MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 bfbf2fb15e14356aba85da20089d290aeed48996f43c1fb715377013bb7a0beb. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



CoinMiner


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: bfbf2fb15e14356aba85da20089d290aeed48996f43c1fb715377013bb7a0beb
SHA3-384 hash: 554cb4bfb7153a25d9367d4dd5eb4d0af6fcfa4b78bf270b65a4ee349aed0e43491f735186884acfc24564591840c5cf
SHA1 hash: c56c8ba414074328d220275d5664a5b5f373b96e
MD5 hash: 77fac1ae07d902c5e08f414e1bb2b863
humanhash: minnesota-kitten-finch-hydrogen
File name:run-CN.sh
Download: download sample
Signature CoinMiner
File size:7'580 bytes
First seen:2025-08-31 15:14:48 UTC
Last seen:Never
File type: sh
MIME type:text/x-shellscript
ssdeep 192:F8XyzHWZzzDN19xDkIjkm3qarbayHDPMeYqf4Mvlu:MzvLzgUNjna+u
TLSH T135F1C806F6D0DAB42988C57841891880694F922B6D492C08F8FDF569BF3476C71FDBEB
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://162.248.53.119:8000/mon.sh1e891ab1521b27923233e694f60fdbf0e1b840e657d8b1ffdefd8b5ef5e38964 CoinMinerCoinMiner
http://162.248.53.119:8000/yes.tar.gzn/an/aopendir

Intelligence


File Origin
# of uploads :
1
# of downloads :
41
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
File Type:
unix shell
First seen:
2025-08-31T13:10:00Z UTC
Last seen:
2025-08-31T13:10:00Z UTC
Hits:
~10
Status:
terminated
Behavior Graph:
%3 guuid=5966940d-1900-0000-7aeb-f4ae21130000 pid=4897 /usr/bin/sudo guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905 /tmp/sample.bin guuid=5966940d-1900-0000-7aeb-f4ae21130000 pid=4897->guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905 execve guuid=7292de0f-1900-0000-7aeb-f4ae2b130000 pid=4907 /usr/bin/systemctl guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=7292de0f-1900-0000-7aeb-f4ae2b130000 pid=4907 execve guuid=99a45511-1900-0000-7aeb-f4ae31130000 pid=4913 /usr/bin/bash guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=99a45511-1900-0000-7aeb-f4ae31130000 pid=4913 clone guuid=ea9ab73d-1900-0000-7aeb-f4ae96130000 pid=5014 /usr/bin/bash guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=ea9ab73d-1900-0000-7aeb-f4ae96130000 pid=5014 clone guuid=b3f2a63e-1900-0000-7aeb-f4ae9e130000 pid=5022 /usr/bin/pgrep guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=b3f2a63e-1900-0000-7aeb-f4ae9e130000 pid=5022 execve guuid=d8c0de45-1900-0000-7aeb-f4aeaf130000 pid=5039 /usr/bin/pgrep guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=d8c0de45-1900-0000-7aeb-f4aeaf130000 pid=5039 execve guuid=69b4b849-1900-0000-7aeb-f4aebc130000 pid=5052 /usr/bin/pgrep guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=69b4b849-1900-0000-7aeb-f4aebc130000 pid=5052 execve guuid=bed9c449-1900-0000-7aeb-f4aebd130000 pid=5053 /usr/bin/grep guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=bed9c449-1900-0000-7aeb-f4aebd130000 pid=5053 execve guuid=eb85d349-1900-0000-7aeb-f4aebe130000 pid=5054 /usr/bin/xargs guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=eb85d349-1900-0000-7aeb-f4aebe130000 pid=5054 execve guuid=51dc9c50-1900-0000-7aeb-f4aed8130000 pid=5080 /usr/bin/id guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=51dc9c50-1900-0000-7aeb-f4aed8130000 pid=5080 execve guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094 /usr/bin/apt-get delete-file write-file guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094 execve guuid=5b247ab6-1b00-0000-7aeb-f4aef8140000 pid=5368 /usr/bin/apt-get guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=5b247ab6-1b00-0000-7aeb-f4aef8140000 pid=5368 execve guuid=b9daecb8-1b00-0000-7aeb-f4aefa140000 pid=5370 /usr/bin/mkdir guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=b9daecb8-1b00-0000-7aeb-f4aefa140000 pid=5370 execve guuid=c974beb9-1b00-0000-7aeb-f4aefb140000 pid=5371 /usr/bin/wget net send-data write-file guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=c974beb9-1b00-0000-7aeb-f4aefb140000 pid=5371 execve guuid=73fdea81-1e00-0000-7aeb-f4ae0f150000 pid=5391 /usr/bin/mv guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=73fdea81-1e00-0000-7aeb-f4ae0f150000 pid=5391 execve guuid=2f86c782-1e00-0000-7aeb-f4ae10150000 pid=5392 /usr/bin/rm guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=2f86c782-1e00-0000-7aeb-f4ae10150000 pid=5392 execve guuid=a61b5883-1e00-0000-7aeb-f4ae11150000 pid=5393 /usr/bin/chmod guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=a61b5883-1e00-0000-7aeb-f4ae11150000 pid=5393 execve guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394 /usr/lib/dev/systemdev/dns-filter