| File name: | 141347_-1600665868-Alicia-En-El-Pais-De-Las-Maravillas--2010---BluRay-MicroHD.torrent |
| Full analysis: | https://app.any.run/tasks/ca8eed54-a11a-4a8d-aabe-04cd5631ff1e |
| Verdict: | Malicious activity |
| Analysis date: | July 11, 2024, 07:06:01 |
| OS: | Ubuntu 22.04.2 |
| MIME: | application/x-bittorrent |
| File info: | BitTorrent file |
| MD5: | 299BA9C5ED4D0B52CC8A90B01BF1177B |
| SHA1: | 2A013A4FDCEA6412E161B95D896F4C85266393AF |
| SHA256: | ED454B0168D20685B8EFCB15E16CBA14D2FB1FDB3D5EA7EB77B07F49DFFE0C93 |
| SSDEEP: | 768:Pwost7NX2RfjgukCHMFcOVWJWXfKAZPhUE1JCP:IbNGRfj7kIMFLVWcXSAZZBo |
| .torrent | | | Torrent (trackerless) (57.6) |
|---|---|---|
| .torrent | | | Torrent (42.3) |
| Announce: | http://share.camoe.cn:8080/announce |
|---|---|
| AnnounceList1: | http://share.camoe.cn:8080/announce |
| AnnounceList2: | udp://tracker.torrent.eu.org:451/announce |
| AnnounceList3: | http://t.nyaatracker.com:80/announce |
| AnnounceList4: | udp://thetracker.org:80/announce |
| AnnounceList5: | udp://bt.xxx-tracker.com:2710/announce |
| AnnounceList6: | udp://tracker.vanitycore.co:6969/announce |
| AnnounceList7: | http://tracker.tfile.me:80/announce |
| AnnounceList8: | udp://tracker.tiny-vps.com:6969/announce |
| AnnounceList9: | http://retracker.telecom.by:80/announce |
| AnnounceList10: | http://tracker.electro-torrent.pl:80/announce |
| AnnounceList11: | udp://tracker.justseed.it:1337/announce |
| AnnounceList12: | udp://tracker.leechers-paradise.org:6969/announce |
| AnnounceList13: | udp://tracker.opentrackr.org:1337/announce |
| AnnounceList14: | udp://tracker.coppersurfer.tk:6969/announce |
| AnnounceList15: | udp://open.stealth.si:80/announce |
| AnnounceList16: | http://retracker.mgts.by:80/announce |
| AnnounceList17: | udp://tracker.cypherpunks.ru:6969/announce |
| AnnounceList18: | udp://tracker.cyberia.is:6969/announce |
| AnnounceList19: | udp://retracker.lanta-net.ru:2710/announce |
| AnnounceList20: | udp://tracker.internetwarriors.net:1337/announce |
| AnnounceList21: | udp://tracker.swateam.org.uk:2710/announce |
| Creator: | uTorrent/1770 |
| CreateDate: | 2020:09:20 06:52:17+00:00 |
| Encoding: | UTF-8 |
| File1Length: | 990 MiB |
| File1Path: | Alicia En El Pais De Las Maravillas (2010) [BluRay 720p X264 MKV][AC3 5.1 Castellano][www.PctFenix.com].part1.rar |
| File2Length: | 990 MiB |
| File2Path: | Alicia En El Pais De Las Maravillas (2010) [BluRay 720p X264 MKV][AC3 5.1 Castellano][www.PctFenix.com].part2.rar |
| File3Length: | 990 MiB |
| File3Path: | Alicia En El Pais De Las Maravillas (2010) [BluRay 720p X264 MKV][AC3 5.1 Castellano][www.PctFenix.com].part3.rar |
| File4Length: | 990 MiB |
| File4Path: | Alicia En El Pais De Las Maravillas (2010) [BluRay 720p X264 MKV][AC3 5.1 Castellano][www.PctFenix.com].part4.rar |
| File5Length: | 990 MiB |
| File5Path: | Alicia En El Pais De Las Maravillas (2010) [BluRay 720p X264 MKV][AC3 5.1 Castellano][www.PctFenix.com].part5.rar |
| File6Length: | 515 MiB |
| File6Path: | Alicia En El Pais De Las Maravillas (2010) [BluRay 720p X264 MKV][AC3 5.1 Castellano][www.PctFenix.com].part6.rar |
| File7Length: | 111 bytes |
| File7Path: | PCTFENIX COM.url |
| File8Length: | 111 bytes |
| File8Path: | PCTMIX COM.url |
| File9Length: | 112 bytes |
| File9Path: | PCTRELOAD COM.url |
| Name: | Alicia En El Pais De Las Maravillas (2010) [BluRay 720p X264 MKV][AC3 5.1 Castellano][www.PctFenix.com] |
| PieceLength: | 4194304 |
| Pieces: | (Binary data 27340 bytes, use -b option to extract) |
PID | CMD | Path | Indicators | Parent process |
|---|---|---|---|---|
