MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 410132bb1b0a13ec961311328b5e16e6ab73914f59f043099a0ef2bb95e3eaef. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 410132bb1b0a13ec961311328b5e16e6ab73914f59f043099a0ef2bb95e3eaef
SHA3-384 hash: e5fc0ebbf03e7b2d54ae62054dca3d4617ab28a0ba0c305cfe5947fd24d1ed9159e9df5f8876d48593ab4629a917f3c6
SHA1 hash: 861e06d67d22f6bda8da15ed8a97887fbdca3474
MD5 hash: 23fd5f10523722b5b5dbb618b2e7273c
humanhash: coffee-march-uncle-pennsylvania
File name:run.sh
Download: download sample
File size:6'032 bytes
First seen:2025-10-23 17:43:39 UTC
Last seen:2025-10-24 11:45:53 UTC
File type: sh
MIME type:text/plain
ssdeep 96:CVKGRUWli2JMxOvbiB3+uZ5+dRKTBrbwE:h+uZzrbwE
TLSH T190C1218F20458731DE15CA8EB3F5B234910FA1C373DB9B94B9D94C294EC5C4CA685EA2
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://196.251.80.30/xnxnxnxnxnxnxnxnaarch64xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnalphaxnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnarcxnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnarm-gnueabixnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxncskyxnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnhppaxnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnhppa64xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxni386xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnloongarch64xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnm68kxnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnmicroblazexnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnmipsxnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnmips64xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnor1kxnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnpowerpcxnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnpowerpc64xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnriscv32xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnriscv64xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxns390xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnsh2xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnsh4xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnsparcxnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnsparc64xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnx86_64xnxnn/an/aelf ua-wget
http://196.251.80.30/xnxnxnxnxnxnxnxnxtensaxnxnn/an/aelf ua-wget

Intelligence


File Origin
# of uploads :
2
# of downloads :
43
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
File Type:
text
First seen:
2025-10-23T17:43:00Z UTC
Last seen:
2025-10-23T18:43:00Z UTC
Hits:
~10
Status:
terminated
Behavior Graph:
%3 guuid=cf725f5e-1800-0000-16a5-6c7f820c0000 pid=3202 /usr/bin/sudo guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208 /tmp/sample.bin guuid=cf725f5e-1800-0000-16a5-6c7f820c0000 pid=3202->guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208 execve guuid=1294a960-1800-0000-16a5-6c7f8a0c0000 pid=3210 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=1294a960-1800-0000-16a5-6c7f8a0c0000 pid=3210 execve guuid=5695c466-1800-0000-16a5-6c7f8b0c0000 pid=3211 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=5695c466-1800-0000-16a5-6c7f8b0c0000 pid=3211 execve guuid=d8b23e72-1800-0000-16a5-6c7f8c0c0000 pid=3212 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=d8b23e72-1800-0000-16a5-6c7f8c0c0000 pid=3212 execve guuid=e55ddd72-1800-0000-16a5-6c7f8d0c0000 pid=3213 /home/sandbox/xnxnxnxnxnxnxnxnaarch64xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=e55ddd72-1800-0000-16a5-6c7f8d0c0000 pid=3213 execve guuid=e4182473-1800-0000-16a5-6c7f8e0c0000 pid=3214 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=e4182473-1800-0000-16a5-6c7f8e0c0000 pid=3214 execve