Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
/tmp/la.bot.m68k.elf
|
/tmp/la.bot.m68k.elf
|
||
/tmp/la.bot.m68k.elf
|
-
|
||
/tmp/la.bot.m68k.elf
|
-
|
||
/tmp/la.bot.m68k.elf
|
-
|
||
/tmp/la.bot.m68k.elf
|
-
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/rm
|
rm -f /tmp/tmp.Vt7I1nuPGT /tmp/tmp.WnAyJyjlUb /tmp/tmp.sBAvp3PR0J
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/cat
|
cat /tmp/tmp.Vt7I1nuPGT
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/head
|
head -n 10
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/tr
|
tr -d \\000-\\011\\013\\014\\016-\\037
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/cut
|
cut -c -80
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/cat
|
cat /tmp/tmp.Vt7I1nuPGT
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/head
|
head -n 10
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/tr
|
tr -d \\000-\\011\\013\\014\\016-\\037
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/cut
|
cut -c -80
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/rm
|
rm -f /tmp/tmp.Vt7I1nuPGT /tmp/tmp.WnAyJyjlUb /tmp/tmp.sBAvp3PR0J
|
There are 15 hidden processes, click here to show them.
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http:///wget.sh
|
unknown
|
||
http:///curl.sh
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
3.193.144.90
|
unknown
|
United States
|
||
136.131.81.202
|
unknown
|
United States
|
||
106.86.8.165
|
unknown
|
China
|
||
14.75.141.116
|
unknown
|
Korea Republic of
|
||
217.206.131.186
|
unknown
|
United Kingdom
|
||
177.202.209.51
|
unknown
|
Brazil
|
||
107.226.139.227
|
unknown
|
United States
|
||
32.178.132.255
|
unknown
|
United States
|
||
123.143.163.67
|
unknown
|
Korea Republic of
|
||
157.244.253.69
|
unknown
|
Canada
|
||
53.193.169.102
|
unknown
|
Germany
|
||
104.33.98.120
|
unknown
|
United States
|
||
135.152.124.75
|
unknown
|
United States
|
||
19.212.133.241
|
unknown
|
United States
|
||
114.239.158.153
|
unknown
|
China
|
||
171.108.3.131
|
unknown
|
China
|
||
134.153.59.22
|
unknown
|
Canada
|
||
46.127.214.110
|
unknown
|
Switzerland
|
||
15.45.123.75
|
unknown
|
United States
|
||
205.224.40.210
|
unknown
|
United States
|
||
101.197.2.166
|
unknown
|
China
|
||
114.44.24.198
|
unknown
|
Taiwan; Republic of China (ROC)
|
||
60.70.89.155
|
unknown
|
Japan
|
||
113.179.50.92
|
unknown
|
Viet Nam
|
||
32.76.222.196
|
unknown
|
United States
|
||
130.232.65.208
|
unknown
|
Finland
|
||
196.58.90.99
|
unknown
|
Seychelles
|
||
188.216.208.132
|
unknown
|
Italy
|
||
40.19.7.61
|
unknown
|
United States
|
||
124.41.170.111
|
unknown
|
Japan
|
||
37.159.150.3
|
unknown
|
Italy
|
||
95.164.146.170
|
unknown
|
Gibraltar
|
||
136.161.4.69
|
unknown
|
United States
|
||
169.211.69.38
|
unknown
|
Korea Republic of
|
||
82.40.241.2
|
unknown
|
United Kingdom
|
||
180.8.7.84
|
unknown
|
Japan
|
||
3.170.36.8
|
unknown
|
United States
|
||
33.10.198.51
|
unknown
|
United States
|
||
45.151.74.47
|
unknown
|
Spain
|
||
116.224.217.130
|
unknown
|
China
|
||
60.102.120.55
|
unknown
|
Japan
|
||
13.199.196.130
|
unknown
|
United States
|
||
193.0.18.158
|
unknown
|
Netherlands
|
||
100.166.43.191
|
unknown
|
United States
|
||
191.88.207.38
|
unknown
|
Colombia
|
||
162.116.56.54
|
unknown
|
United States
|
||
221.92.136.28
|
unknown
|
Japan
|
||
67.5.51.227
|
unknown
|
United States
