Library
My library

+ Add to library

Contact us
24/7 Tech support | Rules regarding submitting

Send a message

Your tickets

Profile

Linux.Siggen.2772

Added to the Dr.Web virus database: 2020-04-30

Virus description added:

Technical Information

Malicious functions:
Removes itself
Launches itself as a daemon
Substitutes application name for:
  • 1oo21fq0jqzds4nifasue
  • 2qkim1iocqbnscbv4pymlut
  • pyssukkeb2hufg4hbeezn
  • uljzu5fg4yggfgj5sp1sn00m
  • pbtsyptsox5b4yllgds0jumx
  • 4djhcujxxtmbpraocqg4c
  • c3hzmyyzehws20qm3oliwqy4
  • zsm5ywtrew1ydtibca5bn423
  • bccfjwhpsqw0vafbnlx5orlt
  • qz1aczgzk1clhj4qimlxl
  • oaps53gbjmrmo3rxlo2yk5h2
  • b5xushysvdoj3rvxwlvj2
  • pqbqxxb1m4m3o11s1euvjb
  • seospizpilcstioioh3dwgg4
  • emx1zgogikvjs3vp5ttnhm
  • 14drfds4gpqaladucldwql0g
  • jzxtksgn2t011s1hwjch
  • w4ral3fveyuuvvd5kszyk
  • d2ecip3g1zibwb33gw0gdo
  • gb4n2a2rp3h5bu5ugcuk2v
  • sbdn1bggpqtnijwgtktq
  • bceczjvpekfbqodwxoziauc5
  • s1do1lvpjbcefzndbzlh3
  • bxk1a1kuxxvowgjhjtnpv1zh
  • wxe3vfqcru3abor1m10f
  • rhkpclytfq13eb55wqcfpav
  • invj4qnh5iaqli13uwkxwzr
  • q1nsnati4livwdrdakjyd0li
  • 2wgc4pgiwpvdjtihyftqiox5
  • db2it3wdpxdlngl2xyd3
  • dtbkf2pwdrifu0aga1o2p4bq
Performs operations with the file system:
Creates or modifies files:
  • <SAMPLE_FULL_PATH>
Network activity:
Awaits incoming connections on ports:
  • 19#.##8.213.50:3467
Establishes connection:
  • 8.#.8.8:53
  • 5.###.227.18:4321
  • 5.###.227.18:7685

Curing recommendations


Linux

After booting up, run a full scan of all disk partitions with Dr.Web Anti-virus for Linux.

Free trial

One month (no registration) or three months (registration and renewal discount)

Download Dr.Web

Download by serial number