Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
/tmp/nklspc.elf
|
/tmp/nklspc.elf
|
||
/tmp/nklspc.elf
|
-
|
||
/tmp/nklspc.elf
|
-
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http:///wget.sh
|
unknown
|
||
http:///curl.sh
|
unknown
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
7fe84623c000
|
page read and write
|
|||
7fe8459d9000
|
page read and write
|
|||
7fe84610b000
|
page read and write
|
|||
5576ee709000
|
page execute and read and write
|
|||
7fe844f39000
|
page read and write
|
|||
7ffe257e2000
|
page read and write
|
|||
7fe84574a000
|
page read and write
|
|||
7fe840000000
|
page read and write
|
|||
7fe740020000
|
page execute read
|
|||
5576ee720000
|
page read and write
|
|||
7fe840021000
|
page read and write
|
|||
7fe845dc0000
|
page read and write
|
|||
5576f059d000
|
page read and write
|
|||
7fe740031000
|
page read and write
|
|||
5576ec702000
|
page read and write
|
|||
5576ec70b000
|
page read and write
|
|||
5576ec4d4000
|
page execute read
|
|||
7fe845d9b000
|
page read and write
|
|||
7fe846234000
|
page read and write
|
|||
7fe740030000
|
page read and write
|
|||
7fe84573c000
|
page read and write
|
|||
7ffe257fe000
|
page execute read
|
|||
7fe846281000
|
page read and write
|
There are 13 hidden memdumps, click here to show them.