Defend what you create

Other Resources

Close

Library
My library

+ Add to library

Contact us
24/7 Tech support | Rules regarding submitting

Send a message

Your tickets

Profile

Linux.Packed.539

Added to the Dr.Web virus database: 2019-08-02

Virus description added:

Technical Information

Malicious functions:
Launches processes:
  • tty
  • stty size
  • stty raw -echo
  • stty -raw echo
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/installkit /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/unpack.tcl -- /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/unpack.ini
  • xdg-desktop-menu install --mode system --novendor /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/C041A8D0-19AA-82AE-B92A-AF937B37851C-miXimum.directory /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-program.desktop
  • cut -d . -f 1
  • basename /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/C041A8D0-19AA-82AE-B92A-AF937B37851C-miXimum.directory
  • sed s/:/ /g
  • mktemp /tmp/tmp.XXXXXXXXXX
  • cat /tmp/tmp.GObHVseRu7
  • basename /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-program.desktop
  • grep ^miximum-program.desktop$ /tmp/tmp.GObHVseRu7
  • rm -f /tmp/tmp.GObHVseRu7
  • chmod 0644 /tmp/tmp.gVx65agimW
  • mkdir -p /applications-merged
  • cp /tmp/tmp.gVx65agimW /applications-merged/C041A8D0-19AA-82AE-B92A-AF937B37851C-miXimum.menu
  • rm -f /tmp/tmp.gVx65agimW
  • xdg-desktop-menu install --mode system --novendor /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/C041A8D0-19AA-82AE-B92A-AF937B37851C-miXimum.directory /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-uninstall.desktop
  • awk
  • cat /tmp/tmp.0d1M1F1tyv
  • basename /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-uninstall.desktop
  • grep ^miximum-uninstall.desktop$ /tmp/tmp.0d1M1F1tyv
  • rm -f /tmp/tmp.0d1M1F1tyv
  • chmod 0644 /tmp/tmp.xAvMmqV8fg
  • cp /tmp/tmp.xAvMmqV8fg /applications-merged/C041A8D0-19AA-82AE-B92A-AF937B37851C-miXimum.menu
  • rm -f /tmp/tmp.xAvMmqV8fg
  • xdg-desktop-icon install --novendor /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-desktop.desktop
  • cat /etc/xdg/user-dirs.conf
  • grep enabled=True
  • grep true
  • basename /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-desktop.desktop
  • mkdir -p /root/Desktop
  • cp /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-desktop.desktop /root/Desktop/miximum-desktop.desktop
  • chmod 0755 /root/Desktop/miximum-desktop.desktop
Performs operations with the file system:
Modifies file access rights:
  • /tmp/tcl32UXOm
  • /tmp/tclTTaFz6
  • /tmp/tcl1893054004689.tmp
  • /var/tmp/tcl1893054004689.tmp
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/bin/xdg-desktop-icon
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/bin/xdg-desktop-menu
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/installkit
  • /tmp/tclMpRl7Q
  • /usr/local/miximum
  • /usr/local/miximum/license.txt
  • /usr/local/miximum/miximum
  • /usr/local/miximum/jingle
  • /usr/local/miximum/jingle/jingle1.mp3
  • /usr/local/miximum/jingle/jingle2.mp3
  • /usr/local/miximum/jingle/jingle3.mp3
  • /usr/local/miximum/jingle/jingle4.mp3
  • /usr/local/miximum/jingle/jingle5.mp3
  • /usr/local/miximum/jingle/jingle6.mp3
  • /usr/local/miximum/jingle/jingle7.mp3
  • /usr/local/miximum/lib
  • /usr/local/miximum/lib/libbass.so
  • /usr/local/miximum/lib/temp.o
  • /usr/local/miximum/lib/splashqt
  • /usr/local/miximum/ReadMe.txt
  • /usr/local/miximum/miximumno.png
  • /usr/local/miximum/miximum.png
  • /usr/local/miximum/uninstall
  • /tmp/tmp.gVx65agimW
  • /tmp/tmp.xAvMmqV8fg
  • /root/Desktop/miximum-desktop.desktop
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06
Creates folders:
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/bin
  • /usr/local/miximum
  • /usr/local/miximum/jingle
  • /usr/local/miximum/lib
  • /applications-merged
  • /root/Desktop
  • /var/lib/installjammer
  • /var/lib/installjammer/C041A8D0-19AA-82AE-B92A-AF937B37851C
Deletes folders:
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/bin
Creates or modifies files:
  • /tmp/tcl32UXOm
  • /tmp/tclCbxAbJ
  • /tmp/tclTTaFz6
  • /tmp/tcl1893054004689.tmp
  • /var/tmp/tcl1893054004689.tmp
  • /tmp/tclNd4tHE
  • /tmp/tclNd4tHE (deleted)
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/bin/xdg-desktop-icon
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/bin/xdg-desktop-menu
