Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
/tmp/botnet.arm7.elf
|
/tmp/botnet.arm7.elf
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
http://upx.sf.net
|
unknown
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
daisy.ubuntu.com
|
162.213.35.24
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
7f4a00021000
|
page read and write
|
|||
7f4a0564c000
|
page read and write
|
|||
7ffc6ed70000
|
page execute read
|
|||
560341b22000
|
page read and write
|
|||
7f4a05c28000
|
page read and write
|
|||
560341b19000
|
page read and write
|
|||
7f4a052ea000
|
page read and write
|
|||
7f4a04a50000
|
page read and write
|
|||
7f49ff7fe000
|
page read and write
|
|||
7ffc6ed06000
|
page read and write
|
|||
560343b37000
|
page read and write
|
|||
7f4a05a46000
|
page read and write
|
|||
560343b20000
|
page execute and read and write
|
|||
7f4a05258000
|
page read and write
|
|||
7f49fffff000
|
page read and write
|
|||
7f4a05f32000
|
page read and write
|
|||
7f4a05e09000
|
page read and write
|
|||
7f4a058da000
|
page read and write
|
|||
7f4a058b7000
|
page read and write
|
|||
7f490003d000
|
page read and write
|
|||
560343ecf000
|
page read and write
|
|||
5603418c8000
|
page execute read
|
|||
7f4900023000
|
page execute read
|
|||
7f4a05f56000
|
page read and write
|
|||
7f4a05f9b000
|
page read and write
|
There are 15 hidden memdumps, click here to show them.