mprotect-exec net send-data guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394 execve guuid=fba1f683-1e00-0000-7aeb-f4ae13150000 pid=5395 /usr/bin/sleep guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=fba1f683-1e00-0000-7aeb-f4ae13150000 pid=5395 execve guuid=28a3b1a2-1e00-0000-7aeb-f4ae19150000 pid=5401 /usr/bin/ps guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=28a3b1a2-1e00-0000-7aeb-f4ae19150000 pid=5401 execve guuid=85dad4a6-1e00-0000-7aeb-f4ae1a150000 pid=5402 /usr/bin/sleep guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=85dad4a6-1e00-0000-7aeb-f4ae1a150000 pid=5402 execve guuid=c5758eb3-1f00-0000-7aeb-f4ae4b150000 pid=5451 /usr/bin/ps guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=c5758eb3-1f00-0000-7aeb-f4ae4b150000 pid=5451 execve guuid=a9b4d1b6-1f00-0000-7aeb-f4ae4c150000 pid=5452 /usr/bin/rm guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=a9b4d1b6-1f00-0000-7aeb-f4ae4c150000 pid=5452 execve guuid=7ca048b7-1f00-0000-7aeb-f4ae4d150000 pid=5453 /usr/bin/rm guuid=11c24f0f-1900-0000-7aeb-f4ae29130000 pid=4905->guuid=7ca048b7-1f00-0000-7aeb-f4ae4d150000 pid=5453 execve guuid=90946111-1900-0000-7aeb-f4ae32130000 pid=4914 /usr/bin/wget dns net send-data guuid=99a45511-1900-0000-7aeb-f4ae31130000 pid=4913->guuid=90946111-1900-0000-7aeb-f4ae32130000 pid=4914 execve 4f6baed0-9587-596c-82b3-fd721afe4cc1 10.0.2.3:53 guuid=90946111-1900-0000-7aeb-f4ae32130000 pid=4914->4f6baed0-9587-596c-82b3-fd721afe4cc1 send: 72B 0690ccd5-4816-5f11-94dc-7c585f38cdea ipv4.icanhazip.com:0 guuid=90946111-1900-0000-7aeb-f4ae32130000 pid=4914->0690ccd5-4816-5f11-94dc-7c585f38cdea con d0ecfe49-aa79-583f-85c6-85ac97075256 ipv4.icanhazip.com:80 guuid=90946111-1900-0000-7aeb-f4ae32130000 pid=4914->d0ecfe49-aa79-583f-85c6-85ac97075256 send: 133B guuid=0b5eca3d-1900-0000-7aeb-f4ae98130000 pid=5016 /usr/bin/bash guuid=ea9ab73d-1900-0000-7aeb-f4ae96130000 pid=5014->guuid=0b5eca3d-1900-0000-7aeb-f4ae98130000 pid=5016 clone guuid=3475d43d-1900-0000-7aeb-f4ae9b130000 pid=5019 /usr/bin/sed guuid=ea9ab73d-1900-0000-7aeb-f4ae96130000 pid=5014->guuid=3475d43d-1900-0000-7aeb-f4ae9b130000 pid=5019 execve guuid=e353db3d-1900-0000-7aeb-f4ae9c130000 pid=5020 /usr/bin/cut guuid=ea9ab73d-1900-0000-7aeb-f4ae96130000 pid=5014->guuid=e353db3d-1900-0000-7aeb-f4ae9c130000 pid=5020 execve guuid=33590c57-1900-0000-7aeb-f4aeeb130000 pid=5099 /usr/bin/dpkg guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=33590c57-1900-0000-7aeb-f4aeeb130000 pid=5099 execve guuid=355b5e58-1900-0000-7aeb-f4aeef130000 pid=5103 /usr/lib/apt/methods/mirror guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=355b5e58-1900-0000-7aeb-f4aeef130000 pid=5103 execve guuid=559ea759-1900-0000-7aeb-f4aef1130000 pid=5105 /usr/lib/apt/methods/mirror guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=559ea759-1900-0000-7aeb-f4aef1130000 pid=5105 execve guuid=491f345b-1900-0000-7aeb-f4aef6130000 pid=5110 /usr/lib/apt/methods/file guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=491f345b-1900-0000-7aeb-f4aef6130000 pid=5110 execve guuid=1657695c-1900-0000-7aeb-f4aefa130000 pid=5114 /usr/lib/apt/methods/file delete-file guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=1657695c-1900-0000-7aeb-f4aefa130000 pid=5114 execve guuid=e36ce15d-1900-0000-7aeb-f4aefe130000 pid=5118 /usr/lib/apt/methods/http guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=e36ce15d-1900-0000-7aeb-f4aefe130000 pid=5118 execve guuid=f9640761-1900-0000-7aeb-f4ae05140000 pid=5125 /usr/lib/apt/methods/http dns net send-data write-file guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=f9640761-1900-0000-7aeb-f4ae05140000 pid=5125 execve guuid=11e411a9-1a00-0000-7aeb-f4ae7b140000 pid=5243 /usr/lib/apt/methods/gpgv guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=11e411a9-1a00-0000-7aeb-f4ae7b140000 pid=5243 execve guuid=c28a56ab-1a00-0000-7aeb-f4ae7c140000 pid=5244 /usr/lib/apt/methods/gpgv guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=c28a56ab-1a00-0000-7aeb-f4ae7c140000 pid=5244 execve guuid=394face1-1a00-0000-7aeb-f4aeb6140000 pid=5302 /usr/lib/apt/methods/store guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=394face1-1a00-0000-7aeb-f4aeb6140000 pid=5302 execve guuid=9b12fbe2-1a00-0000-7aeb-f4aeb8140000 pid=5304 /usr/lib/apt/methods/store write-file guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=9b12fbe2-1a00-0000-7aeb-f4aeb8140000 pid=5304 execve guuid=fb823d16-1b00-0000-7aeb-f4aeda140000 pid=5338 /usr/lib/apt/methods/rred guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=fb823d16-1b00-0000-7aeb-f4aeda140000 pid=5338 execve guuid=6de2a819-1b00-0000-7aeb-f4aedc140000 pid=5340 /usr/lib/apt/methods/rred write-file guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=6de2a819-1b00-0000-7aeb-f4aedc140000 pid=5340 execve guuid=7e07724b-1b00-0000-7aeb-f4aee9140000 pid=5353 /usr/bin/dpkg guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=7e07724b-1b00-0000-7aeb-f4aee9140000 pid=5353 execve guuid=4e416eb4-1b00-0000-7aeb-f4aef7140000 pid=5367 /usr/bin/dpkg guuid=7e9a0c55-1900-0000-7aeb-f4aee6130000 pid=5094->guuid=4e416eb4-1b00-0000-7aeb-f4aef7140000 pid=5367 execve guuid=f9640761-1900-0000-7aeb-f4ae05140000 pid=5125->4f6baed0-9587-596c-82b3-fd721afe4cc1 send: 200B 869ebe88-8c1e-5fbb-adb0-cfe48d8d7faf debian.map.fastly.net:443 guuid=f9640761-1900-0000-7aeb-f4ae05140000 pid=5125->869ebe88-8c1e-5fbb-adb0-cfe48d8d7faf send: 5645B guuid=455ef1ac-1a00-0000-7aeb-f4ae7d140000 pid=5245 /usr/lib/apt/methods/gpgv delete-file write-file guuid=c28a56ab-1a00-0000-7aeb-f4ae7c140000 pid=5244->guuid=455ef1ac-1a00-0000-7aeb-f4ae7d140000 pid=5245 clone guuid=f4290cc6-1a00-0000-7aeb-f4ae97140000 pid=5271 /usr/lib/apt/methods/gpgv delete-file write-file guuid=c28a56ab-1a00-0000-7aeb-f4ae7c140000 pid=5244->guuid=f4290cc6-1a00-0000-7aeb-f4ae97140000 pid=5271 clone guuid=ea3e1cdd-1a00-0000-7aeb-f4aeb1140000 pid=5297 /usr/lib/apt/methods/gpgv delete-file write-file guuid=c28a56ab-1a00-0000-7aeb-f4ae7c140000 pid=5244->guuid=ea3e1cdd-1a00-0000-7aeb-f4aeb1140000 pid=5297 clone guuid=725d02f9-1a00-0000-7aeb-f4aecd140000 pid=5325 /usr/lib/apt/methods/gpgv delete-file write-file guuid=c28a56ab-1a00-0000-7aeb-f4ae7c140000 pid=5244->guuid=725d02f9-1a00-0000-7aeb-f4aecd140000 pid=5325 clone guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246 /usr/bin/apt-key write-file guuid=455ef1ac-1a00-0000-7aeb-f4ae7d140000 pid=5245->guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246 execve guuid=933ee2b0-1a00-0000-7aeb-f4ae7f140000 pid=5247 /usr/bin/dash guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=933ee2b0-1a00-0000-7aeb-f4ae7f140000 pid=5247 clone guuid=305153b1-1a00-0000-7aeb-f4ae80140000 pid=5248 /usr/bin/apt-config guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=305153b1-1a00-0000-7aeb-f4ae80140000 pid=5248 execve guuid=4ffee0b5-1a00-0000-7aeb-f4ae82140000 pid=5250 /usr/bin/apt-config guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=4ffee0b5-1a00-0000-7aeb-f4ae82140000 pid=5250 execve guuid=7f36c5b8-1a00-0000-7aeb-f4ae84140000 pid=5252 /usr/bin/apt-config guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=7f36c5b8-1a00-0000-7aeb-f4ae84140000 pid=5252 execve guuid=97fec6ba-1a00-0000-7aeb-f4ae86140000 pid=5254 /usr/bin/apt-config guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=97fec6ba-1a00-0000-7aeb-f4ae86140000 pid=5254 execve guuid=e6329dbc-1a00-0000-7aeb-f4ae88140000 pid=5256 /usr/bin/dash guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=e6329dbc-1a00-0000-7aeb-f4ae88140000 pid=5256 clone guuid=1cbbddbc-1a00-0000-7aeb-f4ae89140000 pid=5257 /usr/bin/apt-config guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=1cbbddbc-1a00-0000-7aeb-f4ae89140000 pid=5257 execve guuid=884913bf-1a00-0000-7aeb-f4ae8b140000 pid=5259 /usr/bin/mktemp guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=884913bf-1a00-0000-7aeb-f4ae8b140000 pid=5259 execve guuid=cd9d6ebf-1a00-0000-7aeb-f4ae8c140000 pid=5260 /usr/bin/chmod guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=cd9d6ebf-1a00-0000-7aeb-f4ae8c140000 pid=5260 execve guuid=fcf7a6bf-1a00-0000-7aeb-f4ae8d140000 pid=5261 /usr/bin/dash guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=fcf7a6bf-1a00-0000-7aeb-f4ae8d140000 pid=5261 clone guuid=30bcb8bf-1a00-0000-7aeb-f4ae8e140000 pid=5262 /usr/bin/dash guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=30bcb8bf-1a00-0000-7aeb-f4ae8e140000 pid=5262 clone guuid=980139c0-1a00-0000-7aeb-f4ae91140000 pid=5265 /usr/bin/dash guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=980139c0-1a00-0000-7aeb-f4ae91140000 pid=5265 clone guuid=2650bfc0-1a00-0000-7aeb-f4ae94140000 pid=5268 /usr/bin/dash guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=2650bfc0-1a00-0000-7aeb-f4ae94140000 pid=5268 clone guuid=5022d2c0-1a00-0000-7aeb-f4ae95140000 pid=5269 /usr/bin/gpgv guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=5022d2c0-1a00-0000-7aeb-f4ae95140000 pid=5269 execve guuid=6eb84bc3-1a00-0000-7aeb-f4ae96140000 pid=5270 /usr/bin/rm