IOC Report
na.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/na.elf
/tmp/na.elf

URLs

Name
IP
Malicious
http://57.128.197.64/maga.sh
unknown

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.25

IPs

IP
Domain
Country
Malicious
59.131.99.25
unknown
Japan
134.53.142.48
unknown
United States
197.149.99.183
unknown
Nigeria
177.200.140.218
unknown
unknown
14.218.221.83
unknown
China
26.151.45.112
unknown
United States
139.190.114.66
unknown
Pakistan
122.195.37.228
unknown
China
203.255.30.163
unknown
Korea Republic of
177.234.57.6
unknown
Mexico
34.196.85.229
unknown
United States
202.7.177.221
unknown
Australia
172.88.57.159
unknown
United States
211.4.56.45
unknown
Japan
164.118.166.234
unknown
United States
206.179.147.179
unknown
Canada
112.62.187.238
unknown
China
24.131.248.152
unknown
United States
148.244.169.236
unknown
Mexico
41.255.181.15
unknown
Libyan Arab Jamahiriya
131.171.142.84
unknown
United States
3.138.214.206
unknown
United States
242.239.193.39
unknown
Reserved
220.188.109.51
unknown
China
132.5.19.130
unknown
United States
36.61.116.40
unknown
China
26.119.224.117
unknown
United States
93.124.124.172
unknown
Russian Federation
151.101.174.214
unknown
United States
208.131.79.242
unknown
United States
154.185.86.106
unknown
Egypt
212.87.162.102
unknown
Estonia
244.113.62.185
unknown
Reserved
9.228.39.146
unknown
United States
12.120.42.3
unknown
United States
29.80.212.212
unknown
United States
61.156.229.180
unknown
China
249.188.28.97
unknown
Reserved
66.215.147.152
unknown
United States
152.128.54.148
unknown
United States
174.54.201.24
unknown
United States
153.228.197.36
unknown
Japan
9.92.83.221
unknown
United States
242.44.40.13
unknown
Reserved
17.152.255.11
unknown
United States
187.175.35.232
unknown
Mexico
105.132.49.238
unknown
Morocco
190.120.140.131
unknown
Colombia
14.189.94.158
unknown
Viet Nam
102.148.89.7
unknown
Zambia
128.243.247.249
unknown
United Kingdom
145.150.163.0
unknown
Netherlands
69.188.240.8
unknown
United States
0.43.1.108
unknown
unknown
178.160.211.216
unknown
Armenia
137.20.186.131
unknown
United States
165.77.115.138
unknown
United States
243.156.141.128
unknown
Reserved
244.139.138.246
unknown
Reserved
1.160.74.55
unknown
Taiwan; Republic of China (ROC)
17.182.150.195
unknown
United States
19.0.95.112
unknown
United States
43.1.45.119
unknown
Japan
118.9.246.86
unknown
Japan
55.181.27.229
unknown
United States
220.59.96.111
unknown
Japan
13.132.244.223
unknown
United States
59.147.85.170
unknown
Japan
130.156.150.163
unknown
United States
13.0.106.91
unknown
United States
6.196.147.103
unknown
United States
241.30.34.179
unknown
Reserved
86.147.4.131
unknown
United Kingdom
98.163.162.233
unknown
United States
213.139.236.57
unknown
Georgia
253.240.92.204
unknown
Reserved
75.238.236.21
unknown
United States
252.18.37.15
unknown
Reserved
249.86.180.201
unknown
Reserved
195.55.150.133
unknown
Spain
151.112.73.114
unknown
United States
160.214.64.48
unknown
Spain
249.223.62.39
unknown
Reserved
69.34.123.142
unknown
United States
120.86.76.227
unknown
China
119.100.180.253
unknown
China
87.104.142.251
unknown
Denmark
101.79.48.46
unknown
Korea Republic of
148.123.215.141
unknown
Norway
180.30.210.35
unknown
Japan
30.207.198.248
unknown
United States
106.52.29.67
unknown
China
164.242.94.78
unknown
United States
112.253.14.91
unknown
China
155.181.80.212
unknown
United States
169.219.243.151
unknown
Korea Republic of
20.119.116.84
unknown
United States
176.238.18.116
unknown
Turkey
133.236.112.178
unknown
Japan
91.38.235.47
unknown
Germany
There are 90 hidden IPs, click here to show them.

Memdumps

Base Address
Regiontype
Protect
Malicious
7f0903369000
page read and write
584000
page execute read
7f09474ab000
page read and write
7ffe70917000
page read and write
727000
page read and write
7f09155fb000
page read and write
7f090347a000
page read and write
7f0949dda000
page read and write
7f0949cfb000
page read and write
7ffe709df000
page execute read
7f0903469000
page read and write
7f090547a000
page read and write
7f0949881000
page read and write
7f09355fb000
page read and write
74e000
page read and write
c001800000
page read and write
There are 6 hidden memdumps, click here to show them.