IOC Report
na.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/na.elf
/tmp/na.elf
/tmp/na.elf
-
/tmp/na.elf
-

URLs

Name
IP
Malicious
93.123.85.205:7777
malicious

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.25

IPs

IP
Domain
Country
Malicious
93.123.85.205
unknown
Bulgaria
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
7ff020410000
page execute read
malicious
7ff020410000
page execute read
malicious
7ff0a6b10000
page read and write
55f44c5ea000
page read and write
55f44e607000
page read and write
55f44c5f2000
page read and write
7ff0a69e7000
page read and write
7ff0a6026000
page read and write
55f44ff48000
page read and write
7ff0a6018000
page read and write
7ff0a69e7000
page read and write
7ff0a6b18000
page read and write
7ff0a6b18000
page read and write
55f44e607000
page read and write
7ff0a5815000
page read and write
7ff0a6026000
page read and write
7ff020411000
page read and write
55f44e5f0000
page execute and read and write
7ffc038e7000
page execute read
7ff0a6018000
page read and write
7ff0a62b5000
page read and write
7ff0a669c000
page read and write
7ff0a6b5d000
page read and write
7ff0a5815000
page read and write
7ffc03892000
page read and write
7ff020417000
page read and write
7ff0a6b10000
page read and write
7ffc03892000
page read and write
55f44e5f0000
page execute and read and write
55f44c3d4000
page execute read
7ff0a669c000
page read and write
7ff0a0021000
page read and write
7ff0a6677000
page read and write
7ff020417000
page read and write
7ffc038e7000
page execute read
55f44ff48000
page read and write
7ff0a0021000
page read and write
7ff0a62b5000
page read and write
55f44c3d4000
page execute read
7ff020411000
page read and write
7ff0a6677000
page read and write
7ff0a6b5d000
page read and write
7ff0a0000000
page read and write
55f44c5ea000
page read and write
7ff0a0000000
page read and write
55f44c5f2000
page read and write
There are 36 hidden memdumps, click here to show them.