delete-file guuid=82dc38b0-1a00-0000-7aeb-f4ae7e140000 pid=5246->guuid=6eb84bc3-1a00-0000-7aeb-f4ae96140000 pid=5270 execve guuid=a85ed6b4-1a00-0000-7aeb-f4ae81140000 pid=5249 /usr/bin/dpkg guuid=305153b1-1a00-0000-7aeb-f4ae80140000 pid=5248->guuid=a85ed6b4-1a00-0000-7aeb-f4ae81140000 pid=5249 execve guuid=ee3253b7-1a00-0000-7aeb-f4ae83140000 pid=5251 /usr/bin/dpkg guuid=4ffee0b5-1a00-0000-7aeb-f4ae82140000 pid=5250->guuid=ee3253b7-1a00-0000-7aeb-f4ae83140000 pid=5251 execve guuid=195039ba-1a00-0000-7aeb-f4ae85140000 pid=5253 /usr/bin/dpkg guuid=7f36c5b8-1a00-0000-7aeb-f4ae84140000 pid=5252->guuid=195039ba-1a00-0000-7aeb-f4ae85140000 pid=5253 execve guuid=84ac16bc-1a00-0000-7aeb-f4ae87140000 pid=5255 /usr/bin/dpkg guuid=97fec6ba-1a00-0000-7aeb-f4ae86140000 pid=5254->guuid=84ac16bc-1a00-0000-7aeb-f4ae87140000 pid=5255 execve guuid=a50448be-1a00-0000-7aeb-f4ae8a140000 pid=5258 /usr/bin/dpkg guuid=1cbbddbc-1a00-0000-7aeb-f4ae89140000 pid=5257->guuid=a50448be-1a00-0000-7aeb-f4ae8a140000 pid=5258 execve guuid=1374c0bf-1a00-0000-7aeb-f4ae8f140000 pid=5263 /usr/bin/dash guuid=30bcb8bf-1a00-0000-7aeb-f4ae8e140000 pid=5262->guuid=1374c0bf-1a00-0000-7aeb-f4ae8f140000 pid=5263 clone guuid=65bfc7bf-1a00-0000-7aeb-f4ae90140000 pid=5264 /usr/bin/sed guuid=30bcb8bf-1a00-0000-7aeb-f4ae8e140000 pid=5262->guuid=65bfc7bf-1a00-0000-7aeb-f4ae90140000 pid=5264 execve guuid=8c7840c0-1a00-0000-7aeb-f4ae92140000 pid=5266 /usr/bin/dash guuid=980139c0-1a00-0000-7aeb-f4ae91140000 pid=5265->guuid=8c7840c0-1a00-0000-7aeb-f4ae92140000 pid=5266 clone guuid=fb1546c0-1a00-0000-7aeb-f4ae93140000 pid=5267 /usr/bin/sed guuid=980139c0-1a00-0000-7aeb-f4ae91140000 pid=5265->guuid=fb1546c0-1a00-0000-7aeb-f4ae93140000 pid=5267 execve guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272 /usr/bin/apt-key write-file guuid=f4290cc6-1a00-0000-7aeb-f4ae97140000 pid=5271->guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272 execve guuid=48d3acc7-1a00-0000-7aeb-f4ae99140000 pid=5273 /usr/bin/dash guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=48d3acc7-1a00-0000-7aeb-f4ae99140000 pid=5273 clone guuid=30b7c2c7-1a00-0000-7aeb-f4ae9a140000 pid=5274 /usr/bin/apt-config guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=30b7c2c7-1a00-0000-7aeb-f4ae9a140000 pid=5274 execve guuid=dde7decb-1a00-0000-7aeb-f4ae9c140000 pid=5276 /usr/bin/apt-config guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=dde7decb-1a00-0000-7aeb-f4ae9c140000 pid=5276 execve guuid=7216a9cd-1a00-0000-7aeb-f4ae9e140000 pid=5278 /usr/bin/apt-config guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=7216a9cd-1a00-0000-7aeb-f4ae9e140000 pid=5278 execve guuid=6b0d40d1-1a00-0000-7aeb-f4aea0140000 pid=5280 /usr/bin/apt-config guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=6b0d40d1-1a00-0000-7aeb-f4aea0140000 pid=5280 execve guuid=365b82d3-1a00-0000-7aeb-f4aea2140000 pid=5282 /usr/bin/dash guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=365b82d3-1a00-0000-7aeb-f4aea2140000 pid=5282 clone guuid=d547add3-1a00-0000-7aeb-f4aea3140000 pid=5283 /usr/bin/apt-config guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=d547add3-1a00-0000-7aeb-f4aea3140000 pid=5283 execve guuid=49d492d5-1a00-0000-7aeb-f4aea5140000 pid=5285 /usr/bin/mktemp guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=49d492d5-1a00-0000-7aeb-f4aea5140000 pid=5285 execve guuid=4eef19d6-1a00-0000-7aeb-f4aea6140000 pid=5286 /usr/bin/chmod guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=4eef19d6-1a00-0000-7aeb-f4aea6140000 pid=5286 execve guuid=44fe5ad6-1a00-0000-7aeb-f4aea7140000 pid=5287 /usr/bin/dash guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=44fe5ad6-1a00-0000-7aeb-f4aea7140000 pid=5287 clone guuid=de2575d6-1a00-0000-7aeb-f4aea8140000 pid=5288 /usr/bin/dash guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=de2575d6-1a00-0000-7aeb-f4aea8140000 pid=5288 clone guuid=3ff207d7-1a00-0000-7aeb-f4aeab140000 pid=5291 /usr/bin/dash guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=3ff207d7-1a00-0000-7aeb-f4aeab140000 pid=5291 clone guuid=675affd8-1a00-0000-7aeb-f4aeae140000 pid=5294 /usr/bin/dash guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=675affd8-1a00-0000-7aeb-f4aeae140000 pid=5294 clone guuid=8df10fd9-1a00-0000-7aeb-f4aeaf140000 pid=5295 /usr/bin/gpgv guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=8df10fd9-1a00-0000-7aeb-f4aeaf140000 pid=5295 execve guuid=833e2fdc-1a00-0000-7aeb-f4aeb0140000 pid=5296 /usr/bin/rm delete-file guuid=d9d927c7-1a00-0000-7aeb-f4ae98140000 