IOC Report
botnt.arm5.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/botnt.arm5.elf
/tmp/botnt.arm5.elf
/tmp/botnt.arm5.elf
-
/tmp/botnt.arm5.elf
-
/tmp/botnt.arm5.elf
-

Domains

Name
IP
Malicious
k.parasjha.one
92.223.30.118

IPs

IP
Domain
Country
Malicious
0.159.99.4
unknown
unknown
23.225.63.251
unknown
United States
172.247.148.76
unknown
United States
92.38.135.247
unknown
Austria
154.214.7.220
unknown
Seychelles
154.214.7.222
unknown
Seychelles
23.224.130.196
unknown
United States

Memdumps

Base Address
Regiontype
Protect
Malicious
7f7bfff4d000
page read and write
7f7c005cf000
page read and write
7ffd42e8e000
page read and write
7f7c00c4b000
page read and write
7f7c005ac000
page read and write
55fd7b68f000
page execute and read and write
55fd79437000
page execute read
55fd7b6a6000
page read and write
7f7c00c90000
page read and write
55fd79688000
page read and write
7f7c0073b000
page read and write
7f7c0091d000
page read and write
7f7c00afe000
page read and write
7f7c00341000
page read and write
7ffd42f1e000
page execute read
7f7bf7fff000
page read and write
7f7bfffdf000
page read and write
7f7af8035000
page read and write
7f7bff745000
page read and write
55fd7c6cc000
page read and write
7f7af8034000
page read and write
7f7c00c27000
page read and write
7f7af802b000
page execute read
55fd79691000
page read and write
7f7bf8021000
page read and write
There are 15 hidden memdumps, click here to show them.