guuid=779ab073-1800-0000-16a5-6c7f8f0c0000 pid=3215 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=779ab073-1800-0000-16a5-6c7f8f0c0000 pid=3215 execve guuid=b294f675-1800-0000-16a5-6c7f930c0000 pid=3219 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=b294f675-1800-0000-16a5-6c7f930c0000 pid=3219 execve guuid=7be12e79-1800-0000-16a5-6c7f990c0000 pid=3225 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=7be12e79-1800-0000-16a5-6c7f990c0000 pid=3225 execve guuid=824a8979-1800-0000-16a5-6c7f9a0c0000 pid=3226 /home/sandbox/xnxnxnxnxnxnxnxnalphaxnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=824a8979-1800-0000-16a5-6c7f9a0c0000 pid=3226 execve guuid=341cd579-1800-0000-16a5-6c7f9b0c0000 pid=3227 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=341cd579-1800-0000-16a5-6c7f9b0c0000 pid=3227 execve guuid=e2fc2a7a-1800-0000-16a5-6c7f9d0c0000 pid=3229 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=e2fc2a7a-1800-0000-16a5-6c7f9d0c0000 pid=3229 execve guuid=e3566e7c-1800-0000-16a5-6c7fa30c0000 pid=3235 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=e3566e7c-1800-0000-16a5-6c7fa30c0000 pid=3235 execve guuid=5fb64682-1800-0000-16a5-6c7fab0c0000 pid=3243 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=5fb64682-1800-0000-16a5-6c7fab0c0000 pid=3243 execve guuid=9c1f8e82-1800-0000-16a5-6c7fac0c0000 pid=3244 /home/sandbox/xnxnxnxnxnxnxnxnarcxnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=9c1f8e82-1800-0000-16a5-6c7fac0c0000 pid=3244 execve guuid=abafc782-1800-0000-16a5-6c7fad0c0000 pid=3245 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=abafc782-1800-0000-16a5-6c7fad0c0000 pid=3245 execve guuid=541e1d83-1800-0000-16a5-6c7fae0c0000 pid=3246 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=541e1d83-1800-0000-16a5-6c7fae0c0000 pid=3246 execve guuid=c2ffca85-1800-0000-16a5-6c7fb10c0000 pid=3249 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=c2ffca85-1800-0000-16a5-6c7fb10c0000 pid=3249 execve guuid=6696ae89-1800-0000-16a5-6c7fb80c0000 pid=3256 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=6696ae89-1800-0000-16a5-6c7fb80c0000 pid=3256 execve guuid=81dd118a-1800-0000-16a5-6c7fb90c0000 pid=3257 /home/sandbox/xnxnxnxnxnxnxnxnarm-gnueabixnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=81dd118a-1800-0000-16a5-6c7fb90c0000 pid=3257 execve guuid=8717598a-1800-0000-16a5-6c7fba0c0000 pid=3258 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=8717598a-1800-0000-16a5-6c7fba0c0000 pid=3258 execve guuid=9596af8a-1800-0000-16a5-6c7fbb0c0000 pid=3259 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=9596af8a-1800-0000-16a5-6c7fbb0c0000 pid=3259 execve guuid=34bd158d-1800-0000-16a5-6c7fc20c0000 pid=3266 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=34bd158d-1800-0000-16a5-6c7fc20c0000 pid=3266 execve guuid=c6dfeb90-1800-0000-16a5-6c7fca0c0000 pid=3274 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=c6dfeb90-1800-0000-16a5-6c7fca0c0000 pid=3274 execve guuid=f9f26a91-1800-0000-16a5-6c7fcb0c0000 pid=3275 /home/sandbox/xnxnxnxnxnxnxnxncskyxnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=f9f26a91-1800-0000-16a5-6c7fcb0c0000 pid=3275 execve guuid=72edcd91-1800-0000-16a5-6c7fcc0c0000 pid=3276 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=72edcd91-1800-0000-16a5-6c7fcc0c0000 pid=3276 execve guuid=daf72292-1800-0000-16a5-6c7fcd0c0000 pid=3277 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=daf72292-1800-0000-16a5-6c7fcd0c0000 pid=3277 execve guuid=0e3b3e96-1800-0000-16a5-6c7fce0c0000 pid=3278 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=0e3b3e96-1800-0000-16a5-6c7fce0c0000 pid=3278 execve guuid=504e429a-1800-0000-16a5-6c7fd80c0000 pid=3288 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=504e429a-1800-0000-16a5-6c7fd80c0000 