pid=5272->guuid=833e2fdc-1a00-0000-7aeb-f4aeb0140000 pid=5296 execve guuid=0b14ecca-1a00-0000-7aeb-f4ae9b140000 pid=5275 /usr/bin/dpkg guuid=30b7c2c7-1a00-0000-7aeb-f4ae9a140000 pid=5274->guuid=0b14ecca-1a00-0000-7aeb-f4ae9b140000 pid=5275 execve guuid=6edb20cd-1a00-0000-7aeb-f4ae9d140000 pid=5277 /usr/bin/dpkg guuid=dde7decb-1a00-0000-7aeb-f4ae9c140000 pid=5276->guuid=6edb20cd-1a00-0000-7aeb-f4ae9d140000 pid=5277 execve guuid=a7a578d0-1a00-0000-7aeb-f4ae9f140000 pid=5279 /usr/bin/dpkg guuid=7216a9cd-1a00-0000-7aeb-f4ae9e140000 pid=5278->guuid=a7a578d0-1a00-0000-7aeb-f4ae9f140000 pid=5279 execve guuid=d7c692d2-1a00-0000-7aeb-f4aea1140000 pid=5281 /usr/bin/dpkg guuid=6b0d40d1-1a00-0000-7aeb-f4aea0140000 pid=5280->guuid=d7c692d2-1a00-0000-7aeb-f4aea1140000 pid=5281 execve guuid=0f2fe3d4-1a00-0000-7aeb-f4aea4140000 pid=5284 /usr/bin/dpkg guuid=d547add3-1a00-0000-7aeb-f4aea3140000 pid=5283->guuid=0f2fe3d4-1a00-0000-7aeb-f4aea4140000 pid=5284 execve guuid=59ff85d6-1a00-0000-7aeb-f4aea9140000 pid=5289 /usr/bin/dash guuid=de2575d6-1a00-0000-7aeb-f4aea8140000 pid=5288->guuid=59ff85d6-1a00-0000-7aeb-f4aea9140000 pid=5289 clone guuid=708c8dd6-1a00-0000-7aeb-f4aeaa140000 pid=5290 /usr/bin/sed guuid=de2575d6-1a00-0000-7aeb-f4aea8140000 pid=5288->guuid=708c8dd6-1a00-0000-7aeb-f4aeaa140000 pid=5290 execve guuid=f76512d7-1a00-0000-7aeb-f4aeac140000 pid=5292 /usr/bin/dash guuid=3ff207d7-1a00-0000-7aeb-f4aeab140000 pid=5291->guuid=f76512d7-1a00-0000-7aeb-f4aeac140000 pid=5292 clone guuid=901d29d7-1a00-0000-7aeb-f4aead140000 pid=5293 /usr/bin/sed guuid=3ff207d7-1a00-0000-7aeb-f4aeab140000 pid=5291->guuid=901d29d7-1a00-0000-7aeb-f4aead140000 pid=5293 execve guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298 /usr/bin/apt-key write-file guuid=ea3e1cdd-1a00-0000-7aeb-f4aeb1140000 pid=5297->guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298 execve guuid=c32fd6de-1a00-0000-7aeb-f4aeb3140000 pid=5299 /usr/bin/dash guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=c32fd6de-1a00-0000-7aeb-f4aeb3140000 pid=5299 clone guuid=7179eade-1a00-0000-7aeb-f4aeb4140000 pid=5300 /usr/bin/apt-config guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=7179eade-1a00-0000-7aeb-f4aeb4140000 pid=5300 execve guuid=2942fde1-1a00-0000-7aeb-f4aeb7140000 pid=5303 /usr/bin/apt-config guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=2942fde1-1a00-0000-7aeb-f4aeb7140000 pid=5303 execve guuid=b5df6ee5-1a00-0000-7aeb-f4aeba140000 pid=5306 /usr/bin/apt-config guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=b5df6ee5-1a00-0000-7aeb-f4aeba140000 pid=5306 execve guuid=233968ec-1a00-0000-7aeb-f4aebc140000 pid=5308 /usr/bin/apt-config guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=233968ec-1a00-0000-7aeb-f4aebc140000 pid=5308 execve guuid=368d63f2-1a00-0000-7aeb-f4aebe140000 pid=5310 /usr/bin/dash guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=368d63f2-1a00-0000-7aeb-f4aebe140000 pid=5310 clone guuid=c3f48ff2-1a00-0000-7aeb-f4aebf140000 pid=5311 /usr/bin/apt-config guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=c3f48ff2-1a00-0000-7aeb-f4aebf140000 pid=5311 execve guuid=ef2b59f4-1a00-0000-7aeb-f4aec1140000 pid=5313 /usr/bin/mktemp guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=ef2b59f4-1a00-0000-7aeb-f4aec1140000 pid=5313 execve guuid=c98f97f4-1a00-0000-7aeb-f4aec2140000 pid=5314 /usr/bin/chmod guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=c98f97f4-1a00-0000-7aeb-f4aec2140000 pid=5314 execve guuid=c1a3cff4-1a00-0000-7aeb-f4aec3140000 pid=5315 /usr/bin/dash guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=c1a3cff4-1a00-0000-7aeb-f4aec3140000 pid=5315 clone guuid=9853e1f4-1a00-0000-7aeb-f4aec4140000 pid=5316 /usr/bin/dash guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=9853e1f4-1a00-0000-7aeb-f4aec4140000 pid=5316 clone guuid=11915ff5-1a00-0000-7aeb-f4aec7140000 pid=5319 /usr/bin/dash guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=11915ff5-1a00-0000-7aeb-f4aec7140000 pid=5319 clone guuid=f24419f6-1a00-0000-7aeb-f4aeca140000 pid=5322 /usr/bin/dash guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=f24419f6-1a00-0000-7aeb-f4aeca140000 pid=5322 clone guuid=755e2af6-1a00-0000-7aeb-f4aecb140000 pid=5323 /usr/bin/gpgv guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=755e2af6-1a00-0000-7aeb-f4aecb140000 pid=5323 execve guuid=e79002f8-1a00-0000-7aeb-f4aecc140000 pid=5324 /usr/bin/rm delete-file guuid=d5d853de-1a00-0000-7aeb-f4aeb2140000 pid=5298->guuid=e79002f8-1a00-0000-7aeb-f4aecc140000 