SUSPICIOUS — netsample6.py
Verdict: suspicious (35/100) · Family: unknown
File type: script · SHA-256: 9a35262236ea398bb6bebd62832f7c6d971d48385eb1dcb640335070fe53e4e0
MITRE ATT&CK
YARA
Dynamic analysis (linux)
864 behavior events · 0 ATT&CK techniques · 1 dropped files.
Runtime network
- entropy.ubuntu.com
- example.com
- malware-c2-test.example.net
- api.telegram.org
- ntp.ubuntu.com
- example.com/
- api.telegram.org/
- example.com/malware.bin
- 149.154.166.110:80
- 185.125.189.52
- 172.66.147.243
- 149.154.166.110
- 10.240.0.1
- 185.125.190.56
- 255.255.255.255
- ff02::1:ff12:3456
- ff02::16
- ff02::2
Analyzed on MalwareAnalyzer by Cyble · Open interactive report