pid=3288 execve guuid=85b57d9a-1800-0000-16a5-6c7fda0c0000 pid=3290 /home/sandbox/xnxnxnxnxnxnxnxnhppaxnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=85b57d9a-1800-0000-16a5-6c7fda0c0000 pid=3290 execve guuid=9b71b49a-1800-0000-16a5-6c7fdc0c0000 pid=3292 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=9b71b49a-1800-0000-16a5-6c7fdc0c0000 pid=3292 execve guuid=8b30459b-1800-0000-16a5-6c7fdf0c0000 pid=3295 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=8b30459b-1800-0000-16a5-6c7fdf0c0000 pid=3295 execve guuid=74aede9d-1800-0000-16a5-6c7fe70c0000 pid=3303 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=74aede9d-1800-0000-16a5-6c7fe70c0000 pid=3303 execve guuid=0f3aa2a1-1800-0000-16a5-6c7ff40c0000 pid=3316 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=0f3aa2a1-1800-0000-16a5-6c7ff40c0000 pid=3316 execve guuid=7384e2a1-1800-0000-16a5-6c7ff50c0000 pid=3317 /home/sandbox/xnxnxnxnxnxnxnxnhppa64xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=7384e2a1-1800-0000-16a5-6c7ff50c0000 pid=3317 execve guuid=20091aa2-1800-0000-16a5-6c7ff70c0000 pid=3319 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=20091aa2-1800-0000-16a5-6c7ff70c0000 pid=3319 execve guuid=41f05da2-1800-0000-16a5-6c7ff90c0000 pid=3321 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=41f05da2-1800-0000-16a5-6c7ff90c0000 pid=3321 execve guuid=a30829a6-1800-0000-16a5-6c7f010d0000 pid=3329 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=a30829a6-1800-0000-16a5-6c7f010d0000 pid=3329 execve guuid=1c2a2eab-1800-0000-16a5-6c7f0e0d0000 pid=3342 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=1c2a2eab-1800-0000-16a5-6c7f0e0d0000 pid=3342 execve guuid=a1e26dab-1800-0000-16a5-6c7f0f0d0000 pid=3343 /home/sandbox/xnxnxnxnxnxnxnxni386xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=a1e26dab-1800-0000-16a5-6c7f0f0d0000 pid=3343 execve guuid=8d05a3ab-1800-0000-16a5-6c7f110d0000 pid=3345 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=8d05a3ab-1800-0000-16a5-6c7f110d0000 pid=3345 execve guuid=4330dcab-1800-0000-16a5-6c7f130d0000 pid=3347 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=4330dcab-1800-0000-16a5-6c7f130d0000 pid=3347 execve guuid=935ceead-1800-0000-16a5-6c7f190d0000 pid=3353 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=935ceead-1800-0000-16a5-6c7f190d0000 pid=3353 execve guuid=604adcb3-1800-0000-16a5-6c7f250d0000 pid=3365 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=604adcb3-1800-0000-16a5-6c7f250d0000 pid=3365 execve guuid=233129b4-1800-0000-16a5-6c7f260d0000 pid=3366 /home/sandbox/xnxnxnxnxnxnxnxnloongarch64xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=233129b4-1800-0000-16a5-6c7f260d0000 pid=3366 execve guuid=a99b6eb4-1800-0000-16a5-6c7f270d0000 pid=3367 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=a99b6eb4-1800-0000-16a5-6c7f270d0000 pid=3367 execve guuid=2a3fc0b4-1800-0000-16a5-6c7f280d0000 pid=3368 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=2a3fc0b4-1800-0000-16a5-6c7f280d0000 pid=3368 execve guuid=1c7b27b7-1800-0000-16a5-6c7f290d0000 pid=3369 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=1c7b27b7-1800-0000-16a5-6c7f290d0000 pid=3369 execve guuid=52b04abd-1800-0000-16a5-6c7f2a0d0000 pid=3370 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=52b04abd-1800-0000-16a5-6c7f2a0d0000 pid=3370 execve guuid=73dea4bd-1800-0000-16a5-6c7f2b0d0000 pid=3371 /home/sandbox/xnxnxnxnxnxnxnxnm68kxnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=73dea4bd-1800-0000-16a5-6c7f2b0d0000 pid=3371 execve guuid=6427ecbd-1800-0000-16a5-6c7f2c0d0000 pid=3372 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=6427ecbd-1800-0000-16a5-6c7f2c0d0000 pid=3372 execve