IOC Report
la.bot.arm6.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/la.bot.arm6.elf
/tmp/la.bot.arm6.elf

URLs

Name
IP
Malicious
http:///wget.sh
unknown
http:///curl.sh
unknown

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.24

Memdumps

Base Address
Regiontype
Protect
Malicious
7f6b2e73f000
page read and write
7f6b2ee23000
page read and write
5592e3b97000
page read and write
7f6b2edde000
page read and write
5592e3b80000
page execute and read and write
7f6b2e172000
page read and write
7f6b2e8ce000
page read and write
5592e1928000
page execute read
5592e4417000
page read and write
7f6b28021000
page read and write
7f6b2eab0000
page read and write
7f6b2e762000
page read and write
7fffa3f39000
page read and write
7f6b27fff000
page read and write
7f6b2e4d4000
page read and write
7f6b2edba000
page read and write
5592e1b82000
page read and write
7f6b2d8d8000
page read and write
7f6b2ec91000
page read and write
7f6b2e0e0000
page read and write
7f6a28035000
page read and write
7fffa3faa000
page execute read
7f6a2803c000
page read and write
7f6a2802c000
page execute read
5592e1b79000
page read and write
There are 15 hidden memdumps, click here to show them.