Library
My library

+ Add to library

Contact us
24/7 Tech support | Rules regarding submitting

Send a message

Your tickets

Profile

Linux.Siggen.3323

Added to the Dr.Web virus database: 2020-10-16

Virus description added:

Technical Information

Malicious functions:
Launches processes:
  • /tmp/staticx-z24Y6U/staticx
Performs operations with the file system:
Modifies file access rights:
  • /tmp/staticx-z24Y6U/libpthread-2.28.so
  • /tmp/staticx-z24Y6U/libc-2.28.so
  • /tmp/staticx-z24Y6U/ld-2.28.so
  • /tmp/staticx-z24Y6U/libdl-2.28.so
  • /tmp/staticx-z24Y6U/libm-2.28.so
  • /tmp/staticx-z24Y6U/libcrypt-2.28.so
  • /tmp/staticx-z24Y6U/libutil-2.28.so
  • /tmp/staticx-z24Y6U/libnssfix.so
  • /tmp/staticx-z24Y6U/libnss_dns-2.28.so
  • /tmp/staticx-z24Y6U/libnss_files-2.28.so
  • /tmp/staticx-z24Y6U/libresolv-2.28.so
  • /tmp/staticx-z24Y6U/staticx
  • /tmp/staticx-z24Y6U/libz.so.1.2.11
  • /tmp/_MEIGmW7Zb/_bz2.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_cffi_backend.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_codecs_cn.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_codecs_hk.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_codecs_iso2022.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_codecs_jp.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_codecs_kr.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_codecs_tw.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_contextvars.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_ctypes.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_decimal.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_hashlib.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_json.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_lzma.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_multibytecodec.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_multiprocessing.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_opcode.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_queue.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_ssl.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/cryptography/hazmat/bindings/_constant_time.abi3.so
  • /tmp/_MEIGmW7Zb/cryptography/hazmat/bindings/_openssl.abi3.so
  • /tmp/_MEIGmW7Zb/libbz2.so.1.0
  • /tmp/_MEIGmW7Zb/libcrypto.so.1.1
  • /tmp/_MEIGmW7Zb/libexpat.so.1
  • /tmp/_MEIGmW7Zb/libffi.so.6
  • /tmp/_MEIGmW7Zb/libgcc_s.so.1
  • /tmp/_MEIGmW7Zb/liblzma.so.5
  • /tmp/_MEIGmW7Zb/libmpdec.so.2
  • /tmp/_MEIGmW7Zb/libpython3.7m.so.1.0
  • /tmp/_MEIGmW7Zb/libreadline.so.7
  • /tmp/_MEIGmW7Zb/libssl.so.1.1
  • /tmp/_MEIGmW7Zb/libstdc++.so.6
  • /tmp/_MEIGmW7Zb/libtinfo.so.6
  • /tmp/_MEIGmW7Zb/libz.so.1
  • /tmp/_MEIGmW7Zb/mmap.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/mmh3.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/readline.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/resource.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/termios.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/base_library.zip
  • /tmp/_MEIGmW7Zb/certifi/cacert.pem
  • /tmp/_MEIGmW7Zb/cryptography-2.6.1-py3.7.egg-info/PKG-INFO
  • /tmp/_MEIGmW7Zb/cryptography-2.6.1-py3.7.egg-info/dependency_links.txt
  • /tmp/_MEIGmW7Zb/cryptography-2.6.1-py3.7.egg-info/not-zip-safe
  • /tmp/_MEIGmW7Zb/cryptography-2.6.1-py3.7.egg-info/requires.txt
  • /tmp/_MEIGmW7Zb/cryptography-2.6.1-py3.7.egg-info/top_level.txt
Creates folders:
  • /tmp/staticx-z24Y6U
  • /tmp/_MEIGmW7Zb
  • /tmp/_MEIGmW7Zb/cryptography
  • /tmp/_MEIGmW7Zb/cryptography/hazmat
  • /tmp/_MEIGmW7Zb/cryptography/hazmat/bindings
  • /tmp/_MEIGmW7Zb/certifi
  • /tmp/_MEIGmW7Zb/cryptography-2.6.1-py3.7.egg-info
Creates symlinks:
  • /tmp/staticx-z24Y6U/libpthread.so.0
  • /tmp/staticx-z24Y6U/libc.so.6
  • /tmp/staticx-z24Y6U/ld-linux-x86-64.so.2
  • /tmp/staticx-z24Y6U/libdl.so.2
  • /tmp/staticx-z24Y6U/libm.so.6
  • /tmp/staticx-z24Y6U/libcrypt.so.1
  • /tmp/staticx-z24Y6U/libutil.so.1
  • /tmp/staticx-z24Y6U/libnss_dns.so.2
  • /tmp/staticx-z24Y6U/libnss_files.so.2