guuid=72ef40be-1800-0000-16a5-6c7f2d0d0000 pid=3373 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=72ef40be-1800-0000-16a5-6c7f2d0d0000 pid=3373 execve guuid=2637e2c0-1800-0000-16a5-6c7f300d0000 pid=3376 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=2637e2c0-1800-0000-16a5-6c7f300d0000 pid=3376 execve guuid=daad1ec4-1800-0000-16a5-6c7f3a0d0000 pid=3386 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=daad1ec4-1800-0000-16a5-6c7f3a0d0000 pid=3386 execve guuid=c2805cc4-1800-0000-16a5-6c7f3b0d0000 pid=3387 /home/sandbox/xnxnxnxnxnxnxnxnmicroblazexnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=c2805cc4-1800-0000-16a5-6c7f3b0d0000 pid=3387 execve guuid=153f97c4-1800-0000-16a5-6c7f3d0d0000 pid=3389 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=153f97c4-1800-0000-16a5-6c7f3d0d0000 pid=3389 execve guuid=cb6fdfc4-1800-0000-16a5-6c7f3e0d0000 pid=3390 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=cb6fdfc4-1800-0000-16a5-6c7f3e0d0000 pid=3390 execve guuid=911e5cc7-1800-0000-16a5-6c7f450d0000 pid=3397 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=911e5cc7-1800-0000-16a5-6c7f450d0000 pid=3397 execve guuid=d90115cb-1800-0000-16a5-6c7f510d0000 pid=3409 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=d90115cb-1800-0000-16a5-6c7f510d0000 pid=3409 execve guuid=d01f4fcb-1800-0000-16a5-6c7f530d0000 pid=3411 /home/sandbox/xnxnxnxnxnxnxnxnmipsxnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=d01f4fcb-1800-0000-16a5-6c7f530d0000 pid=3411 execve guuid=a4c085cb-1800-0000-16a5-6c7f550d0000 pid=3413 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=a4c085cb-1800-0000-16a5-6c7f550d0000 pid=3413 execve guuid=3777bdcb-1800-0000-16a5-6c7f570d0000 pid=3415 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=3777bdcb-1800-0000-16a5-6c7f570d0000 pid=3415 execve guuid=6cca18ce-1800-0000-16a5-6c7f5e0d0000 pid=3422 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=6cca18ce-1800-0000-16a5-6c7f5e0d0000 pid=3422 execve guuid=c4a81dd3-1800-0000-16a5-6c7f6d0d0000 pid=3437 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=c4a81dd3-1800-0000-16a5-6c7f6d0d0000 pid=3437 execve guuid=46cb58d3-1800-0000-16a5-6c7f6f0d0000 pid=3439 /home/sandbox/xnxnxnxnxnxnxnxnmips64xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=46cb58d3-1800-0000-16a5-6c7f6f0d0000 pid=3439 execve guuid=9f2d86d3-1800-0000-16a5-6c7f710d0000 pid=3441 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=9f2d86d3-1800-0000-16a5-6c7f710d0000 pid=3441 execve guuid=d96ebad3-1800-0000-16a5-6c7f720d0000 pid=3442 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=d96ebad3-1800-0000-16a5-6c7f720d0000 pid=3442 execve guuid=382257d6-1800-0000-16a5-6c7f7b0d0000 pid=3451 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=382257d6-1800-0000-16a5-6c7f7b0d0000 pid=3451 execve guuid=7abfd3d9-1800-0000-16a5-6c7f870d0000 pid=3463 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=7abfd3d9-1800-0000-16a5-6c7f870d0000 pid=3463 execve guuid=15b409da-1800-0000-16a5-6c7f890d0000 pid=3465 /home/sandbox/xnxnxnxnxnxnxnxnor1kxnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=15b409da-1800-0000-16a5-6c7f890d0000 pid=3465 execve guuid=919e36da-1800-0000-16a5-6c7f8b0d0000 pid=3467 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=919e36da-1800-0000-16a5-6c7f8b0d0000 pid=3467 execve guuid=e17e6fda-1800-0000-16a5-6c7f8d0d0000 pid=3469 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=e17e6fda-1800-0000-16a5-6c7f8d0d0000 pid=3469 execve guuid=119a91dc-1800-0000-16a5-6c7f960d0000 pid=3478 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=119a91dc-1800-0000-16a5-6c7f960d0000 pid=3478 execve guuid=3f71acdf-1800-0000-16a5-6c7fa20d0000 pid=3490 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=3f71acdf-1800-0000-16a5-6c7fa20d0000 