Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
/tmp/na.elf
|
/tmp/na.elf
|
||
/tmp/na.elf
|
-
|
||
/tmp/na.elf
|
-
|
||
/tmp/na.elf
|
-
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
krddnsnet.dyn
|
154.90.62.142
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
154.90.62.142
|
krddnsnet.dyn
|
Seychelles
|
||
109.202.202.202
|
unknown
|
Switzerland
|
||
91.189.91.43
|
unknown
|
United Kingdom
|
||
91.189.91.42
|
unknown
|
United Kingdom
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
55af7706e000
|
page execute read
|
|||
7ffc696cb000
|
page execute read
|
|||
7ff3b7e6e000
|
page read and write
|
|||
55af7933d000
|
page read and write
|
|||
7ff3b0021000
|
page read and write
|
|||
7ff3b760b000
|
page read and write
|
|||
7ff33000d000
|
page execute read
|
|||
7ff3b6b6b000
|
page read and write
|
|||
7ff3b7d3d000
|
page read and write
|
|||
7ff3b79f2000
|
page read and write
|
|||
7ff330017000
|
page read and write
|
|||
7ffc69621000
|
page read and write
|
|||
55af792a6000
|
page execute and read and write
|
|||
55af772a8000
|
page read and write
|
|||
7ff3b7e66000
|
page read and write
|
|||
55af7944e000
|
page read and write
|
|||
7ff3b79cd000
|
page read and write
|
|||
7ff3b736e000
|
page read and write
|
|||
7ff330010000
|
page read and write
|
|||
7ff3b0000000
|
page read and write
|
|||
7ff3b737c000
|
page read and write
|
|||
7ff3b7eb3000
|
page read and write
|
|||
55af772a0000
|
page read and write
|
There are 13 hidden memdumps, click here to show them.