Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
/tmp/most-x86.elf
|
/tmp/most-x86.elf
|
||
/tmp/most-x86.elf
|
-
|
||
/tmp/most-x86.elf
|
-
|
||
/tmp/most-x86.elf
|
-
|
||
/usr/bin/xfce4-session
|
-
|
||
/usr/bin/xfdesktop
|
xfdesktop --display :1.0 --sm-client-id 29178b886-02e2-48f2-9471-8dbd02206542
|
||
/usr/bin/xfce4-session
|
-
|
||
/usr/bin/xfdesktop
|
xfdesktop --display :1.0 --sm-client-id 29178b886-02e2-48f2-9471-8dbd02206542
|
||
/usr/bin/xfce4-session
|
-
|
||
/usr/bin/xfdesktop
|
xfdesktop --display :1.0 --sm-client-id 29178b886-02e2-48f2-9471-8dbd02206542
|
||
/usr/bin/xfce4-session
|
-
|
||
/usr/bin/xfdesktop
|
xfdesktop --display :1.0 --sm-client-id 29178b886-02e2-48f2-9471-8dbd02206542
|
||
/usr/bin/xfce4-session
|
-
|
||
/usr/bin/xfdesktop
|
xfdesktop --display :1.0 --sm-client-id 29178b886-02e2-48f2-9471-8dbd02206542
|
There are 4 hidden processes, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
net-killer.ooguy.com
|
103.151.239.121
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
103.151.239.121
|
net-killer.ooguy.com
|
unknown
|
||
109.202.202.202
|
unknown
|
Switzerland
|
||
91.189.91.43
|
unknown
|
United Kingdom
|
||
91.189.91.42
|
unknown
|
United Kingdom
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
805b000
|
page execute read
|
|||
805b000
|
page execute read
|
|||
fff4c000
|
page read and write
|
|||
8064000
|
page read and write
|
|||
8064000
|
page read and write
|
|||
8f94000
|
page read and write
|
|||
f7f12000
|
page execute read
|
|||
8f94000
|
page read and write
|
|||
8060000
|
page read and write
|
|||
8060000
|
page read and write
|
|||
fff4c000
|
page read and write
|
|||
f7f12000
|
page execute read
|
There are 2 hidden memdumps, click here to show them.