Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
/tmp/botnt.arm5.elf
|
/tmp/botnt.arm5.elf
|
||
/tmp/botnt.arm5.elf
|
-
|
||
/tmp/botnt.arm5.elf
|
-
|
||
/tmp/botnt.arm5.elf
|
-
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
k.parasjha.one
|
92.223.30.118
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
0.159.99.4
|
unknown
|
unknown
|
||
23.225.63.251
|
unknown
|
United States
|
||
172.247.148.76
|
unknown
|
United States
|
||
92.38.135.247
|
unknown
|
Austria
|
||
154.214.7.220
|
unknown
|
Seychelles
|
||
154.214.7.222
|
unknown
|
Seychelles
|
||
23.224.130.196
|
unknown
|
United States
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
7f7bfff4d000
|
page read and write
|
|||
7f7c005cf000
|
page read and write
|
|||
7ffd42e8e000
|
page read and write
|
|||
7f7c00c4b000
|
page read and write
|
|||
7f7c005ac000
|
page read and write
|
|||
55fd7b68f000
|
page execute and read and write
|
|||
55fd79437000
|
page execute read
|
|||
55fd7b6a6000
|
page read and write
|
|||
7f7c00c90000
|
page read and write
|
|||
55fd79688000
|
page read and write
|
|||
7f7c0073b000
|
page read and write
|
|||
7f7c0091d000
|
page read and write
|
|||
7f7c00afe000
|
page read and write
|
|||
7f7c00341000
|
page read and write
|
|||
7ffd42f1e000
|
page execute read
|
|||
7f7bf7fff000
|
page read and write
|
|||
7f7bfffdf000
|
page read and write
|
|||
7f7af8035000
|
page read and write
|
|||
7f7bff745000
|
page read and write
|
|||
55fd7c6cc000
|
page read and write
|
|||
7f7af8034000
|
page read and write
|
|||
7f7c00c27000
|
page read and write
|
|||
7f7af802b000
|
page execute read
|
|||
55fd79691000
|
page read and write
|
|||
7f7bf8021000
|
page read and write
|
There are 15 hidden memdumps, click here to show them.