pid=3490 execve guuid=45bbe9df-1800-0000-16a5-6c7fa30d0000 pid=3491 /home/sandbox/xnxnxnxnxnxnxnxnpowerpcxnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=45bbe9df-1800-0000-16a5-6c7fa30d0000 pid=3491 execve guuid=5f601be0-1800-0000-16a5-6c7fa50d0000 pid=3493 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=5f601be0-1800-0000-16a5-6c7fa50d0000 pid=3493 execve guuid=64986ce0-1800-0000-16a5-6c7fa70d0000 pid=3495 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=64986ce0-1800-0000-16a5-6c7fa70d0000 pid=3495 execve guuid=9f6cabe2-1800-0000-16a5-6c7faf0d0000 pid=3503 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=9f6cabe2-1800-0000-16a5-6c7faf0d0000 pid=3503 execve guuid=75fe44e6-1800-0000-16a5-6c7fbd0d0000 pid=3517 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=75fe44e6-1800-0000-16a5-6c7fbd0d0000 pid=3517 execve guuid=a8f488e6-1800-0000-16a5-6c7fbf0d0000 pid=3519 /home/sandbox/xnxnxnxnxnxnxnxnpowerpc64xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=a8f488e6-1800-0000-16a5-6c7fbf0d0000 pid=3519 execve guuid=36abbce6-1800-0000-16a5-6c7fc10d0000 pid=3521 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=36abbce6-1800-0000-16a5-6c7fc10d0000 pid=3521 execve guuid=b80d02e7-1800-0000-16a5-6c7fc20d0000 pid=3522 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=b80d02e7-1800-0000-16a5-6c7fc20d0000 pid=3522 execve guuid=467a62e9-1800-0000-16a5-6c7fcb0d0000 pid=3531 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=467a62e9-1800-0000-16a5-6c7fcb0d0000 pid=3531 execve guuid=56388aec-1800-0000-16a5-6c7fd60d0000 pid=3542 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=56388aec-1800-0000-16a5-6c7fd60d0000 pid=3542 execve guuid=597edeec-1800-0000-16a5-6c7fd80d0000 pid=3544 /home/sandbox/xnxnxnxnxnxnxnxnriscv32xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=597edeec-1800-0000-16a5-6c7fd80d0000 pid=3544 execve guuid=89d01bed-1800-0000-16a5-6c7fd90d0000 pid=3545 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=89d01bed-1800-0000-16a5-6c7fd90d0000 pid=3545 execve guuid=96f260ed-1800-0000-16a5-6c7fdb0d0000 pid=3547 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=96f260ed-1800-0000-16a5-6c7fdb0d0000 pid=3547 execve guuid=2edb0bf0-1800-0000-16a5-6c7fe40d0000 pid=3556 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=2edb0bf0-1800-0000-16a5-6c7fe40d0000 pid=3556 execve guuid=c386d9f3-1800-0000-16a5-6c7ff00d0000 pid=3568 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=c386d9f3-1800-0000-16a5-6c7ff00d0000 pid=3568 execve guuid=7ca127f4-1800-0000-16a5-6c7ff20d0000 pid=3570 /home/sandbox/xnxnxnxnxnxnxnxnriscv64xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=7ca127f4-1800-0000-16a5-6c7ff20d0000 pid=3570 execve guuid=74ac6af4-1800-0000-16a5-6c7ff50d0000 pid=3573 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=74ac6af4-1800-0000-16a5-6c7ff50d0000 pid=3573 execve guuid=d6abaef4-1800-0000-16a5-6c7ff80d0000 pid=3576 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=d6abaef4-1800-0000-16a5-6c7ff80d0000 pid=3576 execve guuid=2f6f1cf7-1800-0000-16a5-6c7ff90d0000 pid=3577 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=2f6f1cf7-1800-0000-16a5-6c7ff90d0000 pid=3577 execve guuid=130685fa-1800-0000-16a5-6c7fff0d0000 pid=3583 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=130685fa-1800-0000-16a5-6c7fff0d0000 pid=3583 execve guuid=ecccbdfa-1800-0000-16a5-6c7f010e0000 pid=3585 /home/sandbox/xnxnxnxnxnxnxnxns390xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=ecccbdfa-1800-0000-16a5-6c7f010e0000 pid=3585 execve guuid=1a6801fb-1800-0000-16a5-6c7f030e0000 pid=3587 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=1a6801fb-1800-0000-16a5-6c7f030e0000 pid=3587 execve guuid=7abb7bfb-1800-0000-16a5-6c7f050e0000 