IOC Report
na.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/na.elf
/tmp/na.elf
/tmp/na.elf
-
/tmp/na.elf
-
/tmp/na.elf
-
/tmp/na.elf
-

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.24

IPs

IP
Domain
Country
Malicious
82.26.236.250
unknown
United Kingdom
193.155.36.160
unknown
Germany
14.14.232.194
unknown
Japan
248.157.47.244
unknown
Reserved
115.210.228.58
unknown
China
149.22.102.40
unknown
United States
58.86.168.109
unknown
Taiwan; Republic of China (ROC)
39.229.238.197
unknown
Indonesia
3.214.53.107
unknown
United States
197.247.118.60
unknown
Morocco
56.236.109.159
unknown
United States
245.165.248.39
unknown
Reserved
14.165.161.12
unknown
Viet Nam
123.165.168.0
unknown
China
93.213.159.150
unknown
Germany
181.145.111.22
unknown
Colombia
139.100.146.219
unknown
France
112.37.42.24
unknown
China
101.155.120.112
unknown
China
100.119.198.255
unknown
Reserved
49.25.247.194
unknown
Korea Republic of
168.68.41.219
unknown
United States
89.254.83.74
unknown
Norway
247.96.144.188
unknown
Reserved
107.211.214.80
unknown
United States
2.147.123.180
unknown
Iran (ISLAMIC Republic Of)
250.149.174.49
unknown
Reserved
114.239.75.206
unknown
China
81.221.227.21
unknown
Switzerland
18.221.123.81
unknown
United States
252.156.125.192
unknown
Reserved
28.178.221.220
unknown
United States
84.113.33.37
unknown
Austria
78.119.70.108
unknown
France
89.189.49.194
unknown
Italy
156.19.217.38
unknown
United States
31.71.147.67
unknown
United Kingdom
219.228.232.242
unknown
China
98.169.148.231
unknown
United States
27.65.70.96
unknown
Viet Nam
94.49.114.75
unknown
Saudi Arabia
140.27.229.27
unknown
United States
83.232.60.238
unknown
Netherlands
109.50.110.204
unknown
Portugal
47.136.40.216
unknown
United States
174.66.57.240
unknown
United States
212.126.114.245
unknown
Iraq
194.216.214.105
unknown
United Kingdom
246.184.35.251
unknown
Reserved
72.120.248.199
unknown
United States
58.121.228.87
unknown
Korea Republic of
21.137.9.36
unknown
United States
73.81.32.135
unknown
United States
62.117.177.214
unknown
Spain
98.148.193.48
unknown
United States
179.212.44.8
unknown
Brazil
52.222.183.53
unknown
United States
166.152.139.122
unknown
United States
93.8.219.206
unknown
France
120.194.122.144
unknown
China
16.3.142.229
unknown
United States
84.240.158.199
unknown
Italy
183.71.211.216
unknown
China
160.126.83.198
unknown
United States
86.254.157.161
unknown
France
106.232.88.64
unknown
China
136.130.192.131
unknown
United States
243.48.168.67
unknown
Reserved
1.253.210.140
unknown
Korea Republic of
162.143.204.20
unknown
United States
32.206.187.36
unknown
United States
16.211.51.70
unknown
United States
75.115.244.9
unknown
United States
190.96.153.48
unknown
Colombia
197.152.229.125
unknown
Tanzania United Republic of
76.115.85.201
unknown
United States
58.137.181.91
unknown
Thailand
211.98.148.11
unknown
China
171.53.230.235
unknown
India
29.10.45.93
unknown
United States
187.233.251.48
unknown
Mexico
99.25.229.93
unknown
United States
84.198.245.41
unknown
Belgium
4.108.169.108
unknown
United States
62.242.47.129
unknown
Denmark
134.23.230.189
unknown
United States
24.82.33.77
unknown
Canada
207.178.153.97
unknown
United States
34.104.155.0
unknown
United States
147.251.29.56
unknown
Czech Republic
179.56.136.138
unknown
Chile
81.160.140.120
unknown
Hungary
90.245.30.49
unknown
United Kingdom
49.77.5.15
unknown
China
34.94.213.2
unknown
United States
206.211.149.89
unknown
United States
210.110.159.166
unknown
Korea Republic of
36.111.209.36
unknown
China
214.124.210.10
unknown
United States
159.142.215.21
unknown
United States
There are 90 hidden IPs, click here to show them.

Memdumps

Base Address
Regiontype
Protect
Malicious
7f9148922000
page read and write
560d5d5f2000
page read and write
7f9149af4000
page read and write
7f91493c2000
page read and write
7f90c441d000
page read and write
7ffc5d411000
page read and write
7f9149c1d000
page read and write
560d5f60f000
page read and write
560d5f5f8000
page execute and read and write
560d5d5fa000
page read and write
7f90c4424000
page read and write
7f9144000000
page read and write
560d61377000
page read and write
7f90c440d000
page execute read
7f9149133000
page read and write
7f9144021000
page read and write
7f9149c6a000
page read and write
7f9149125000
page read and write
7f9149784000
page read and write
7ffc5d42b000
page execute read
7f91497a9000
page read and write
560d5d3dc000
page execute read
7f9149c25000
page read and write
There are 13 hidden memdumps, click here to show them.