IOC Report
la.bot.arm6.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/la.bot.arm6.elf
/tmp/la.bot.arm6.elf

URLs

Name
IP
Malicious
http:///wget.sh
unknown
http:///curl.sh
unknown

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.25

Memdumps

Base Address
Regiontype
Protect
Malicious
7fc5a1b4b000
page read and write
7fc49c03a000
page read and write
7fc5a155b000
page read and write
7ffe405b5000
page read and write
7fc59c021000
page read and write
7fc5a1b28000
page read and write
55e30c3f4000
page execute and read and write
7fc5a18bd000
page read and write
7fc5a1e99000
page read and write
7fc49c02b000
page execute read
55e30d141000
page read and write
7fc5a207a000
page read and write
55e30a3ed000
page read and write
55e30c40b000
page read and write
55e30a3f6000
page read and write
55e30a19c000
page execute read
7fc49c033000
page read and write
7fc5a1cb7000
page read and write
7ffe405e2000
page execute read
7fc5a21a3000
page read and write
7fc5a0cc1000
page read and write
7fc5a21c7000
page read and write
7fc5a220c000
page read and write
7fc5a14c9000
page read and write
7fc59bfff000
page read and write
There are 15 hidden memdumps, click here to show them.