IOC Report
la.bot.arm7.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/la.bot.arm7.elf
/tmp/la.bot.arm7.elf

URLs

Name
IP
Malicious
http:///wget.sh
unknown
http:///curl.sh
unknown

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.25

Memdumps

Base Address
Regiontype
Protect
Malicious
7f61b6df7000
page read and write
7f61b0021000
page read and write
7ffea04fb000
page execute read
7f60b0037000
page read and write
557224ef3000
page read and write
557224eea000
page read and write
7f60b0040000
page read and write
557226ef1000
page execute and read and write
7f61b6e60000
page read and write
7f61b6e1b000
page read and write
7ffea04da000
page read and write
7f61affff000
page read and write
557224c99000
page execute read
7f61b6cce000
page read and write
7f61b5915000
page read and write
557228312000
page read and write
7f61b6511000
page read and write
7f61b611d000
page read and write
7f61b6aed000
page read and write
7f61b61af000
page read and write
557226f08000
page read and write
7f61b679f000
page read and write
7f61b677c000
page read and write
7f61b690b000
page read and write
7f60b002f000
page execute read
There are 15 hidden memdumps, click here to show them.