IOC Report
PdZXqwmJYf.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/PdZXqwmJYf.elf
/tmp/PdZXqwmJYf.elf
/tmp/PdZXqwmJYf.elf
-
/tmp/PdZXqwmJYf.elf
-
/tmp/PdZXqwmJYf.elf
-

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.25

IPs

IP
Domain
Country
Malicious
176.123.4.187
unknown
Moldova Republic of
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
7f086c422000
page execute read
malicious
7f086c422000
page execute read
malicious
7f086c422000
page execute read
malicious
55e3a9784000
page execute and read and write
55e3a979b000
page read and write
7f08f1f98000
page read and write
7f08f2a5e000
page read and write
7f08f3351000
page read and write
7f08f1f98000
page read and write
7f08f2e22000
page read and write
7f08ec000000
page read and write
7f08ec021000
page read and write
7f08f3170000
page read and write
7f086c43c000
page read and write
55e3a777c000
page read and write
7f086c43c000
page read and write
7f08f3170000
page read and write
7f08f347a000
page read and write
7f08f3482000
page read and write
7f08f1f98000
page read and write
7f08f2a5e000
page read and write
7f08f2e3f000
page read and write
55e3a7786000
page read and write
7ffc41a84000
page read and write
7ffc41a84000
page read and write
7f08f347a000
page read and write
7f08ec000000
page read and write
7f08f27ae000
page read and write
7f08ec021000
page read and write
7f086c43c000
page read and write
55e3a979b000
page read and write
7f086c433000
page read and write
7ffc41b7d000
page execute read
55e3a777c000
page read and write
55e3a74f4000
page execute read
7ffc41b7d000
page execute read
55e3a979b000
page read and write
7f08f34c7000
page read and write
7f08f27a0000
page read and write
55e3a9dd4000
page read and write
7f08f3482000
page read and write
55e3a9784000
page execute and read and write
7f08f34c7000
page read and write
7f08ec021000
page read and write
7f08f34c7000
page read and write
7f08f27ae000
page read and write
7f08f2e3f000
page read and write
7f08ec000000
page read and write
7f086c433000
page read and write
55e3a7786000
page read and write
7f08f3351000
page read and write
7f08f2e22000
page read and write
7f08f2e22000
page read and write
7f08f3482000
page read and write
7f08f3170000
page read and write
55e3a7786000
page read and write
7f08f347a000
page read and write
7f08f2e3f000
page read and write
7ffc41a84000
page read and write
7f08f27ae000
page read and write
7f08f2dff000
page read and write
7ffc41b7d000
page execute read
7f086c433000
page read and write
7f08f27a0000
page read and write
7f08f2dff000
page read and write
7f08f2a5e000
page read and write
7f08f27a0000
page read and write
55e3a9dd4000
page read and write
55e3a777c000
page read and write
55e3a9784000
page execute and read and write
55e3a74f4000
page execute read
7f08f2dff000
page read and write
55e3a9dd4000
page read and write
55e3a74f4000
page execute read
7f08f3351000
page read and write
There are 65 hidden memdumps, click here to show them.