IP Address: 89.47.120.66Previously Malicious

Weekly Summary

Browse or download a weekly review of our cyber threat intelligence data and gain more insight to help protect your network

Top Threats

Cyber Threat Intelligence

Discover Malicious IPs and Domains with Guardicore Cyber Threat Feed

IP Address:
89.47.120.66​
Previously Malicious

This IP address attempted an attack on a machine protected by Guardicore Centra

Threat Information

Role

Attacker

Services Targeted

SSH

Tags

DNS Query 26 Shell Commands Download File FTP HTTP Download Operation Human Outgoing Connection Successful SSH Login Download and Allow Execution Bulk Files Tampering SFTP SSH Download and Execute Access Suspicious Domain

Connect Back Servers

_http._tcp.archive.ubuntu.com www.speedtest.net speedtest.winchesterwireless.com videotron.ca _http._tcp.security.ubuntu.com canonical.com shentel.net s1.speedtest.wdc1.us.leaseweb.net security.ubuntu.com stosat-malt-01.sys.comcast.net edinburg.speedtest.shentel.net bigdaddy.wave2net.com arhivecodex.tk archive.ubuntu.com pentru viteza comcast.net nasapaul.com

69.241.0.94 185.199.109.153 185.199.110.153 204.111.5.18 45.45.0.2 91.189.88.152 151.101.2.219 45.45.0.1 91.189.88.162 207.244.94.68 45.45.0.5 91.189.88.149 45.45.0.4 45.45.0.3 184.170.114.134 204.111.21.7

Basic Information

IP Address

89.47.120.66

Domain

-

ISP

Tennet Telecom Srl

Country

Romania

WHOIS

Created Date

-

Updated Date

-

Organization

-

First seen in Guardicore Centra

2019-03-07

Last seen in Guardicore Centra

2019-04-08

What is Guardicore Centra
Guardicore Centra is a data center and cloud security solution that protects the organization's core assets, using flexible, quickly deployed and easy to understand micro-segmentation controls. Centra generates in-context security incidents, with details on attacker tools and techniques, that help IR teams prioritize incident investigation and reduce dwell time. Learn More

Attack Flow

A user logged in using SSH with the following credentials: root / **** - Authentication policy: White List

Successful SSH Login

A user logged in using SSH with the following credentials: root / **** - Authentication policy: Correct Password

Successful SSH Login

The file /root/csp was downloaded and granted execution privileges

Download and Allow Execution

The file /root/nhdd.filepart was downloaded and granted execution privileges

Download and Allow Execution

The file /root/port was downloaded and granted execution privileges

Download and Allow Execution

The file /root/puladesalcam was downloaded and granted execution privileges

Download and Allow Execution

The file /root/pscan2 was downloaded and granted execution privileges

Download and Allow Execution

The file /root/screen.filepart was downloaded and granted execution privileges

Download and Allow Execution

The file /root/speed.py was downloaded and granted execution privileges

Download and Allow Execution

Process /usr/bin/python2.7 attempted to access domains: edinburg.speedtest.shentel.net, s1.speedtest.wdc1.us.leaseweb.net, stosat-malt-01.sys.comcast.net and www.speedtest.net

DNS Query

Process /usr/bin/python2.7 generated outgoing network traffic to: 151.101.2.219:443, 151.101.2.219:80, 184.170.114.134:80, 204.111.21.7:80, 207.244.94.68:80, comcast.net:80 and shentel.net:80

Outgoing Connection

Process /usr/bin/python2.7 attempted to access suspicious domains: bigdaddy.wave2net.com and speedtest.winchesterwireless.com

DNS Query Access Suspicious Domain Outgoing Connection

A possibly malicious Download Operation was detected 4 times

Download Operation

Process /usr/bin/wget attempted to access suspicious domains: arhivecodex.tk 2 times

DNS Query Access Suspicious Domain Outgoing Connection

Process /usr/bin/wget generated outgoing network traffic to: 185.199.109.153:80 2 times

Outgoing Connection

/root/codemix.zip was downloaded

Download File

The file /root/codemix/1 was downloaded and granted execution privileges

Download and Allow Execution

The file /root/codemix/c was downloaded and granted execution privileges

Download and Allow Execution

The file /root/codemix/port was downloaded and granted execution privileges

Download and Allow Execution

The file /root/codemix/scan.log was downloaded and granted execution privileges

Download and Allow Execution

The file /root/codemix/screen was downloaded and granted execution privileges

Download and Allow Execution

The file /root/codemix/sshd was downloaded and granted execution privileges

Download and Allow Execution

The file /root/codemix/sters was downloaded and granted execution privileges

Download and Allow Execution

The file /root/codemix/pscan2 was downloaded and executed

Download and Execute

Process /root/codemix/pscan2 generated outgoing network traffic to: videotron.ca:22

