.bot.sparc.elf
|
/tmp/la.bot.sparc.elf
|
||
/tmp/la.bot.sparc.elf
|
-
|
||
/tmp/la.bot.sparc.elf
|
-
|
||
/tmp/la.bot.sparc.elf
|
-
|
There are 14 hidden processes, click here to show them.
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http:///wget.sh
|
unknown
|
||
http:///curl.sh
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
2.10.8.29
|
unknown
|
France
|
||
15.89.46.88
|
unknown
|
United States
|
||
203.101.40.138
|
unknown
|
India
|
||
37.20.131.220
|
unknown
|
Russian Federation
|
||
55.153.178.226
|
unknown
|
United States
|
||
116.147.184.133
|
unknown
|
China
|
||
207.57.33.214
|
unknown
|
United States
|
||
208.212.73.255
|
unknown
|
United States
|
||
12.28.135.70
|
unknown
|
United States
|
||
186.189.54.95
|
unknown
|
Aruba
|
||
206.38.158.195
|
unknown
|
United States
|
||
190.237.121.195
|
unknown
|
Peru
|
||
31.115.212.190
|
unknown
|
United Kingdom
|
||
75.22.81.33
|
unknown
|
United States
|
||
82.104.168.186
|
unknown
|
Italy
|
||
200.250.209.206
|
unknown
|
Brazil
|
||
81.6.26.139
|
unknown
|
Switzerland
|
||
129.84.168.211
|
unknown
|
United States
|
||
133.60.60.239
|
unknown
|
Japan
|
||
37.21.121.112
|
unknown
|
Russian Federation
|
||
177.62.126.163
|
unknown
|
Brazil
|
||
27.200.159.35
|
unknown
|
China
|
||
164.230.183.78
|
unknown
|
United States
|
||
98.46.251.26
|
unknown
|
United States
|
||
221.50.91.232
|
unknown
|
Japan
|
||
220.6.116.122
|
unknown
|
Japan
|
||
19.117.204.14
|
unknown
|
United States
|
||
61.70.37.232
|
unknown
|
Taiwan; Republic of China (ROC)
|
||
164.44.228.186
|
unknown
|
United States
|
||
153.229.1.209
|
unknown
|
Japan
|
||
215.175.140.145
|
unknown
|
United States
|
||
79.21.13.214
|
unknown
|
Italy
|
||
99.57.136.4
|
unknown
|
United States
|
||
38.81.126.117
|
unknown
|
United States
|
||
212.91.140.142
|
unknown
|
Sweden
|
||
38.79.86.221
|
unknown
|
United States
|
||
118.124.188.10
|
unknown
|
China
|
||
32.15.233.90
|
unknown
|
United States
|
||
210.45.63.97
|
unknown
|
China
|
||
67.224.247.36
|
unknown
|
Puerto Rico
|
||
218.209.89.129
|
unknown
|
Korea Republic of
|
||
85.112.60.21
|
unknown
|
Russian Federation
|
||
68.203.208.133
|
unknown
|
United States
|
||
154.28.148.132
|
unknown
|
United States
|
||
94.72.179.80
|
unknown
|
Bulgaria
|
||
31.199.207.79
|
unknown
|
Italy
|
||
16.170.232.203
|
unknown
|
United States
|
||
223.24.239.90
|
unknown
|
Thailand
|
||
150.198.180.225
|
unknown
|
United States
|
||
16.60.116.41
|
unknown
|
United States
|
||
115.225.0.1
|
unknown
|
China
|
||
48.72.1.106
|
unknown
|
United States
|
||
157.3.239.231
|
unknown
|
Japan
|
||
135.108.204.97
|
unknown
|
United States
|
||
90.148.230.80
|
unknown
|
Saudi Arabia
|
||
109.26.250.23
|
unknown
|
France
|
||
198.221.61.253
|
unknown
|
United States
|
||
128.61.243.4
|
unknown
|
United States
|
||
162.187.22.170
|
unknown
|
United States
|
||
23.86.11.197
|
unknown
|
United States
|
||
16.159.247.175
|
unknown
|
United States
|
||
109.136.124.184
|
unknown
|
Belgium
|
||
154.88.173.215
|
unknown
|
Seychelles
|
||
192.117.120.147
|
unknown
|
Israel
|
||
132.100.216.95
|
unknown
|
United States
|
||
188.177.57.114
|
unknown
|
Denmark
|
||
115.244.44.161
|
unknown
|
India
|
||
138.249.57.145
|
unknown
|
Finland
|
||
162.152.37.53
|
unknown
|
United States
|
||
159.239.157.167
|
unknown
|
United Kingdom
|
||
4.139.68.225
|
unknown
|
United States
|
||
20.170.115.47
|
unknown
|
United States
|
||
177.240.1.150
|
unknown
|
Mexico
|
||
75.252.1.199
|
unknown
|
United States
|
||
158.61.41.251
|
unknown
|
United States
|
||
219.99.225.15
|
unknown
|
Japan
|
||
131.77.230.127
|
unknown
|
United States
|
||
223.129.191.253
|
unknown
|
China
|
||
207.95.58.129
|
unknown
|
United States
|
||
105.36.137.180
|
unknown
|
Egypt
|
||
151.152.154.87
|
unknown
|
United States
|
||
142.6.100.224
|
unknown
|
Canada
|
||
179.219.28.120
|
unknown
|
Brazil
|
||
125.122.217.245
|
unknown
|
China
|
||
1.97.220.108
|
unknown
|
Korea Republic of
|
||
107.177.38.36
|
unknown
|
United States
|
||
133.89.113.137
|
unknown
|
Japan
|
||
86.236.61.149
|
unknown
|
France
|
||
42.54.33.53
|
unknown
|
China
|
||
191.219.7.130
|
unknown
|
Brazil
|
||
50.66.211.8
|
unknown
|
Canada
|
||
204.67.230.239
|
unknown
|
United States
|
||
16.248.16.163
|
unknown
|
United States
|
||
119.54.139.117
|
unknown
|
China
|
||
123.255.242.102
|
unknown
|
Japan
|
||
79.126.80.123
|
unknown
|
Russian Federation
|
||
21.3.96.84
|
unknown
|
United States
|
||
152.88.164.70
|
unknown
|
Switzerland
|
||
133.51.25.185
|
unknown
|
Japan
|
||
112.153.117.17
|
unknown
|
Korea Republic of
|
There are 90 hidden IPs, click here to show them.
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
5604f0569000
|
page read and write
|
|||
5604efb62000
|
page read and write
|
|||
7fce716d6000
|
page read and write
|
|||
7fce71077000
|
page read and write
|
|||
7ffe619cf000
|
page execute read
|
|||
5604ed916000
|
page execute read
|
|||
7fce71a46000
|
page read and write
|
|||
5604edb4d000
|
page read and write
|
|||
7fce71314000
|
page read and write
|
|||
7fce6c000000
|
page read and write
|
|||
7fce71085000
|
page read and write
|
|||
7fcd6c034000
|
page read and write
|
|||
5604edb44000
|
page read and write
|
|||
7fce71b77000
|
page read and write
|
|||
7fcd6c03b000
|
page read and write
|
|||
7fce6c021000
|
page read and write
|
|||
5604efb4b000
|
page execute and read and write
|
|||
7ffe6197a000
|
page read and write
|
|||
7fce70874000
|
page read and write
|
|||
7fce71b6f000
|
page read and write
|
|||
7fcd6c024000
|
page execute read
|
|||
7fce716fb000
|
page read and write
|
|||
7fce71bbc000
|
page read and write
|
There are 13 hidden memdumps, click here to show them.