  • /tmp/tclEQiJMe
  • /tmp/tclEQiJMe (deleted)
  • /tmp/tcloJo7gP
  • /tmp/tcloJo7gP (deleted)
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/installkit
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/unpack.ini
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/unpack.tcl
  • /tmp/tclWpuNHu
  • /tmp/tclMpRl7Q
  • /tmp/tcljYlRmz
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/run.log
  • /usr/local/miximum/license.txt
  • /usr/local/miximum/miximum
  • /usr/local/miximum/jingle/jingle1.mp3
  • /usr/local/miximum/jingle/jingle2.mp3
  • /usr/local/miximum/jingle/jingle3.mp3
  • /usr/local/miximum/jingle/jingle4.mp3
  • /usr/local/miximum/jingle/jingle5.mp3
  • /usr/local/miximum/jingle/jingle6.mp3
  • /usr/local/miximum/jingle/jingle7.mp3
  • /usr/local/miximum/lib/libbass.so
  • /usr/local/miximum/lib/temp.o
  • /usr/local/miximum/lib/splashqt
  • /usr/local/miximum/ReadMe.txt
  • /usr/local/miximum/miximumno.png
  • /usr/local/miximum/miximum.png
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/.done
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/uninstall.tcl
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/uninstallMain.tcl
  • /usr/local/miximum/uninstall
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-program.desktop
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/C041A8D0-19AA-82AE-B92A-AF937B37851C-miXimum.directory
  • /tmp/tclXsu1ox
  • /tmp/tmp.GObHVseRu7
  • /tmp/tmp.gVx65agimW
  • /applications-merged/C041A8D0-19AA-82AE-B92A-AF937B37851C-miXimum.menu
  • /tmp/tclXsu1ox (deleted)
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-uninstall.desktop
  • /tmp/tcld3ebxG
  • /tmp/tmp.0d1M1F1tyv
  • /tmp/tmp.xAvMmqV8fg
  • /tmp/tcld3ebxG (deleted)
  • /tmp/tclj3nBtV
  • /tmp/tclj3nBtV (deleted)
  • /tmp/tclM3qCNa
  • /tmp/tclM3qCNa (deleted)
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-desktop.desktop
  • /tmp/tclVDLqIq
  • /root/Desktop/miximum-desktop.desktop
  • /var/lib/installjammer/C041A8D0-19AA-82AE-B92A-AF937B37851C/CEF5A8B5-3D1C-F861-AAFB-2C7174FC6699.ver
  • /var/lib/installjammer/C041A8D0-19AA-82AE-B92A-AF937B37851C/CEF5A8B5-3D1C-F861-AAFB-2C7174FC6699.log
  • /var/lib/installjammer/C041A8D0-19AA-82AE-B92A-AF937B37851C/CEF5A8B5-3D1C-F861-AAFB-2C7174FC6699.info
Deletes files:
  • /tmp/tcl32UXOm
  • /tmp/tclCbxAbJ
  • /tmp/tclTTaFz6
  • /tmp/tcl1893054004689.tmp
  • /var/tmp/tcl1893054004689.tmp
  • /tmp/tclNd4tHE
  • /tmp/tclEQiJMe
  • /tmp/tcloJo7gP
  • /tmp/tclWpuNHu
  • /tmp/tclMpRl7Q
  • /tmp/tcljYlRmz
  • /usr/local/miximum/uninstall
  • /tmp/tclXsu1ox
  • /tmp/tmp.GObHVseRu7
  • /tmp/tmp.gVx65agimW
  • /tmp/tcld3ebxG
  • /tmp/tmp.0d1M1F1tyv
  • /tmp/tmp.xAvMmqV8fg
  • /tmp/tclj3nBtV
  • /tmp/tclM3qCNa
  • /tmp/tclVDLqIq
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/uninstall.tcl
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/uninstallMain.tcl
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/bin/xdg-desktop-icon
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/bin/xdg-desktop-menu
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-program.desktop
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-desktop.desktop
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/miximum-uninstall.desktop
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/run.log
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/installkit
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/.done
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/unpack.tcl
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/unpack.ini
  • /tmp/ijtmp_67B47009-93F1-8FDA-5F52-1FD9038DCD06/C041A8D0-19AA-82AE-B92A-AF937B37851C-miXimum.directory

Curing recommendations


Linux

After booting up, run a full scan of all disk partitions with Dr.Web Anti-virus for Linux.

Free trial

One month (no registration) or three months (registration and renewal discount)

Download Dr.Web

Download by serial number

The Russian developer of Dr.Web anti-viruses

Doctor Web has been developing anti-virus software since 1992

Dr.Web is trusted by users around the world in 200+ countries

The company has delivered an anti-virus as a service since 2007

24/7 tech support

© Doctor Web
2003 — 2019

Doctor Web is the Russian developer of Dr.Web anti-virus software. Dr.Web anti-virus software has been developed since 1992.

2-12А, 3rd street Yamskogo polya, Moscow, Russia, 125040