pid=3589 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=7abb7bfb-1800-0000-16a5-6c7f050e0000 pid=3589 execve guuid=4dd29efd-1800-0000-16a5-6c7f0c0e0000 pid=3596 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=4dd29efd-1800-0000-16a5-6c7f0c0e0000 pid=3596 execve guuid=d4967601-1900-0000-16a5-6c7f140e0000 pid=3604 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=d4967601-1900-0000-16a5-6c7f140e0000 pid=3604 execve guuid=1ff9be01-1900-0000-16a5-6c7f150e0000 pid=3605 /home/sandbox/xnxnxnxnxnxnxnxnsh2xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=1ff9be01-1900-0000-16a5-6c7f150e0000 pid=3605 execve guuid=983afb01-1900-0000-16a5-6c7f170e0000 pid=3607 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=983afb01-1900-0000-16a5-6c7f170e0000 pid=3607 execve guuid=3b334602-1900-0000-16a5-6c7f190e0000 pid=3609 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=3b334602-1900-0000-16a5-6c7f190e0000 pid=3609 execve guuid=23cc0105-1900-0000-16a5-6c7f210e0000 pid=3617 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=23cc0105-1900-0000-16a5-6c7f210e0000 pid=3617 execve guuid=5d4bbe09-1900-0000-16a5-6c7f2a0e0000 pid=3626 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=5d4bbe09-1900-0000-16a5-6c7f2a0e0000 pid=3626 execve guuid=6c9b2a0a-1900-0000-16a5-6c7f2b0e0000 pid=3627 /home/sandbox/xnxnxnxnxnxnxnxnsh4xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=6c9b2a0a-1900-0000-16a5-6c7f2b0e0000 pid=3627 execve guuid=61ab850a-1900-0000-16a5-6c7f2c0e0000 pid=3628 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=61ab850a-1900-0000-16a5-6c7f2c0e0000 pid=3628 execve guuid=7458e90a-1900-0000-16a5-6c7f2d0e0000 pid=3629 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=7458e90a-1900-0000-16a5-6c7f2d0e0000 pid=3629 execve guuid=2a3b530d-1900-0000-16a5-6c7f340e0000 pid=3636 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=2a3b530d-1900-0000-16a5-6c7f340e0000 pid=3636 execve guuid=89c80f13-1900-0000-16a5-6c7f460e0000 pid=3654 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=89c80f13-1900-0000-16a5-6c7f460e0000 pid=3654 execve guuid=a4a84a13-1900-0000-16a5-6c7f480e0000 pid=3656 /home/sandbox/xnxnxnxnxnxnxnxnsparcxnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=a4a84a13-1900-0000-16a5-6c7f480e0000 pid=3656 execve guuid=218c7d13-1900-0000-16a5-6c7f4a0e0000 pid=3658 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=218c7d13-1900-0000-16a5-6c7f4a0e0000 pid=3658 execve guuid=acfcc113-1900-0000-16a5-6c7f4c0e0000 pid=3660 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=acfcc113-1900-0000-16a5-6c7f4c0e0000 pid=3660 execve guuid=ad12e015-1900-0000-16a5-6c7f540e0000 pid=3668 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=ad12e015-1900-0000-16a5-6c7f540e0000 pid=3668 execve guuid=1cd5ee18-1900-0000-16a5-6c7f5f0e0000 pid=3679 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=1cd5ee18-1900-0000-16a5-6c7f5f0e0000 pid=3679 execve guuid=a8274319-1900-0000-16a5-6c7f610e0000 pid=3681 /home/sandbox/xnxnxnxnxnxnxnxnsparc64xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=a8274319-1900-0000-16a5-6c7f610e0000 pid=3681 execve guuid=8b537519-1900-0000-16a5-6c7f620e0000 pid=3682 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=8b537519-1900-0000-16a5-6c7f620e0000 pid=3682 execve guuid=da10b219-1900-0000-16a5-6c7f640e0000 pid=3684 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=da10b219-1900-0000-16a5-6c7f640e0000 pid=3684 execve guuid=adaf0e1c-1900-0000-16a5-6c7f6b0e0000 pid=3691 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=adaf0e1c-1900-0000-16a5-6c7f6b0e0000 pid=3691 execve guuid=5eacac20-1900-0000-16a5-6c7f780e0000 pid=3704 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=5eacac20-1900-0000-16a5-6c7f780e0000 