Library
My library

+ Add to library

Contact us
24/7 Tech support | Rules regarding submitting

Send a message

Your tickets

Profile

Linux.Siggen.2444

Added to the Dr.Web virus database: 2020-03-16

Virus description added:

Technical Information

Malicious functions:
Substitutes application name for:
  • eminem
Network activity:
Awaits incoming connections on ports:
  • 0.0.0.0:32766
Establishes connection:
  • 8.#.8.8:53
  • 10#.##8.50.89:32767
Attacks using a special dictionary (brute-force technique) via the Telnet protocol.
Sends data to the following servers:
  • 82.##.116.132:2323
  • 41.###.56.238:2323
  • 76.###.206.142:2323
  • 13#.##.64.201:2323
  • 21#.##0.97.22:2323
  • 20#.#.244.62:2323
  • 19#.###.236.227:2323
  • 10#.##8.50.89:32767
  • 15#.###.190.122:2323
  • 74.##.141.125:2323
  • 36.##.5.128:2323
  • 89.###.85.182:2323
  • 13#.##.237.86:2323
  • 11#.##3.128.59:2323
  • 5.###.194.213:2323
  • 14#.##.13.209:2323
  • 19#.##7.16.23:2323
  • 12#.##.15.64:2323
  • 80.##.102.8:2323
  • 10#.##.37.244:2323
  • 20.###.178.233:2323
  • 15#.###.173.188:2323
  • 12#.###.195.182:2323
  • 18#.##.235.179:2323
  • 59.###.84.213:2323
  • 99.##.176.194:2323
  • 12#.###.188.119:2323
  • 12#.##0.72.30:2323
  • 18#.##8.6.92:2323
  • 16#.##3.27.185:2323
  • 96.###.92.102:2323
  • 88.###.100.191:2323
  • 12.###.4.211:2323
  • 76.###.113.209:2323
  • 88.###.173.97:2323
  • 20#.##2.42.88:2323
  • 17#.###.249.249:2323
  • 67.###.245.135:2323
  • 16#.##.167.244:2323
  • 14#.##4.84.221:2323
  • 75.##.219.97:2323
  • 11#.##7.26.180:2323
  • 12.###.119.61:2323
  • 10#.##.136.169:2323
  • 10#.###.174.194:2323
  • 96.##.63.11:2323
  • 24.##.195.161:2323
  • 75.###.48.69:2323
  • 71.###.220.202:2323
  • 15#.##7.191.23:2323
  • 68.##.37.185:2323
  • 11#.##1.68.198:2323
  • 12#.###.205.115:2323
  • 13#.###.180.173:2323
  • 18.###.164.195:2323
  • 21#.###.179.110:2323
  • 17#.##9.45.152:2323
  • 71.###.113.128:2323
  • 38.###.20.43:2323
  • 18#.##1.229.22:2323
  • 13#.##7.2.140:2323
  • 14#.##.166.179:2323
  • 57.###.191.99:2323
  • 11#.###.188.109:2323
  • 70.###.111.178:2323
  • 14#.##.236.162:2323
  • 12#.###.106.104:2323
  • 21#.##.99.188:2323
  • 43.##.56.192:2323
  • 73.##.157.229:2323
  • 17#.##.204.253:2323
  • 20#.###.229.117:2323
  • 13#.##8.128.63:2323
  • 76.###.173.137:2323
  • 36.###.169.131:2323
  • 10#.###.157.218:2323
  • 16#.###.204.235:2323
  • 57.##.201.129:2323
  • 11#.##.242.119:2323
  • 11#.##1.121.70:2323
  • 98.###.137.94:2323
  • 96.###.32.118:2323
  • 18#.#.71.175:2323
  • 67.##.0.127:2323
  • 15#.##7.51.123:2323
  • 61.###.194.54:2323
  • 34.###.144.169:2323
  • 11#.###.201.213:2323
  • 38.###.132.25:2323
  • 13#.##.203.100:2323
  • 15#.##3.152.76:2323
  • 87.###.66.143:2323
  • 62.###.122.118:2323
  • 15#.###.161.179:2323
  • 66.###.53.119:2323
  • 15#.##.208.158:2323
  • 27.###.14.140:2323
  • 12#.##9.38.64:2323
  • 20#.##3.41.171:2323
  • 41.###.15.221:2323
  • 16#.###.192.170:2323