Outgoing Connection

Process /root/codemix/pscan2 attempted to access suspicious domains: videotron.ca

Access Suspicious Domain Outgoing Connection

/root/teamspeak3-server_linux_amd64/CHANGELOG was downloaded

Download File

/root/teamspeak3-server_linux_amd64/doc/accounting.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/doc/permissiondoc.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/doc/privilegekey_guide.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/doc/serverquery/serverquery.html.filepart was downloaded

Download File

/root/teamspeak3-server_linux_amd64/doc/serverquery/stylesheet.css was downloaded

Download File

/root/teamspeak3-server_linux_amd64/doc/serverquery/TeamSpeak_Logo.png was downloaded

Download File

/root/teamspeak3-server_linux_amd64/doc/server_quickstart.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/doc/server_upgrade.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/doc/update_mysql_to_mariadb.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/libts3db_mariadb.so.filepart was downloaded

Download File

/root/teamspeak3-server_linux_amd64/libts3db_sqlite3.so.filepart was downloaded

Download File

/root/teamspeak3-server_linux_amd64/libts3_ssh.so.filepart was downloaded

Download File

/root/teamspeak3-server_linux_amd64/LICENSE was downloaded

Download File

/root/teamspeak3-server_linux_amd64/LICENSE-THIRDPARTY was downloaded

Download File

/root/teamspeak3-server_linux_amd64/redist/libmariadb.so.2.filepart was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/banadd.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/banclient.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/bandel.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/bandelall.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/banlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/bindinglist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channeladdperm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelclientaddperm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelclientdelperm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelclientpermlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelcreate.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channeldelete.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channeldelperm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channeledit.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelfind.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelgroupadd.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelgroupaddperm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelgroupclientlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelgroupcopy.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelgroupdel.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelgroupdelperm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelgrouplist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelgrouppermlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelgrouprename.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelinfo.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channellist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelmove.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/channelpermlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientaddperm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientdbdelete.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientdbedit.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientdbfind.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientdbinfo.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientdblist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientdelperm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientedit.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientfind.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientgetdbidfromuid.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientgetids.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientgetnamefromdbid.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientgetnamefromuid.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientgetuidfromclid.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientinfo.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientkick.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientmove.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientpermlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientpoke.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientsetserverquerylogin.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/clientupdate.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/complainadd.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/complaindel.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/complaindelall.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/complainlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/customdelete.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/custominfo.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/customsearch.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/customset.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/ftcreatedir.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/ftdeletefile.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/ftgetfileinfo.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/ftgetfilelist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/ftinitdownload.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/ftinitupload.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/ftlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/ftrenamefile.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/ftstop.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/gm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/help.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/hostinfo.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/instanceedit.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/instanceinfo.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/logadd.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/login.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/logout.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/logview.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/messageadd.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/messagedel.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/messageget.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/messagelist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/messageupdateflag.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/permfind.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/permget.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/permidgetbyname.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/permissionlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/permoverview.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/permreset.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/privilegekeyadd.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/privilegekeydelete.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/privilegekeylist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/privilegekeyuse.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/queryloginadd.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/querylogindel.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/queryloginlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/quit.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/sendtextmessage.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servercreate.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/serverdelete.txt was downloaded

Download File

Process /usr/bin/wget attempted to access suspicious domains: nasapaul.com 2 times

DNS Query Access Suspicious Domain

/root/teamspeak3-server_linux_amd64/serverquerydocs/serveredit.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergroupadd.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergroupaddclient.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergroupaddperm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergroupautoaddperm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergroupautodelperm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergroupclientlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergroupcopy.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergroupdel.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergroupdelclient.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergroupdelperm.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergrouplist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergrouppermlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergrouprename.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servergroupsbyclientid.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/serveridgetbyport.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/serverinfo.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/serverlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servernotifyregister.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servernotifyunregister.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/serverprocessstop.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/serverrequestconnectioninfo.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/serversnapshotcreate.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/serversnapshotdeploy.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/serverstart.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/serverstop.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servertemppasswordadd.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servertemppassworddel.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/servertemppasswordlist.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/setclientchannelgroup.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/tokenadd.txt was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/tokendelete.txt was downloaded

