Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
/tmp/la.bot.m68k.elf
|
/tmp/la.bot.m68k.elf
|
||
/tmp/la.bot.m68k.elf
|
-
|
||
/tmp/la.bot.m68k.elf
|
-
|
||
/tmp/la.bot.m68k.elf
|
-
|
||
/tmp/la.bot.m68k.elf
|
-
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/rm
|
rm -f /tmp/tmp.qX4M6709YG /tmp/tmp.bDqvKUznSe /tmp/tmp.SYg7XyzXnn
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/cat
|
cat /tmp/tmp.qX4M6709YG
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/head
|
head -n 10
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/tr
|
tr -d \\000-\\011\\013\\014\\016-\\037
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/cut
|
cut -c -80
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/cat
|
cat /tmp/tmp.qX4M6709YG
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/head
|
head -n 10
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/tr
|
tr -d \\000-\\011\\013\\014\\016-\\037
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/cut
|
cut -c -80
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/rm
|
rm -f /tmp/tmp.qX4M6709YG /tmp/tmp.bDqvKUznSe /tmp/tmp.SYg7XyzXnn
|
There are 15 hidden processes, click here to show them.
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http:///wget.sh
|
unknown
|
||
http:///curl.sh
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
150.209.4.172
|
unknown
|
United States
|
||
140.160.99.119
|
unknown
|
United States
|
||
17.22.232.157
|
unknown
|
United States
|
||
84.142.245.184
|
unknown
|
Germany
|
||
217.41.150.25
|
unknown
|
United Kingdom
|
||
59.99.166.234
|
unknown
|
India
|
||
64.52.17.218
|
unknown
|
United States
|
||
105.100.195.10
|
unknown
|
Algeria
|
||
57.146.183.17
|
unknown
|
Belgium
|
||
56.99.206.138
|
unknown
|
United States
|
||
169.40.197.75
|
unknown
|
United States
|
||
16.192.62.99
|
unknown
|
United States
|
||
215.190.229.177
|
unknown
|
United States
|
||
15.188.89.37
|
unknown
|
United States
|
||
164.88.173.4
|
unknown
|
South Africa
|
||
67.123.214.208
|
unknown
|
United States
|
||
152.233.161.9
|
unknown
|
Brazil
|
||
103.229.59.209
|
unknown
|
Malaysia
|
||
214.6.239.58
|
unknown
|
United States
|
||
26.138.47.219
|
unknown
|
United States
|
||
65.203.189.105
|
unknown
|
United States
|
||
21.174.208.188
|
unknown
|
United States
|
||
48.114.147.68
|
unknown
|
United States
|
||
40.119.84.177
|
unknown
|
United States
|
||
151.206.205.31
|
unknown
|
United States
|
||
75.141.67.204
|
unknown
|
United States
|
||
20.78.194.63
|
unknown
|
United States
|
||
211.105.33.148
|
unknown
|
Korea Republic of
|
||
183.194.229.111
|
unknown
|
China
|
||
97.180.238.208
|
unknown
|
United States
|
||
145.206.50.104
|
unknown
|
Netherlands
|
||
223.79.160.183
|
unknown
|
China
|
||
166.137.236.72
|
unknown
|
United States
|
||
24.230.4.236
|
unknown
|
Hong Kong
|
||
40.124.214.156
|
unknown
|
United States
|
||
149.109.137.61
|
unknown
|
Saudi Arabia
|
||
206.242.193.129
|
unknown
|
United States
|
||
55.252.108.185
|
unknown
|
United States
|
||
191.60.6.81
|
unknown
|
Brazil
|
||
4.129.95.151
|
unknown
|
United States
|
||
215.230.56.197
|
unknown
|
United States
|
||
157.162.95.23
|
unknown
|
Germany
|
||
107.130.178.187
|
unknown
|
United States
|
||
92.127.139.24
|
unknown
|
Russian Federation
|
||
138.112.95.229
|
unknown
|
United States
|
||
194.98.77.192
|
unknown
|
France
|
||
186.31.174.85
|
