IOC Report
Au4yf52Szd.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/Au4yf52Szd.elf
/tmp/Au4yf52Szd.elf
/tmp/Au4yf52Szd.elf
-
/tmp/Au4yf52Szd.elf
-
/tmp/Au4yf52Szd.elf
-

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.24

IPs

IP
Domain
Country
Malicious
176.123.4.187
unknown
Moldova Republic of
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
7f5670030000
page execute read
malicious
7f5670030000
page execute read
malicious
7f5670030000
page execute read
malicious
7f5778f39000
page read and write
5642c917b000
page read and write
7f577862f000
page read and write
7f577862f000
page read and write
5642cb199000
page read and write
5642c917b000
page read and write
7f5777a33000
page read and write
7f5770021000
page read and write
5642cb199000
page read and write
7f5778c0b000
page read and write
7f5670040000
page read and write
5642c9184000
page read and write
7f577889a000
page read and write
7f5778f7e000
page read and write
7f5670039000
page read and write
5642ccf44000
page read and write
7f5778dec000
page read and write
7f5777a33000
page read and write
7f5778a29000
page read and write
7f57782cd000
page read and write
5642c8f2a000
page execute read
5642c8f2a000
page execute read
7f5770021000
page read and write
7ffdd291e000
page execute read
7f5778f7e000
page read and write
5642cb182000
page execute and read and write
7f57788bd000
page read and write
7f577823b000
page read and write
7f576ffff000
page read and write
7f5778f7e000
page read and write
7f57782cd000
page read and write
7f577823b000
page read and write
7f5778f15000
page read and write
5642ccf44000
page read and write
7f577862f000
page read and write
7f5778dec000
page read and write
7ffdd291e000
page execute read
7f576ffff000
page read and write
7ffdd2919000
page read and write
7f5778f15000
page read and write
7f5777a33000
page read and write
7f5670039000
page read and write
5642cb182000
page execute and read and write
7f5778dec000
page read and write
7f5778f15000
page read and write
7ffdd2919000
page read and write
7f5770021000
page read and write
7f57788bd000
page read and write
7f5670040000
page read and write
5642cb182000
page execute and read and write
7f576ffff000
page read and write
7f5778f39000
page read and write
5642cb199000
page read and write
5642ccf44000
page read and write
5642c917b000
page read and write
7f57788bd000
page read and write
7f5778a29000
page read and write
7f577823b000
page read and write
5642c9184000
page read and write
7f5778c0b000
page read and write
7f5778f39000
page read and write
7f5778c0b000
page read and write
7f5778a29000
page read and write
7f5670040000
page read and write
5642c9184000
page read and write
7f5670039000
page read and write
5642c8f2a000
page execute read
7f57782cd000
page read and write
7f577889a000
page read and write
7f577889a000
page read and write
7ffdd291e000
page execute read
7ffdd2919000
page read and write
There are 65 hidden memdumps, click here to show them.