|
||
72.220.138.133
|
unknown
|
United States
|
||
119.215.76.53
|
unknown
|
Korea Republic of
|
||
111.111.116.119
|
unknown
|
Japan
|
||
186.221.14.251
|
unknown
|
Brazil
|
||
219.149.247.178
|
unknown
|
China
|
||
204.77.224.148
|
unknown
|
United States
|
||
114.151.128.109
|
unknown
|
Japan
|
||
220.217.121.106
|
unknown
|
Japan
|
||
92.125.198.144
|
unknown
|
Russian Federation
|
||
161.56.236.119
|
unknown
|
Bolivia
|
||
221.243.100.76
|
unknown
|
Japan
|
||
149.47.223.170
|
unknown
|
United States
|
||
100.217.91.187
|
unknown
|
United States
|
||
36.72.157.177
|
unknown
|
Indonesia
|
||
184.237.129.79
|
unknown
|
United States
|
||
188.221.178.82
|
unknown
|
United Kingdom
|
||
30.33.84.13
|
unknown
|
United States
|
||
11.153.50.149
|
unknown
|
United States
|
||
147.55.102.138
|
unknown
|
United States
|
||
26.208.80.138
|
unknown
|
United States
|
||
19.242.227.37
|
unknown
|
United States
|
||
126.151.112.23
|
unknown
|
Japan
|
||
204.245.29.180
|
unknown
|
United States
|
||
167.71.216.99
|
unknown
|
United States
|
||
168.250.117.254
|
unknown
|
United States
|
||
26.201.75.222
|
unknown
|
United States
|
||
143.138.186.216
|
unknown
|
United States
|
||
47.10.45.227
|
unknown
|
Canada
|
||
90.101.248.118
|
unknown
|
France
|
||
4.108.228.64
|
unknown
|
United States
|
||
100.198.26.60
|
unknown
|
United States
|
||
17.75.209.127
|
unknown
|
United States
|
||
207.83.188.36
|
unknown
|
United States
|
||
91.14.242.210
|
unknown
|
Germany
|
||
135.207.77.72
|
unknown
|
United States
|
||
132.181.181.230
|
unknown
|
New Zealand
|
||
204.129.170.162
|
unknown
|
United States
|
||
124.255.249.205
|
unknown
|
Japan
|
||
30.75.33.165
|
unknown
|
United States
|
||
78.253.75.176
|
unknown
|
France
|
||
21.233.224.110
|
unknown
|
United States
|
||
110.200.202.185
|
unknown
|
China
|
||
49.13.162.198
|
unknown
|
Germany
|
||
160.13.84.65
|
unknown
|
Japan
|
||
147.41.175.198
|
unknown
|
Australia
|
||
155.28.93.216
|
unknown
|
United States
|
||
208.198.136.13
|
unknown
|
United States
|
||
206.188.30.252
|
unknown
|
United States
|
||
34.77.181.112
|
unknown
|
United States
|
||
137.138.8.141
|
unknown
|
Switzerland
|
||
15.152.139.173
|
unknown
|
United States
|
||
25.139.102.153
|
unknown
|
United Kingdom
|
There are 90 hidden IPs, click here to show them.
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
7fcc78000000
|
page read and write
|
|||
7fcc7f2f3000
|
page read and write
|
|||
7fcbf8013000
|
page execute read
|
|||
7fcc7fe2a000
|
page read and write
|
|||
55ccfb4e3000
|
page read and write
|
|||
7fcbf801c000
|
page read and write
|
|||
7fcc78021000
|
page read and write
|
|||
7fcc7f582000
|
page read and write
|
|||
7fcc7f944000
|
page read and write
|
|||
7fcc7fcb4000
|
page read and write
|
|||
55ccf84ed000
|
page execute read
|
|||
7fcc7fddd000
|
page read and write
|
|||
7fcc7eae2000
|
page read and write
|
|||
7ffe7c55d000
|
page read and write
|
|||
7ffe7c5a8000
|
page execute read
|
|||
55ccfa725000
|
page execute and read and write
|
|||
55ccf871f000
|
page read and write
|
|||
7fcc7f969000
|
page read and write
|
|||
55ccf8727000
|
page read and write
|
|||
7fcc7fde5000
|
page read and write
|
|||
55ccfa7bc000
|
page read and write
|
|||
7fcbf8015000
|
page read and write
|
|||
7fcc7f2e5000
|
page read and write
|
There are 13 hidden memdumps, click here to show them.