| 12915 | sh -c "file --mime-type /tmp/141347_-1600665868-Alicia-En-El-Pais-De-Las-Maravillas--2010---BluRay-MicroHD\.torrent" | /bin/sh | — | any-guest-agent |
User: root Integrity Level: UNKNOWN Exit code: 0 | ||||
| 12916 | file --mime-type /tmp/141347_-1600665868-Alicia-En-El-Pais-De-Las-Maravillas--2010---BluRay-MicroHD.torrent | /usr/bin/file | — | sh |
User: root Integrity Level: UNKNOWN Exit code: 0 | ||||
| 12917 | /bin/sh -c "DISPLAY=:0 sudo -iu user transmission-gtk /tmp/141347_-1600665868-Alicia-En-El-Pais-De-Las-Maravillas--2010---BluRay-MicroHD\.torrent " | /bin/sh | — | any-guest-agent |
User: user Integrity Level: UNKNOWN Exit code: 1195 | ||||
| 12918 | sudo -iu user transmission-gtk /tmp/141347_-1600665868-Alicia-En-El-Pais-De-Las-Maravillas--2010---BluRay-MicroHD.torrent | /usr/bin/sudo | — | sh |
User: user Integrity Level: UNKNOWN Exit code: 1195 | ||||
| 12919 | transmission-gtk /tmp/141347_-1600665868-Alicia-En-El-Pais-De-Las-Maravillas--2010---BluRay-MicroHD.torrent | /usr/bin/transmission-gtk | sudo | |
User: user Integrity Level: UNKNOWN Exit code: 12919 | ||||
| 12920 | /usr/bin/locale-check C.UTF-8 | /usr/bin/locale-check | — | transmission-gtk |
User: user Integrity Level: UNKNOWN Exit code: 0 | ||||
| 12939 | systemctl --user --global is-enabled snap.snapd-desktop-integration.snapd-desktop-integration.service | /usr/bin/systemctl | — | snapd |
User: root Integrity Level: UNKNOWN Exit code: 482 | ||||
| 12940 | systemctl --user --global is-enabled snap.snapd-desktop-integration.snapd-desktop-integration.service | /usr/bin/systemctl | — | snapd |
User: root Integrity Level: UNKNOWN Exit code: 482 | ||||
| 12941 | systemctl --user --global is-enabled snap.snapd-desktop-integration.snapd-desktop-integration.service | /usr/bin/systemctl | — | snapd |
User: root Integrity Level: UNKNOWN Exit code: 482 | ||||
| 12942 | systemctl --user --global is-enabled snap.snapd-desktop-integration.snapd-desktop-integration.service | /usr/bin/systemctl | — | snapd |
User: root Integrity Level: UNKNOWN Exit code: 482 | ||||
PID | Process | Filename | Type | |
|---|---|---|---|---|
| 13003 | ibus-mozc-gnome-initial-setup.sh | /home/user/.local/share/ibus-mozc-gnome-initial-setup.log | text | |
MD5:— | SHA256:— | |||
PID | Process | Method | HTTP Code | IP | URL | CN | Type | Size | Reputation |
|---|---|---|---|---|---|---|---|---|---|
— | — | GET | 204 | 185.125.190.48:80 | http://connectivity-check.ubuntu.com/ | unknown | — | — | whitelisted |
PID | Process | IP | Domain | ASN | CN | Reputation |
|---|---|---|---|---|---|---|
— | — | 185.125.190.98:80 | connectivity-check.ubuntu.com | Canonical Group Limited | GB | unknown |
470 | avahi-daemon | 224.0.0.251:5353 | — | — | — | unknown |
— | — | 185.125.190.49:80 | connectivity-check.ubuntu.com | Canonical Group Limited | GB | unknown |
— | — | 185.125.190.48:80 | connectivity-check.ubuntu.com | Canonical Group Limited | GB | unknown |
— | — | 212.102.56.178:443 | odrs.gnome.org | Datacamp Limited | DE | unknown |
12919 | transmission-gtk | 192.168.100.2:5351 | — | — | — | whitelisted |
12919 | transmission-gtk | 239.255.255.250:1900 | — | — | — | whitelisted |
485 | snapd | 185.125.188.59:443 | api.snapcraft.io | Canonical Group Limited | GB | unknown |
485 | snapd | 185.125.188.54:443 | api.snapcraft.io | Canonical Group Limited | GB | unknown |
485 | snapd | 185.125.188.55:443 | api.snapcraft.io | Canonical Group Limited | GB | malicious |
Domain | IP | Reputation |
|---|---|---|
connectivity-check.ubuntu.com |
| whitelisted |
google.com |
| whitelisted |
odrs.gnome.org |
| whitelisted |
api.snapcraft.io |
| whitelisted |
173.100.168.192.in-addr.arpa |
| unknown |