  • /tmp/staticx-z24Y6U/libresolv.so.2
  • /tmp/staticx-z24Y6U/.staticx.prog
  • /tmp/staticx-z24Y6U/.staticx.interp
  • /tmp/staticx-z24Y6U/libz.so.1
Creates or modifies files:
  • /tmp/staticx-z24Y6U/libpthread-2.28.so
  • /tmp/staticx-z24Y6U/libc-2.28.so
  • /tmp/staticx-z24Y6U/ld-2.28.so
  • /tmp/staticx-z24Y6U/libdl-2.28.so
  • /tmp/staticx-z24Y6U/libm-2.28.so
  • /tmp/staticx-z24Y6U/libcrypt-2.28.so
  • /tmp/staticx-z24Y6U/libutil-2.28.so
  • /tmp/staticx-z24Y6U/libnssfix.so
  • /tmp/staticx-z24Y6U/libnss_dns-2.28.so
  • /tmp/staticx-z24Y6U/libnss_files-2.28.so
  • /tmp/staticx-z24Y6U/libresolv-2.28.so
  • /tmp/staticx-z24Y6U/staticx
  • /tmp/staticx-z24Y6U/libz.so.1.2.11
  • /tmp/_MEIGmW7Zb/_bz2.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_cffi_backend.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_codecs_cn.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_codecs_hk.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_codecs_iso2022.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_codecs_jp.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_codecs_kr.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_codecs_tw.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_contextvars.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_ctypes.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_decimal.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_hashlib.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_json.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_lzma.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_multibytecodec.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_multiprocessing.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_opcode.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_queue.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/_ssl.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/cryptography/hazmat/bindings/_constant_time.abi3.so
  • /tmp/_MEIGmW7Zb/cryptography/hazmat/bindings/_openssl.abi3.so
  • /tmp/_MEIGmW7Zb/libbz2.so.1.0
  • /tmp/_MEIGmW7Zb/libcrypto.so.1.1
  • /tmp/_MEIGmW7Zb/libexpat.so.1
  • /tmp/_MEIGmW7Zb/libffi.so.6
  • /tmp/_MEIGmW7Zb/libgcc_s.so.1
  • /tmp/_MEIGmW7Zb/liblzma.so.5
  • /tmp/_MEIGmW7Zb/libmpdec.so.2
  • /tmp/_MEIGmW7Zb/libpython3.7m.so.1.0
  • /tmp/_MEIGmW7Zb/libreadline.so.7
  • /tmp/_MEIGmW7Zb/libssl.so.1.1
  • /tmp/_MEIGmW7Zb/libstdc++.so.6
  • /tmp/_MEIGmW7Zb/libtinfo.so.6
  • /tmp/_MEIGmW7Zb/libz.so.1
  • /tmp/_MEIGmW7Zb/mmap.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/mmh3.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/readline.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/resource.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/termios.cpython-37m-x86_64-linux-gnu.so
  • /tmp/_MEIGmW7Zb/base_library.zip
  • /tmp/_MEIGmW7Zb/certifi/cacert.pem
  • /tmp/_MEIGmW7Zb/cryptography-2.6.1-py3.7.egg-info/PKG-INFO
  • /tmp/_MEIGmW7Zb/cryptography-2.6.1-py3.7.egg-info/dependency_links.txt
  • /tmp/_MEIGmW7Zb/cryptography-2.6.1-py3.7.egg-info/not-zip-safe
  • /tmp/_MEIGmW7Zb/cryptography-2.6.1-py3.7.egg-info/requires.txt
  • /tmp/_MEIGmW7Zb/cryptography-2.6.1-py3.7.egg-info/top_level.txt
Deletes files:
  • /tmp/staticx-z24Y6U/libpthread.so.0
  • /tmp/staticx-z24Y6U/libc.so.6
  • /tmp/staticx-z24Y6U/ld-linux-x86-64.so.2
  • /tmp/staticx-z24Y6U/libdl.so.2
  • /tmp/staticx-z24Y6U/libm.so.6
  • /tmp/staticx-z24Y6U/libcrypt.so.1
  • /tmp/staticx-z24Y6U/libutil.so.1
  • /tmp/staticx-z24Y6U/libnss_dns.so.2
  • /tmp/staticx-z24Y6U/libnss_files.so.2
  • /tmp/staticx-z24Y6U/libresolv.so.2
  • /tmp/staticx-z24Y6U/.staticx.prog
  • /tmp/staticx-z24Y6U/.staticx.interp
  • /tmp/staticx-z24Y6U/libz.so.1
Network activity:
HTTP GET requests:
  • 19#.##.#6.111:8080/tasks

Curing recommendations


Linux

After booting up, run a full scan of all disk partitions with Dr.Web Anti-virus for Linux.

Free trial

One month (no registration) or three months (registration and renewal discount)

Download Dr.Web

Download by serial number