  • 19#.###.124.111:2323
  • 20#.##.244.78:2323
  • 39.###.122.218:2323
  • 22#.###.182.240:2323
  • 14#.##2.20.45:2323
  • 18#.##.60.235:2323
  • 98.##.133.3:2323
  • 91.#.#40.186:2323
  • 75.##.109.20:2323
  • 22#.##8.75.18:2323
  • 99.###.142.254:2323
  • 21#.##1.226.28:2323
  • 18#.##0.204.10:2323
  • 17#.##.116.25:2323
  • 19#.##.252.189:2323
  • 21#.##8.173.83:2323
  • 97.###.175.197:2323
  • 11#.##5.92.109:2323
  • 23.###.186.197:2323
  • 10#.##.157.213:2323
  • 23.###.82.157:2323
  • 93.###.176.116:2323
  • 10#.###.168.224:2323
  • 14#.##.173.165:2323
  • 16#.##.203.252:2323
  • 10#.##.37.244:2323
  • 21#.###.116.201:2323
  • 18#.##.102.137:2323
  • 12#.##0.159.63:2323
  • 20#.##.54.39:2323
  • 20#.##.55.88:2323
  • 20#.###.197.167:2323
  • 22#.##.118.53:2323
  • 12#.###.231.127:2323
  • 24.##.130.159:2323
  • 46.###.214.34:2323
  • 21#.##.134.252:2323
  • 12#.##9.70.159:2323
  • 16#.##.164.207:2323
  • 20#.###.180.112:2323
  • 21#.##.203.18:2323
  • 20#.##.254.123:2323
  • 19#.##.123.136:2323
  • 42.##.111.158:2323
  • 86.##.79.131:2323
  • 43.###.140.227:2323
  • 31.#.#24.180:2323
  • 14#.##4.45.107:2323
  • 16#.##.105.116:2323
  • 12#.##.194.184:2323
  • 58.###.12.15:2323
  • 14#.##5.128.14:2323
  • 48.###.15.220:2323
  • 13#.##.102.147:2323
  • 93.###.161.66:2323
  • 15#.#.15.56:2323
  • 54.##.146.248:2323
  • 14#.##.40.199:2323
  • 20#.##.33.220:2323
  • 17#.##.66.241:2323
  • 91.##.43.5:2323
  • 15#.###.174.244:2323
  • 17#.##.17.251:2323
  • 14#.###.125.123:2323
  • 53.###.24.205:2323
  • 20#.###.101.123:2323
  • 58.##.74.209:2323
  • 34.###.27.9:2323
  • 77.##.244.219:2323
  • 12.###.136.241:2323
  • 11#.###.138.200:2323
  • 18#.##.82.192:2323
  • 20#.##.63.186:2323
  • 14#.##6.188.84:2323
  • 13.###.84.242:2323
  • 14#.###.108.200:2323
  • 12#.##.201.240:2323
  • 17#.##7.239.73:2323
  • 17#.###.255.237:2323
  • 13#.##6.19.48:2323
  • 14#.###.239.185:2323
  • 11#.##8.250.54:2323
  • 47.###.173.52:2323
  • 61.##.85.172:2323
  • 13#.#.76.83:2323
  • 20#.##5.40.38:2323
  • 58.###.168.61:2323
  • 16#.##2.174.25:2323
  • 64.###.233.191:2323
  • 19#.##9.228.45:2323
  • 90.##.248.177:2323
  • 76.##.16.155:2323
  • 18#.##5.38.211:2323
  • 17#.###.188.115:2323
  • 13#.###.219.163:2323
  • 41.##.109.75:2323
  • 48.###.74.88:2323
  • 10#.##.164.7:2323
  • 11#.##7.73.206:2323
  • 1.##.#52.94:2323
  • 93.##.55.240:2323
  • 11#.###.213.144:2323
  • 17#.##3.8.150:2323
  • 78.##.104.4:2323
  • 9.##.#66.217:2323
  • 58.###.135.79:2323
  • 5.###.74.59:2323
  • 17#.##0.85.243:2323
  • 17#.##.107.39:2323
  • 16#.##.161.77:2323
  • 77.###.237.64:2323
  • 17#.###.226.181:2323
  • 46.###.237.196:2323
  • 15#.##6.212.5:2323
  • 15#.###.243.178:2323
  • 11#.##5.8.118:2323
  • 54.##.88.178:2323
  • 18#.###.234.218:2323
  • 22#.##9.84.70:2323
  • 90.###.86.51:2323
  • 12#.###.168.255:2323
  • 57.###.110.122:2323
  • 20#.##7.68.90:2323
  • 5.###.154.63:2323
  • 17#.###.130.143:2323