pid=3704 execve guuid=75d3ee20-1900-0000-16a5-6c7f790e0000 pid=3705 /home/sandbox/xnxnxnxnxnxnxnxnx86_64xnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=75d3ee20-1900-0000-16a5-6c7f790e0000 pid=3705 execve guuid=48832721-1900-0000-16a5-6c7f7a0e0000 pid=3706 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=48832721-1900-0000-16a5-6c7f7a0e0000 pid=3706 execve guuid=ec726821-1900-0000-16a5-6c7f7c0e0000 pid=3708 /usr/bin/wget net send-data guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=ec726821-1900-0000-16a5-6c7f7c0e0000 pid=3708 execve guuid=6beeb423-1900-0000-16a5-6c7f830e0000 pid=3715 /usr/bin/curl net send-data write-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=6beeb423-1900-0000-16a5-6c7f830e0000 pid=3715 execve guuid=d8880127-1900-0000-16a5-6c7f8a0e0000 pid=3722 /usr/bin/chmod guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=d8880127-1900-0000-16a5-6c7f8a0e0000 pid=3722 execve guuid=e10c4827-1900-0000-16a5-6c7f8d0e0000 pid=3725 /home/sandbox/xnxnxnxnxnxnxnxnxtensaxnxn guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=e10c4827-1900-0000-16a5-6c7f8d0e0000 pid=3725 execve guuid=94e28227-1900-0000-16a5-6c7f8e0e0000 pid=3726 /usr/bin/rm delete-file guuid=e11b4d60-1800-0000-16a5-6c7f880c0000 pid=3208->guuid=94e28227-1900-0000-16a5-6c7f8e0e0000 pid=3726 execve c4b4a09a-0a01-5384-85cb-fca5ab28f183 196.251.80.30:80 guuid=1294a960-1800-0000-16a5-6c7f8a0c0000 pid=3210->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 155B guuid=5695c466-1800-0000-16a5-6c7f8b0c0000 pid=3211->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 104B guuid=779ab073-1800-0000-16a5-6c7f8f0c0000 pid=3215->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 153B guuid=b294f675-1800-0000-16a5-6c7f930c0000 pid=3219->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 102B guuid=e2fc2a7a-1800-0000-16a5-6c7f9d0c0000 pid=3229->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 151B guuid=e3566e7c-1800-0000-16a5-6c7fa30c0000 pid=3235->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 100B guuid=541e1d83-1800-0000-16a5-6c7fae0c0000 pid=3246->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 159B guuid=c2ffca85-1800-0000-16a5-6c7fb10c0000 pid=3249->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 108B guuid=9596af8a-1800-0000-16a5-6c7fbb0c0000 pid=3259->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 152B guuid=34bd158d-1800-0000-16a5-6c7fc20c0000 pid=3266->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 101B guuid=daf72292-1800-0000-16a5-6c7fcd0c0000 pid=3277->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 152B guuid=0e3b3e96-1800-0000-16a5-6c7fce0c0000 pid=3278->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 101B guuid=8b30459b-1800-0000-16a5-6c7fdf0c0000 pid=3295->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 154B guuid=74aede9d-1800-0000-16a5-6c7fe70c0000 pid=3303->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 103B guuid=41f05da2-1800-0000-16a5-6c7ff90c0000 pid=3321->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 152B guuid=a30829a6-1800-0000-16a5-6c7f010d0000 pid=3329->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 101B guuid=4330dcab-1800-0000-16a5-6c7f130d0000 pid=3347->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 159B guuid=935ceead-1800-0000-16a5-6c7f190d0000 pid=3353->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 108B guuid=2a3fc0b4-1800-0000-16a5-6c7f280d0000 pid=3368->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 152B guuid=1c7b27b7-1800-0000-16a5-6c7f290d0000 pid=3369->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 101B guuid=72ef40be-1800-0000-16a5-6c7f2d0d0000 pid=3373->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 158B