マイライブラリ
マイライブラリ

+ マイライブラリに追加

電話

お問い合わせ履歴

電話(英語)

+7 (495) 789-45-86

Profile

Linux.Siggen.521

Added to the Dr.Web virus database: 2018-04-08

Virus description added:

Technical Information

Malicious functions:
Substitutes application name for:
  • Artificial Intelligence coin-wallet
  • Artificial Intelligence coin-start
  • Artificial Intelligence coin-rpclist
  • Artificial Intelligence coin-shutoff
  • Artificial Intelligence coin-dnsseed
  • Artificial Intelligence coin-ircseed
  • Artificial Intelligence coin-ext-ip
  • Artificial Intelligence coin-net
  • Artificial Intelligence coin-opencon
  • Artificial Intelligence coin-msghand
  • Artificial Intelligence coin-adrdump
  • Artificial Intelligence coin-miner
Performs operations with the file system:
Creates folders:
  • /root/.Artificial Intelligence coin
  • /root/.Artificial Intelligence coin/database
  • /root/.Artificial Intelligence coin/txleveldb
Creates or modifies files:
  • /root/.Artificial Intelligence coin/Artificial Intelligence coin.conf
  • /root/.Artificial Intelligence coin/.lock
  • /root/.Artificial Intelligence coin/debug.log
  • /root/.Artificial Intelligence coin/db.log
  • /root/.Artificial Intelligence coin/txleveldb/LOG
  • /root/.Artificial Intelligence coin/txleveldb/LOCK
  • /root/.Artificial Intelligence coin/txleveldb/MANIFEST-000001
  • /root/.Artificial Intelligence coin/txleveldb/000001.dbtmp
  • /root/.Artificial Intelligence coin/txleveldb/000003.log
  • /root/.Artificial Intelligence coin/txleveldb/MANIFEST-000002
  • /root/.Artificial Intelligence coin/txleveldb/000002.dbtmp
  • /root/.Artificial Intelligence coin/blk0001.dat
  • /root/.Artificial Intelligence coin/database/log.0000000001
  • /root/.Artificial Intelligence coin/__db.80000001.ac5d3ab
  • /root/.Artificial Intelligence coin/wallet.dat
  • /root/.Artificial Intelligence coin/peers.dat.e55c
Deletes files:
  • /root/.Artificial Intelligence coin/txleveldb/MANIFEST-000001"
Network activity:
Awaits incoming connections on ports:
  • 0.0.0.0:6987
HTTP GET requests:
  • ch####p.dyndns.org/
Other:
Collects CPU information

Curing recommendations


Linux

After booting up, run a full scan of all disk partitions with Dr.Web Anti-virus for Linux.

Free trial

One month (no registration) or three months (registration and renewal discount)

Download Dr.Web

Download by serial number