IOC Report
la.bot.arm.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/la.bot.arm.elf
/tmp/la.bot.arm.elf

URLs

Name
IP
Malicious
http:///wget.sh
unknown
http:///curl.sh
unknown

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7ffd567e0000
page execute read
55bc62954000
page read and write
55bc61745000
page read and write
7f216120c000
page read and write
55bc5f4d6000
page execute read
7f21615cf000
page read and write
7f215bfff000
page read and write
55bc5f727000
page read and write
7f205c039000
page read and write
7f2160e12000
page read and write
7f21610a0000
page read and write
7f21616f8000
page read and write
7f2160a1e000
page read and write
7f215c021000
page read and write
7ffd56639000
page read and write
7f205c029000
page execute read
7f2161761000
page read and write
55bc6172e000
page execute and read and write
7f205c032000
page read and write
7f2160216000
page read and write
7f21613ee000
page read and write
7f216171c000
page read and write
7f2160ab0000
page read and write
55bc5f730000
page read and write
7f216107d000
page read and write
There are 15 hidden memdumps, click here to show them.