Download File

/root/paul was downloaded

Download File

/root/teamspeak3-server_linux_amd64/serverquerydocs/tokenlist.txt was downloaded

Download File

Connection was closed due to timeout

Process /usr/lib/openssh/sftp-server performed bulk changes in {/} on 167 files

Bulk Files Tampering

Associated Files

/v.py

SHA256: 00e430b733cf199747c9c6e0f2e2fae6a045bbed9c0f0f993112b301fcdf5dbc

25470 bytes

/root/v.py.txt

SHA256: 61db2992f49cd532eebe89fc5e2346f14fe30e0d585b2df114bc7de99e73bc06

26272 bytes

/var/tmp/paul.pl

SHA256: 95f428b36aea7a6a49a983f9bc2a1fc2fb603a2a0ff63a53cacaa49341eea0ea

1980 bytes

/var/tmp/zone/screen.filepart

SHA256: 2413af510a75ada34716165992a425b35f62ba1478f63746502afd8a8a156b80

249980 bytes

/root/csp.txt

SHA256: f0769e75884c25af424a865c2d6b8ff37efa8b0d4a490d736a9bc316157b11de

2418 bytes

/var/tmp/ninfo

SHA256: 19778a62055770a9e5f890e52227ccd39251bf23045c15383411638540ceabf7

2941 bytes

/var/tmp/.x/Nasa/nhdd

SHA256: 43333adf6ba7d876d5574543278616dad40376b1024a01d0f48c04b0ca5f7534

1485768 bytes

/var/tmp/.x/Nasa/pscan2

SHA256: 291cf164abfff4269e84209fe0763bb3295f7fad9d265c6354b8d4494ac5410f

14012 bytes

/root/codemix.zip

SHA256: 5ad26decc99127db8251d31b4009431689988e87b63a69922a2b3ee189df77af

833036 bytes

/root/codemix/c

SHA256: 6005c3ae1042772e3ceec74d0b45874b23f0761256e1f0649af3628a158c0f84

1198 bytes

/root/codemix/pscan2

SHA256: 4e65c25ebc37bb3860a44ba172afd05264abbac9a5b94baddbb940871b51f9f1

13996 bytes

/root/codemix/sshd.filepart

SHA256: 17819c7c77c8e6fe46bee617c2d566de52ede346958e9b35c8f15f3d8b758197

1485768 bytes

/var/tmp/zone/speedtestvps.py

SHA256: 02cd63a2e9d2cd538ca5230380ad3668b967955f193ec1090b275baa55315680

25312 bytes

/var/tmp/sshd

SHA256: d40f117938e1dfa754a198c4e966fb934fcfbb8ad0c503baca87483e3fd11ae3

1485768 bytes

/var/tmp/groot.zip

SHA256: 575a17bac99ab4077e2c9bcd01fbc14953827377972e414f669bfa8dbc030bae

724193 bytes

/var/tmp/zone/pscan2

SHA256: f01ff39b0bf2261a12f1ecb7b90ae8cfd6dd565c4e1b1448358754691a70784c

14012 bytes

/root/test.a/acutiodau

SHA256: 59d91ac1a64552189e783f4ce10e98832832daf4e878dc989ee103cf9bb78150

1538 bytes

/root/test.a/daulascan

SHA256: 50ca4a828a5066dbd9b1178eeb15caa8355072dbf662d0a47d0e18e9d0863edb

1650 bytes

/root/test.a/ksenihacked

SHA256: ef1f0068abed08c6b39b6e4e5ba612c9b0e9672bf2675d63a26b7c05eb03e22a

2133 bytes

/root/test.a/scriptgoldrandom

SHA256: 0027cf244a27c042b47fa5b7af4ad81b3cf3566ecb98b4897fea7d87137bd00c

247 bytes

/root/teamspeak3-server_linux_amd64/libts3_ssh.so.filepart

SHA256: f2fd62c534ae82f26ef82388063faf6138873a80d650287cb8dd9a2a14b769a3

936272 bytes

/root/puladesalcam

SHA256: c2371c2c781f8849226fe91559aedf0fc819f09d4bd021066221261bf9ed4dc9

892 bytes

/root/teamspeak3-server_linux_amd64/libts3db_mariadb.so.filepart

SHA256: f4917757484b5d75cc886f4c57cc5c6bc93a5981bdb3130f8912cb8cd6689d00

1000888 bytes

/root/teamspeak3-server_linux_amd64/libts3db_sqlite3.so.filepart

SHA256: 6298b60a6fb45f978ce88f8308c41cf7c34eb5dbbec5cd5aa49e0fc2c946775a

2191496 bytes

/root/teamspeak3-server_linux_amd64/redist/libmariadb.so.2.filepart

SHA256: e5c2e5a78ad3610d6f595ac763605dd934c9ca95e2620983f2f556fb6241163d

306864 bytes

/root/teamspeak3-server_linux_amd64-3.6.1.tar.bz2.filepart

SHA256: 07c9680064ae64851269fbdbce159006e547b30bb5fa16b355230ddfdc59f671

8523183 bytes

Oops! - Do you see your IP here? Contact us at labs@guardicore.com to remove it from the Threat Intelligence data.

IP Address: 89.47.120.66​Previously Malicious