IOC Report

loading gif

Files

File Path
Type
Category
Malicious
52lN2HSY7O
ELF 32-bit MSB executable, Motorola m68k, 68020, version 1 (SYSV), statically linked, stripped
initial sample
malicious
/var/cache/motd-news
ASCII text
dropped
clean

Processes

Path
Cmdline
Malicious
/usr/bin/dash
n/a
clean
/usr/bin/cat
cat /tmp/tmp.JmXH35JStJ
clean
/usr/bin/dash
n/a
clean
/usr/bin/head
head -n 10
clean
/usr/bin/dash
n/a
clean
/usr/bin/tr
tr -d \\000-\\011\\013\\014\\016-\\037
clean
/usr/bin/dash
n/a
clean
/usr/bin/cut
cut -c -80
clean
/usr/bin/dash
n/a
clean
/usr/bin/cat
cat /tmp/tmp.JmXH35JStJ
clean
/usr/bin/dash
n/a
clean
/usr/bin/head
head -n 10
clean
/usr/bin/dash
n/a
clean
/usr/bin/tr
tr -d \\000-\\011\\013\\014\\016-\\037
clean
/usr/bin/dash
n/a
clean
/usr/bin/cut
cut -c -80
clean
/usr/bin/dash
n/a
clean
/usr/bin/rm
rm -f /tmp/tmp.JmXH35JStJ /tmp/tmp.AdZnWFxIG7 /tmp/tmp.Bef8J1nfzZ
clean
/tmp/52lN2HSY7O
/tmp/52lN2HSY7O
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
/tmp/52lN2HSY7O
n/a
clean
There are 24 hidden processes, click here to show them.

URLs

Name
IP
Malicious
https://ubuntu.com/blog/microk8s-memory-optimisation
unknown
clean

IPs

IP
Domain
Country
Malicious
199.110.235.164
unknown
United States
clean
113.121.141.255
unknown
China
clean
177.11.31.210
unknown
Brazil
clean
27.110.107.33
unknown
Japan
clean
80.24.212.170
unknown
Spain
clean
186.83.234.200
unknown
Colombia
clean
207.56.160.227
unknown
United States
clean
222.171.173.133
unknown
China
clean
206.184.241.50
unknown
United States
clean
207.116.49.21
unknown
United States
clean
81.255.86.163
unknown
France
clean
101.128.206.180
unknown
Japan
clean
58.6.149.98
unknown
Australia
clean
60.64.115.12
unknown
Japan
clean
72.191.168.77
unknown
United States
clean
134.2.145.161
unknown
Germany
clean
88.190.10.46
unknown
France
clean
189.230.128.7
unknown
Mexico
clean
240.234.53.120
unknown
Reserved
clean
200.228.138.0
unknown
Brazil
clean
245.90.212.44
unknown
Reserved
clean
18.188.26.118
unknown
United States
clean
121.55.215.27
unknown
Guam
clean
175.240.25.72
unknown
Korea Republic of
clean
247.205.244.162
unknown
Reserved
clean
164.42.74.234
unknown
Puerto Rico
clean
53.228.90.236
unknown
Germany
clean
96.25.164.173
unknown
United States
clean
99.10.28.76
unknown
United States
clean
116.40.43.10
unknown
Korea Republic of
clean
159.52.118.79
unknown
Australia
clean
201.233.213.54
unknown
Colombia
clean
169.243.206.141
unknown
United States
clean
109.44.45.243
unknown
Germany
clean
240.203.171.95
unknown
Reserved
clean
150.253.133.66
unknown
United States
clean
253.47.120.163
unknown
Reserved
clean
110.220.30.89
unknown
China
clean
43.8.221.27
unknown
Japan
clean
203.120.137.187
unknown
Singapore
clean
218.181.74.60
unknown
Japan
clean
53.169.5.228
unknown
Germany
clean
75.125.11.254
unknown
United States
clean
101.215.253.239
unknown
India
clean
156.7.48.65
unknown
United States
clean
117.178.243.226
unknown
China
clean
161.78.252.141
unknown
Switzerland
clean
240.160.53.154
unknown
Reserved
clean
108.28.236.159
unknown
United States
clean
195.249.101.245
unknown
Denmark
clean
148.56.211.54
unknown
Spain
clean
159.106.135.52
unknown
United States
clean
80.97.224.172
unknown
Romania
clean
211.21.103.87
unknown
Taiwan; Republic of China (ROC)
clean
183.219.249.8
unknown
China
clean
197.31.187.186
unknown
Tunisia
clean
156.146.203.249
unknown
United States
clean
220.216.169.230
unknown
Japan
clean
198.196.224.109
unknown
United States
clean
153.239.66.159
unknown
Japan
clean
220.216.56.40
unknown
Japan
clean
124.225.208.91
unknown
China
clean
105.143.72.239
unknown
Morocco
clean
177.203.133.248
unknown
Brazil
clean
192.233.100.166
unknown
United States
clean
112.249.78.53
unknown
China
clean
220.0.129.208
unknown
Japan
clean
141.156.237.63
unknown
United States
clean
110.141.121.185
unknown
Australia
clean
83.138.58.49
unknown
unknown
clean
31.114.146.114
unknown
United Kingdom
clean
17.234.124.225
unknown
United States
clean
146.136.220.194
unknown
Switzerland
clean
247.168.152.143
unknown
Reserved
clean
87.198.117.230
unknown
Ireland
clean
169.31.128.125
unknown
United States
clean
210.112.251.134
unknown
Korea Republic of
clean
58.114.227.42
unknown
Taiwan; Republic of China (ROC)
clean
123.47.209.227
unknown
Korea Republic of
clean
243.219.250.131
unknown
Reserved
clean
195.136.103.120
unknown
Poland
clean
40.192.134.233
unknown
United States
clean
254.52.94.164
unknown
Reserved
clean
164.65.13.51
unknown
United States
clean
212.9.249.185
unknown
Ukraine
clean
186.170.17.43
unknown
Colombia
clean
133.27.156.188
unknown
Japan
clean
155.232.197.139
unknown
South Africa
clean
109.4.187.52
unknown
France
clean
99.189.112.218
unknown
United States
clean
184.6.30.97
unknown
United States
clean
186.37.158.45
unknown
Chile
clean
109.1.194.240
unknown
France
clean
87.179.231.26
unknown
Germany
clean
151.75.212.221
unknown
Italy
clean
218.31.166.125
unknown
China
clean
191.133.1.249
unknown
Brazil
clean
186.235.64.46
unknown
Brazil
clean
158.197.0.29
unknown
Slovakia (SLOVAK Republic)
clean
154.145.140.146
unknown
Morocco
clean
There are 90 hidden IPs, click here to show them.