IOC Report
na.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/na.elf
/tmp/na.elf

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7f9ba0031000
page execute read
malicious
558b61891000
page read and write
7f9ca6ec2000
page read and write
558b5de0e000
page read and write
7f9ca7a07000
page read and write
7f9ca79ba000
page read and write
7f9ca0021000
page read and write
7f9ca0000000
page read and write
7ffcf8f1b000
page read and write
558b5fe15000
page execute and read and write
7f9ca7521000
page read and write
7ffcf8ffe000
page execute read
7f9ca715f000
page read and write
7f9ca79c2000
page read and write
558b5dbe0000
page execute read
7f9ca66bf000
page read and write
7f9ca7546000
page read and write
558b5de17000
page read and write
7f9ca6ed0000
page read and write
7f9ba003b000
page read and write
7f9ba0036000
page read and write
7f9ca7891000
page read and write
558b5fe2c000
page read and write
There are 13 hidden memdumps, click here to show them.