IOC Report
la.bot.arm6.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/la.bot.arm6.elf
/tmp/la.bot.arm6.elf

URLs

Name
IP
Malicious
http:///wget.sh
unknown
http:///curl.sh
unknown

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.25

Memdumps

Base Address
Regiontype
Protect
Malicious
7f2abc021000
page read and write
5627a6c7b000
page read and write
7f2ac2a70000
page read and write
7f2ac2dbe000
page read and write
7f2ac30c8000
page read and write
7f2ac1be6000
page read and write
7f29bc02c000
page execute read
7fff50510000
page read and write
7f2ac3131000
page read and write
5627a859c000
page read and write
7f29bc035000
page read and write
7f2ac2bdc000
page read and write
7f29bc03c000
page read and write
7f2ac2f9f000
page read and write
7f2ac30ec000
page read and write
7f2ac23ee000
page read and write
7f2abbfff000
page read and write
5627a6c64000
page execute and read and write
5627a4c66000
page read and write
7f2ac27e2000
page read and write
7fff505c8000
page execute read
5627a4c5d000
page read and write
7f2ac2480000
page read and write
5627a4a0c000
page execute read
7f2ac2a4d000
page read and write
There are 15 hidden memdumps, click here to show them.