guuid=2637e2c0-1800-0000-16a5-6c7f300d0000 pid=3376->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 107B guuid=cb6fdfc4-1800-0000-16a5-6c7f3e0d0000 pid=3390->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 152B guuid=911e5cc7-1800-0000-16a5-6c7f450d0000 pid=3397->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 101B guuid=3777bdcb-1800-0000-16a5-6c7f570d0000 pid=3415->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 154B guuid=6cca18ce-1800-0000-16a5-6c7f5e0d0000 pid=3422->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 103B guuid=d96ebad3-1800-0000-16a5-6c7f720d0000 pid=3442->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 152B guuid=382257d6-1800-0000-16a5-6c7f7b0d0000 pid=3451->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 101B guuid=e17e6fda-1800-0000-16a5-6c7f8d0d0000 pid=3469->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 155B guuid=119a91dc-1800-0000-16a5-6c7f960d0000 pid=3478->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 104B guuid=64986ce0-1800-0000-16a5-6c7fa70d0000 pid=3495->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 157B guuid=9f6cabe2-1800-0000-16a5-6c7faf0d0000 pid=3503->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 106B guuid=b80d02e7-1800-0000-16a5-6c7fc20d0000 pid=3522->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 155B guuid=467a62e9-1800-0000-16a5-6c7fcb0d0000 pid=3531->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 104B guuid=96f260ed-1800-0000-16a5-6c7fdb0d0000 pid=3547->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 155B guuid=2edb0bf0-1800-0000-16a5-6c7fe40d0000 pid=3556->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 104B guuid=d6abaef4-1800-0000-16a5-6c7ff80d0000 pid=3576->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 152B guuid=2f6f1cf7-1800-0000-16a5-6c7ff90d0000 pid=3577->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 101B guuid=7abb7bfb-1800-0000-16a5-6c7f050e0000 pid=3589->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 151B guuid=4dd29efd-1800-0000-16a5-6c7f0c0e0000 pid=3596->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 100B guuid=3b334602-1900-0000-16a5-6c7f190e0000 pid=3609->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 151B guuid=23cc0105-1900-0000-16a5-6c7f210e0000 pid=3617->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 100B guuid=7458e90a-1900-0000-16a5-6c7f2d0e0000 pid=3629->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 153B guuid=2a3b530d-1900-0000-16a5-6c7f340e0000 pid=3636->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 102B guuid=acfcc113-1900-0000-16a5-6c7f4c0e0000 pid=3660->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 155B guuid=ad12e015-1900-0000-16a5-6c7f540e0000 pid=3668->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 104B guuid=da10b219-1900-0000-16a5-6c7f640e0000 pid=3684->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 154B guuid=adaf0e1c-1900-0000-16a5-6c7f6b0e0000 pid=3691->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 103B guuid=ec726821-1900-0000-16a5-6c7f7c0e0000 pid=3708->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 154B guuid=6beeb423-1900-0000-16a5-6c7f830e0000 pid=3715->c4b4a09a-0a01-5384-85cb-fca5ab28f183 send: 103B
Threat name:
Linux.Downloader.Generic
Status:
Suspicious
First seen:
2025-10-23 17:44:34 UTC
File Type:
Text (Shell)
AV detection:
6 of 38 (15.79%)
Threat level:
  3/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Behaviour
Modifies registry class
Suspicious use of SetWindowsHookEx
Enumerates physical storage devices
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

sh 410132bb1b0a13ec961311328b5e16e6ab73914f59f043099a0ef2bb95e3eaef

(this sample)

  
Delivery method
Distributed via web download

Comments