pid=5324 execve guuid=77dc4be1-1a00-0000-7aeb-f4aeb5140000 pid=5301 /usr/bin/dpkg guuid=7179eade-1a00-0000-7aeb-f4aeb4140000 pid=5300->guuid=77dc4be1-1a00-0000-7aeb-f4aeb5140000 pid=5301 execve guuid=c7f68fe3-1a00-0000-7aeb-f4aeb9140000 pid=5305 /usr/bin/dpkg guuid=2942fde1-1a00-0000-7aeb-f4aeb7140000 pid=5303->guuid=c7f68fe3-1a00-0000-7aeb-f4aeb9140000 pid=5305 execve guuid=4c7b38e7-1a00-0000-7aeb-f4aebb140000 pid=5307 /usr/bin/dpkg guuid=b5df6ee5-1a00-0000-7aeb-f4aeba140000 pid=5306->guuid=4c7b38e7-1a00-0000-7aeb-f4aebb140000 pid=5307 execve guuid=43e1b8ed-1a00-0000-7aeb-f4aebd140000 pid=5309 /usr/bin/dpkg guuid=233968ec-1a00-0000-7aeb-f4aebc140000 pid=5308->guuid=43e1b8ed-1a00-0000-7aeb-f4aebd140000 pid=5309 execve guuid=5a8bdcf3-1a00-0000-7aeb-f4aec0140000 pid=5312 /usr/bin/dpkg guuid=c3f48ff2-1a00-0000-7aeb-f4aebf140000 pid=5311->guuid=5a8bdcf3-1a00-0000-7aeb-f4aec0140000 pid=5312 execve guuid=b14feaf4-1a00-0000-7aeb-f4aec5140000 pid=5317 /usr/bin/dash guuid=9853e1f4-1a00-0000-7aeb-f4aec4140000 pid=5316->guuid=b14feaf4-1a00-0000-7aeb-f4aec5140000 pid=5317 clone guuid=dde7eff4-1a00-0000-7aeb-f4aec6140000 pid=5318 /usr/bin/sed guuid=9853e1f4-1a00-0000-7aeb-f4aec4140000 pid=5316->guuid=dde7eff4-1a00-0000-7aeb-f4aec6140000 pid=5318 execve guuid=f54b6af5-1a00-0000-7aeb-f4aec8140000 pid=5320 /usr/bin/dash guuid=11915ff5-1a00-0000-7aeb-f4aec7140000 pid=5319->guuid=f54b6af5-1a00-0000-7aeb-f4aec8140000 pid=5320 clone guuid=9c4973f5-1a00-0000-7aeb-f4aec9140000 pid=5321 /usr/bin/sed guuid=11915ff5-1a00-0000-7aeb-f4aec7140000 pid=5319->guuid=9c4973f5-1a00-0000-7aeb-f4aec9140000 pid=5321 execve guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326 /usr/bin/apt-key write-file guuid=725d02f9-1a00-0000-7aeb-f4aecd140000 pid=5325->guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326 execve guuid=526f3afa-1a00-0000-7aeb-f4aecf140000 pid=5327 /usr/bin/dash guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=526f3afa-1a00-0000-7aeb-f4aecf140000 pid=5327 clone guuid=c5b659fa-1a00-0000-7aeb-f4aed0140000 pid=5328 /usr/bin/apt-config guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=c5b659fa-1a00-0000-7aeb-f4aed0140000 pid=5328 execve guuid=902ee0ff-1a00-0000-7aeb-f4aed2140000 pid=5330 /usr/bin/apt-config guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=902ee0ff-1a00-0000-7aeb-f4aed2140000 pid=5330 execve guuid=f86dd201-1b00-0000-7aeb-f4aed4140000 pid=5332 /usr/bin/apt-config guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=f86dd201-1b00-0000-7aeb-f4aed4140000 pid=5332 execve guuid=e4fbaf04-1b00-0000-7aeb-f4aed6140000 pid=5334 /usr/bin/apt-config guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=e4fbaf04-1b00-0000-7aeb-f4aed6140000 pid=5334 execve guuid=9e1e0914-1b00-0000-7aeb-f4aed8140000 pid=5336 /usr/bin/dash guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=9e1e0914-1b00-0000-7aeb-f4aed8140000 pid=5336 clone guuid=01ea4d14-1b00-0000-7aeb-f4aed9140000 pid=5337 /usr/bin/apt-config guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=01ea4d14-1b00-0000-7aeb-f4aed9140000 pid=5337 execve guuid=d4fc6f23-1b00-0000-7aeb-f4aedd140000 pid=5341 /usr/bin/mktemp guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=d4fc6f23-1b00-0000-7aeb-f4aedd140000 pid=5341 execve guuid=3c400d24-1b00-0000-7aeb-f4aede140000 pid=5342 /usr/bin/chmod guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=3c400d24-1b00-0000-7aeb-f4aede140000 pid=5342 execve guuid=30b8f124-1b00-0000-7aeb-f4aedf140000 pid=5343 /usr/bin/dash guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=30b8f124-1b00-0000-7aeb-f4aedf140000 pid=5343 clone guuid=2629c125-1b00-0000-7aeb-f4aee0140000 pid=5344 /usr/bin/dash guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=2629c125-1b00-0000-7aeb-f4aee0140000 pid=5344 clone guuid=b10cc82b-1b00-0000-7aeb-f4aee3140000 pid=5347 /usr/bin/dash guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=b10cc82b-1b00-0000-7aeb-f4aee3140000 pid=5347 clone guuid=e04f422d-1b00-0000-7aeb-f4aee6140000 pid=5350 /usr/bin/dash guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=e04f422d-1b00-0000-7aeb-f4aee6140000 pid=5350 clone guuid=c2225c2d-1b00-0000-7aeb-f4aee7140000 pid=5351 /usr/bin/gpgv guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=c2225c2d-1b00-0000-7aeb-f4aee7140000 pid=5351 execve guuid=86772730-1b00-0000-7aeb-f4aee8140000 pid=5352 /usr/bin/rm delete-file guuid=17a0f7f9-1a00-0000-7aeb-f4aece140000 pid=5326->guuid=86772730-1b00-0000-7aeb-f4aee8140000 pid=5352 execve guuid=c842c8fe-1a00-0000-7aeb-f4aed1140000 