unknown
|
Colombia
|
||
215.91.225.24
|
unknown
|
United States
|
||
106.152.130.198
|
unknown
|
Japan
|
||
62.128.86.35
|
unknown
|
Italy
|
||
175.128.192.141
|
unknown
|
Japan
|
||
60.133.195.98
|
unknown
|
Japan
|
||
67.229.175.15
|
unknown
|
United States
|
||
50.188.177.44
|
unknown
|
United States
|
||
94.56.205.61
|
unknown
|
United Arab Emirates
|
||
19.111.220.99
|
unknown
|
United States
|
||
171.202.36.206
|
unknown
|
United States
|
||
89.175.151.61
|
unknown
|
Russian Federation
|
||
188.69.216.122
|
unknown
|
Lithuania
|
||
32.243.246.49
|
unknown
|
United States
|
||
27.68.149.117
|
unknown
|
Viet Nam
|
||
112.22.197.122
|
unknown
|
China
|
||
210.67.24.5
|
unknown
|
Taiwan; Republic of China (ROC)
|
||
193.72.30.87
|
unknown
|
Switzerland
|
||
97.47.2.116
|
unknown
|
United States
|
||
84.0.151.147
|
unknown
|
Hungary
|
||
103.163.8.163
|
unknown
|
unknown
|
||
83.154.42.186
|
unknown
|
France
|
||
2.198.128.164
|
unknown
|
Italy
|
||
111.246.119.117
|
unknown
|
Taiwan; Republic of China (ROC)
|
||
202.180.21.220
|
unknown
|
Indonesia
|
||
181.234.191.198
|
unknown
|
Colombia
|
||
102.111.104.30
|
unknown
|
Tunisia
|
||
146.117.132.143
|
unknown
|
unknown
|
||
207.141.127.205
|
unknown
|
United States
|
||
92.177.186.168
|
unknown
|
France
|
||
56.84.150.205
|
unknown
|
United States
|
||
74.15.163.185
|
unknown
|
Canada
|
||
186.242.44.231
|
unknown
|
Brazil
|
||
123.112.72.242
|
unknown
|
China
|
||
147.186.65.56
|
unknown
|
Sweden
|
||
173.206.253.126
|
unknown
|
Canada
|
||
25.229.158.171
|
unknown
|
United Kingdom
|
||
96.30.125.15
|
unknown
|
Thailand
|
||
4.4.185.90
|
unknown
|
United States
|
||
36.30.28.12
|
unknown
|
China
|
||
215.162.234.163
|
unknown
|
United States
|
||
175.70.199.94
|
unknown
|
China
|
||
120.197.241.38
|
unknown
|
China
|
||
84.242.96.2
|
unknown
|
Czech Republic
|
||
2.131.136.106
|
unknown
|
Denmark
|
||
145.215.204.46
|
unknown
|
Netherlands
|
||
112.62.156.175
|
unknown
|
China
|
||
208.247.140.212
|
unknown
|
United States
|
||
123.253.128.38
|
unknown
|
Indonesia
|
||
168.189.29.48
|
unknown
|
United States
|
||
101.133.140.171
|
unknown
|
China
|
||
195.108.86.10
|
unknown
|
Netherlands
|
||
223.247.73.104
|
unknown
|
China
|
||
92.131.148.132
|
unknown
|
France
|
There are 90 hidden IPs, click here to show them.
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
557da32f9000
|
page read and write
|
|||
557da250f000
|
page execute and read and write
|
|||
7f60a70a8000
|
page read and write
|
|||
7f60a66e7000
|
page read and write
|
|||
7f60a721e000
|
page read and write
|
|||
7f60a6d5d000
|
page read and write
|
|||
7f6020013000
|
page execute read
|
|||
7f60a71d9000
|
page read and write
|
|||
7f60a6d38000
|
page read and write
|
|||
7f60a0000000
|
page read and write
|
|||
7f60a66d9000
|
page read and write
|
|||
7f602001c000
|
page read and write
|
|||
7f60a0021000
|
page read and write
|
|||
7f60a6976000
|
page read and write
|
|||
557da0509000
|
page read and write
|
|||
557da25a6000
|
page read and write
|
|||
557da0511000
|
page read and write
|
|||
7f6020015000
|
page read and write
|
|||
7f60a5ed6000
|
page read and write
|
|||
7ffdd3902000
|
page execute read
|
|||
7ffdd3835000
|
page read and write
|
|||
557da02d7000
|
page execute read
|
|||
7f60a71d1000
|
page read and write
|
There are 13 hidden memdumps, click here to show them.