IOC Report
bot.arm6.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/bot.arm6.elf
/tmp/bot.arm6.elf

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7f8900037000
page execute read
malicious
7f8a087e5000
page read and write
7ffca2b9a000
page execute read
7f8a08877000
page read and write
7f8a094e3000
page read and write
7f8a091b5000
page read and write
7f8a07fdd000
page read and write
7f8900043000
page read and write
5592b45b4000
page execute and read and write
7f8a094bf000
page read and write
7f89fffff000
page read and write
7f8900048000
page read and write
7f8a08e67000
page read and write
7f8a08bd9000
page read and write
7f8a08fd3000
page read and write
7f8a09396000
page read and write
5592b25ad000
page read and write
5592b45cb000
page read and write
7ffca2ace000
page read and write
7f8a09528000
page read and write
5592b5b77000
page read and write
7f8a08e44000
page read and write
5592b25b6000
page read and write
5592b235c000
page execute read
7f8a00021000
page read and write
There are 15 hidden memdumps, click here to show them.