pid=5329 /usr/bin/dpkg guuid=c5b659fa-1a00-0000-7aeb-f4aed0140000 pid=5328->guuid=c842c8fe-1a00-0000-7aeb-f4aed1140000 pid=5329 execve guuid=d74a3301-1b00-0000-7aeb-f4aed3140000 pid=5331 /usr/bin/dpkg guuid=902ee0ff-1a00-0000-7aeb-f4aed2140000 pid=5330->guuid=d74a3301-1b00-0000-7aeb-f4aed3140000 pid=5331 execve guuid=1912a103-1b00-0000-7aeb-f4aed5140000 pid=5333 /usr/bin/dpkg guuid=f86dd201-1b00-0000-7aeb-f4aed4140000 pid=5332->guuid=1912a103-1b00-0000-7aeb-f4aed5140000 pid=5333 execve guuid=ee80e806-1b00-0000-7aeb-f4aed7140000 pid=5335 /usr/bin/dpkg guuid=e4fbaf04-1b00-0000-7aeb-f4aed6140000 pid=5334->guuid=ee80e806-1b00-0000-7aeb-f4aed7140000 pid=5335 execve guuid=55be9e17-1b00-0000-7aeb-f4aedb140000 pid=5339 /usr/bin/dpkg guuid=01ea4d14-1b00-0000-7aeb-f4aed9140000 pid=5337->guuid=55be9e17-1b00-0000-7aeb-f4aedb140000 pid=5339 execve guuid=5163bd29-1b00-0000-7aeb-f4aee1140000 pid=5345 /usr/bin/dash guuid=2629c125-1b00-0000-7aeb-f4aee0140000 pid=5344->guuid=5163bd29-1b00-0000-7aeb-f4aee1140000 pid=5345 clone guuid=c51ec729-1b00-0000-7aeb-f4aee2140000 pid=5346 /usr/bin/sed guuid=2629c125-1b00-0000-7aeb-f4aee0140000 pid=5344->guuid=c51ec729-1b00-0000-7aeb-f4aee2140000 pid=5346 execve guuid=625de62b-1b00-0000-7aeb-f4aee4140000 pid=5348 /usr/bin/dash guuid=b10cc82b-1b00-0000-7aeb-f4aee3140000 pid=5347->guuid=625de62b-1b00-0000-7aeb-f4aee4140000 pid=5348 clone guuid=dbe8ed2b-1b00-0000-7aeb-f4aee5140000 pid=5349 /usr/bin/sed guuid=b10cc82b-1b00-0000-7aeb-f4aee3140000 pid=5347->guuid=dbe8ed2b-1b00-0000-7aeb-f4aee5140000 pid=5349 execve guuid=3c8040b8-1b00-0000-7aeb-f4aef9140000 pid=5369 /usr/bin/dpkg guuid=5b247ab6-1b00-0000-7aeb-f4aef8140000 pid=5368->guuid=3c8040b8-1b00-0000-7aeb-f4aef9140000 pid=5369 execve bfaddaec-33ae-51f1-b323-490dcecf1eb1 8.153.86.153:8888 guuid=c974beb9-1b00-0000-7aeb-f4aefb140000 pid=5371->bfaddaec-33ae-51f1-b323-490dcecf1eb1 send: 142B 2f50a59f-2358-5b5c-aa0a-c8fc64202aee hosts-to-ignore.ignorelist.com:1443 guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->2f50a59f-2358-5b5c-aa0a-c8fc64202aee send: 859B guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5396 /usr/lib/dev/systemdev/dns-filter write-file guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5396 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5397 /usr/lib/dev/systemdev/dns-filter dns net send-data guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5397 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5398 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5398 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5399 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5399 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5400 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5400 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5403 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5403 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5404 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5404 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5405 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5405 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5406 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5406 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5407 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5407 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5408 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5408 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5409 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5409 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5410 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5410 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5411 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5411 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5412 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5412 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5413 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5413 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5414 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5414 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5415 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5415 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5416 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5416 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5417 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5417 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5418 