IOC Report
firmware.mips.elf

loading gif

Files

File Path
Type
Category
Malicious
firmware.mips.elf
ELF 32-bit MSB executable, MIPS, MIPS-I version 1 (SYSV), statically linked, stripped
initial sample
malicious
/etc/d
ASCII text
dropped

Processes

Path
Cmdline
Malicious
/tmp/firmware.mips.elf
/tmp/firmware.mips.elf

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.25

Memdumps

Base Address
Regiontype
Protect
Malicious
7efcc9dae000
page read and write
7efcc9a3d000
page read and write
7efc44468000
page read and write
55d8c4c75000
page execute and read and write
55d8c2c77000
page read and write
7ffe2ffce000
page execute read
55d8c4c8c000
page read and write
7efc44463000
page read and write
7ffe2fef4000
page read and write
7efcc4021000
page read and write
7efcc969c000
page read and write
7efcc93ec000
page read and write
7efcc9f8f000
page read and write
7efcc8bd6000
page read and write
7efcc9a7d000
page read and write
55d8c29e5000
page execute read
7efc44422000
page execute read
55d8c51d6000
page read and write
7efcca0c0000
page read and write
7efcc93de000
page read and write
7efcc9a60000
page read and write
55d8c2c6d000
page read and write
7efcca105000
page read and write
7efcca0b8000
page read and write
7efcc4000000
page read and write
There are 15 hidden memdumps, click here to show them.