IOC Report
la.bot.arm6.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/la.bot.arm6.elf
/tmp/la.bot.arm6.elf

URLs

Name
IP
Malicious
http:///wget.sh
unknown
http:///curl.sh
unknown

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
555dd4ef7000
page read and write
7fd6c3fff000
page read and write
7fd6ca8bd000
page read and write
7fd5c402b000
page execute read
555dd4ee0000
page execute and read and write
555dd2c88000
page execute read
7fd6ca023000
page read and write
7fd6cb019000
page read and write
7fd6c4021000
page read and write
7fd6cb505000
page read and write
7fd6cac1f000
page read and write
555dd5502000
page read and write
7fd6caead000
page read and write
7fd6cb56e000
page read and write
7fd5c403b000
page read and write
7fd6cb3dc000
page read and write
555dd2ee2000
page read and write
7fd6cb529000
page read and write
555dd2ed9000
page read and write
7fd5c4034000
page read and write
7fd6cae8a000
page read and write
7ffecad20000
page read and write
7ffecad49000
page execute read
7fd6ca82b000
page read and write
7fd6cb1fb000
page read and write
There are 15 hidden memdumps, click here to show them.