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5418 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5419 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5419 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5420 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5420 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5421 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5421 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5422 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5422 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5423 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5423 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5424 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5424 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5425 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5425 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5426 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5426 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5427 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5427 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5428 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5428 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5429 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5429 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5430 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5430 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5431 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5431 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5432 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5432 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5433 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5433 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5434 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5434 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5435 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5435 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5436 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5436 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5437 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5437 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5438 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5438 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5439 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5439 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5440 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5440 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5441 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5441 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5442 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5442 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5443 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5443 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5444 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5444 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5445 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5445 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5446 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5446 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5447 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5447 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5448 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5448 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5449 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5449 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5450 /usr/lib/dev/systemdev/dns-filter guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5394->guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5450 clone guuid=6a7de383-1e00-0000-7aeb-f4ae12150000 pid=5397->4f6baed0-9587-596c-82b3-fd721afe4cc1 send: 96B
Threat name:
Script-PowerShell.Trojan.Heuristic
Status:
Malicious
First seen:
2025-08-31 15:16:01 UTC
File Type:
Text (Shell)
AV detection:
4 of 36 (11.11%)
Threat level:
  2/5
Result
Malware family:
n/a
Score:
  6/10
Tags:
discovery linux
Behaviour
Enumerates kernel/hardware configuration
Reads runtime system information
System Network Configuration Discovery
Reads CPU attributes
Enumerates running processes
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

  
Delivery method
Distributed via web download

Comments