IOC Report
la.bot.arm.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/la.bot.arm.elf
/tmp/la.bot.arm.elf

URLs

Name
IP
Malicious
http:///wget.sh
unknown
http:///curl.sh
unknown

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7f8003454000
page read and write
7f7ffbfff000
page read and write
55fb4952e000
page execute read
7f8003ad0000
page read and write
7f8003b15000
page read and write
7ffcae53e000
page read and write
55fb49788000
page read and write
7f80035c0000
page read and write
7f8003431000
page read and write
7f7efc039000
page read and write
7f7efc029000
page execute read
7f8002e64000
page read and write
7f7efc032000
page read and write
7f80025ca000
page read and write
55fb4977f000
page read and write
55fb4b79d000
page read and write
7f8002dd2000
page read and write
7ffcae5c3000
page execute read
7f80037a2000
page read and write
55fb4b786000
page execute and read and write
7f7ffc021000
page read and write
7f80031c6000
page read and write
55fb4d4bb000
page read and write
7f8003983000
page read and write
7f8003aac000
page read and write
There are 15 hidden memdumps, click here to show them.