  • 86.##.78.249:2323
  • 12#.##.109.146:2323
  • 92.##.233.49:2323
  • 11#.##8.44.93:2323
  • 13#.##.0.161:2323
  • 11#.##2.73.102:2323
  • 18#.##.199.103:2323
  • 43.###.218.5:2323
  • 13#.##7.61.203:2323
  • 15#.##.28.236:2323
  • 21#.##4.187.50:2323
  • 90.###.173.197:2323
  • 22#.###.103.239:2323
  • 16#.##.113.12:2323
  • 8.##.64.84:2323
  • 12#.##.92.95:2323
  • 64.##.231.245:2323
  • 9.###.47.225:2323
  • 36.##.182.86:2323
  • 4.#.##9.228:2323
  • 62.###.124.57:2323
  • 18#.###.128.207:2323
  • 11#.##2.47.190:2323
  • 21#.###.140.223:2323
  • 80.###.236.247:2323
  • 11#.##.56.106:2323
  • 74.##.100.134:2323
  • 16#.##8.57.155:2323
  • 86.##.244.50:2323
  • 19#.##0.243.88:2323
  • 15#.##5.206.35:2323
  • 16.##.190.159:2323
  • 18#.##.123.164:2323
  • 99.#.#82.101:2323
  • 11#.###.156.186:2323
  • 83.###.251.220:2323
  • 12#.##5.34.38:2323
  • 57.###.140.64:2323
  • 18#.###.239.191:2323
  • 68.###.175.66:2323
  • 39.###.18.133:2323
  • 71.###.205.5:2323
  • 12#.##9.85.28:2323
  • 13#.##.137.8:2323
  • 5.##.#49.13:2323
  • 20#.##.251.92:2323
  • 15#.###.176.108:2323
  • 94.##.108.158:2323
  • 12#.###.106.118:2323
  • 41.###.118.171:2323
  • 22#.##.219.244:2323
  • 17#.#.31.133:2323
  • 13#.##.87.26:2323
  • 17#.###.225.163:2323
  • 13.###.222.207:2323
  • 95.##.159.26:2323
  • 94.###.192.142:2323
  • 13.##.74.141:2323
  • 14#.###.124.194:2323
  • 66.#.#66.239:2323
  • 22#.###.164.155:2323
  • 76.###.158.27:2323
  • 17#.##4.26.24:2323
  • 16#.###.246.201:2323
  • 24.###.239.109:2323
  • 12#.##.94.29:2323
  • 85.##.191.31:2323
  • 17#.##.137.184:2323
  • 72.###.133.163:2323
  • 20#.##2.55.221:2323
  • 5.##.#48.181:2323
  • 43.#.#1.212:2323
  • 22#.###.223.125:2323
  • 85.##.237.178:2323
  • 89.###.253.237:2323
  • 16#.##.200.89:2323
  • 20.###.143.57:2323
  • 16#.##4.24.13:2323
  • 47.###.24.146:2323
  • 11#.##1.11.27:2323
  • 42.##.159.42:2323
  • 13#.##.170.8:2323
  • 83.##.14.46:2323
  • 76.##.181.200:2323
  • 21#.##.172.209:2323
  • 14#.##9.95.40:2323
  • 17#.##6.57.92:2323
  • 13#.#.22.135:2323
  • 86.###.245.49:2323
  • 19#.##8.10.126:2323
  • 60.###.168.50:2323
  • 12#.##.204.137:2323
  • 39.###.75.221:2323
  • 65.##.155.190:2323
  • 11#.##.58.38:2323
  • 15#.##.191.151:2323
  • 13#.##.170.234:2323
  • 19#.##6.107.89:2323
  • 65.###.130.116:2323
  • 20#.###.218.184:2323
  • 14#.##1.65.52:2323
  • 17#.##.45.190:2323
  • 10#.###.125.158:2323
  • 16#.##.10.140:2323
  • 98.##.172.134:2323
  • 19.###.31.12:2323
  • 44.###.66.161:2323
  • 21#.##2.21.196:2323
  • 60.##.63.75:2323
  • 35.##.60.70:2323
  • 10#.###.165.199:2323
  • 19#.##.18.64:2323
  • 17#.###.193.206:2323
Receives data from the following servers:
  • 10#.##8.50.89:32767

Curing recommendations


Linux

After booting up, run a full scan of all disk partitions with Dr.Web Anti-virus for Linux.

Free trial

One month (no registration) or three months (registration and renewal discount)

Download Dr.Web

Download by serial number