Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
/usr/bin/dash
|
-
|
||
/usr/bin/rm
|
rm -f /tmp/tmp.D1NmELB0rm /tmp/tmp.toLr81zlGk /tmp/tmp.Vg0HMZOoDB
|
||
/usr/bin/dash
|
-
|
||
/usr/bin/rm
|
rm -f /tmp/tmp.D1NmELB0rm /tmp/tmp.toLr81zlGk /tmp/tmp.Vg0HMZOoDB
|
||
/tmp/SecuriteInfo.com.Trojan.Linux.GenericKD.24576.3485.14308.elf
|
/tmp/SecuriteInfo.com.Trojan.Linux.GenericKD.24576.3485.14308.elf
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
55700f0ff000
|
page read and write
|
|||
7f1379cfb000
|
page read and write
|
|||
557011114000
|
page read and write
|
|||
7f1379cde000
|
page read and write
|
|||
557012755000
|
page read and write
|
|||
31f000
|
page execute read
|
|||
7f1374021000
|
page read and write
|
|||
5570110fd000
|
page execute and read and write
|
|||
7f137a336000
|
page read and write
|
|||
7f1378e54000
|
page read and write
|
|||
7f137a33e000
|
page read and write
|
|||
7f137a02c000
|
page read and write
|
|||
55700f0f4000
|
page read and write
|
|||
7f137991a000
|
page read and write
|
|||
5f2000
|
page read and write
|
|||
7f137966a000
|
page read and write
|
|||
4000801000
|
page read and write
|
|||
5b2000
|
page read and write
|
|||
7f137a20d000
|
page read and write
|
|||
7f1379cbb000
|
page read and write
|
|||
55700ee6a000
|
page execute read
|
|||
7f137a383000
|
page read and write
|
|||
7ffcc9d8b000
|
page execute read
|
|||
7f137965c000
|
page read and write
|
|||
7ffcc9d52000
|
page read and write
|
There are 15 hidden memdumps, click here to show them.