IOC Report
na.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/na.elf
/tmp/na.elf
/tmp/na.elf
-
/tmp/na.elf
-

Domains

Name
IP
Malicious
xz33006.h52l.com
181.41.196.16
malicious

IPs

IP
Domain
Country
Malicious
181.41.196.16
xz33006.h52l.com
Chile
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
7fb170026000
page execute read
malicious
7fb277615000
page read and write
7fb277eaf000
page read and write
5641eaee8000
page read and write
7fb277e1d000
page read and write
7fb2789ce000
page read and write
7fb278b60000
page read and write
7fb2787ed000
page read and write
7fff8e59e000
page execute read
7fb278af7000
page read and write
7fb278211000
page read and write
7fb17002e000
page read and write
7fb27847c000
page read and write
5641ecf06000
page read and write
7fb27860b000
page read and write
5641ee5b1000
page read and write
7fb26ffff000
page read and write
7fb270021000
page read and write
7fb278b1b000
page read and write
5641eac97000
page execute read
7fff8e4dc000
page read and write
5641eaef1000
page read and write
7fb27849f000
page read and write
7fb170031000
page read and write
5641eceef000
page execute and read and write
There are 15 hidden memdumps, click here to show them.