IOC Report
la.bot.arm5.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/la.bot.arm5.elf
/tmp/la.bot.arm5.elf

URLs

Name
IP
Malicious
http:///wget.sh
unknown
http:///curl.sh
unknown

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.25

Memdumps

Base Address
Regiontype
Protect
Malicious
564968e8d000
page read and write
564968c3c000
page execute read
7f68128a8000
page read and write
7f6812863000
page read and write
7f681135d000
page read and write
56496ae94000
page execute and read and write
7f68121e7000
page read and write
7f6812716000
page read and write
564968e96000
page read and write
7f6811bf7000
page read and write
7f680bfff000
page read and write
7f6812535000
page read and write
7f670c029000
page execute read
7fff3292f000
page read and write
7f670c039000
page read and write
7f6811f59000
page read and write
7f6811b65000
page read and write
7f68121c4000
page read and write
56496b609000
page read and write
56496aeab000
page read and write
7f680c021000
page read and write
7f681283f000
page read and write
7f670c032000
page read and write
7fff329bf000
page execute read
7f6812353000
page read and write
There are 15 hidden memdumps, click here to show them.