IOC Report
SecuriteInfo.com.Linux.Siggen.9999.30246.30798.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/SecuriteInfo.com.Linux.Siggen.9999.30246.30798.elf
/tmp/SecuriteInfo.com.Linux.Siggen.9999.30246.30798.elf

URLs

Name
IP
Malicious
http://upx.sf.net
unknown
malicious

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
56130d233000
page read and write
56130f231000
page execute and read and write
7f5acc41e000
page execute read
7f5acc430000
page read and write
7f5b52286000
page read and write
7f5b52269000
page read and write
7ffd71b51000
page read and write
56130f248000
page read and write
7f5b5290e000
page read and write
56130cfa1000
page execute read
56130d229000
page read and write
7f5b52798000
page read and write
7f5b52246000
page read and write
7f5b528c1000
page read and write
7f5b4c000000
page read and write
7f5b513df000
page read and write
7f5b51ea5000
page read and write
7ffd71b68000
page execute read
56130f4e4000
page read and write
7f5b4c021000
page read and write
7f5acc140000
page execute and read and write
7f5b51be7000
page read and write
7f5b51bf5000
page read and write
7f5b525b7000
page read and write
7f5b528c9000
page read and write
There are 15 hidden memdumps, click here to show them.