IOC Report
bDPV6D6zlx.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/bDPV6D6zlx.elf
/tmp/bDPV6D6zlx.elf
/tmp/bDPV6D6zlx.elf
-
/tmp/bDPV6D6zlx.elf
-

URLs

Name
IP
Malicious
91.92.240.85:23
malicious
http://91.92.240.85/bins.sh;
unknown

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.25

IPs

IP
Domain
Country
Malicious
91.92.240.85
unknown
Bulgaria
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
55d0fa962000
page execute and read and write
55d0fa979000
page read and write
7fe29f07b000
page read and write
7fe29f58d000
page read and write
55d0fc83f000
page read and write
55d0f895a000
page read and write
7ffe59464000
page read and write
7fe298000000
page read and write
7fe29f6b6000
page read and write
7fe29e9dc000
page read and write
7fe29f05e000
page read and write
7fe218434000
page read and write
7fe21841b000
page execute read
55d0fa979000
page read and write
7fe29f3ac000
page read and write
7fe29f703000
page read and write
7fe21841b000
page execute read
55d0fc83f000
page read and write
55d0f8964000
page read and write
7ffe59464000
page read and write
7fe21842c000
page read and write
55d0f86d2000
page execute read
7ffe595ef000
page execute read
55d0f8964000
page read and write
7fe29f6b6000
page read and write
7fe29f703000
page read and write
7fe218434000
page read and write
7fe298000000
page read and write
7fe29ec9a000
page read and write
7fe29e9ea000
page read and write
7fe29f6be000
page read and write
7fe29f03b000
page read and write
7fe298021000
page read and write
7fe29f58d000
page read and write
55d0fa962000
page execute and read and write
7fe298021000
page read and write
7fe29e1d4000
page read and write
7fe29f3ac000
page read and write
55d0f86d2000
page execute read
55d0f895a000
page read and write
7fe29ec9a000
page read and write
7fe29f6be000
page read and write
7ffe595ef000
page execute read
7fe29e9ea000
page read and write
7fe29f07b000
page read and write
7fe29f05e000
page read and write
7fe29f03b000
page read and write
7fe29e9dc000
page read and write
7fe21842c000
page read and write
7fe29e1d4000
page read and write
There are 40 hidden memdumps, click here to show them.