Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
/tmp/na.elf
|
/tmp/na.elf
|
||
/tmp/na.elf
|
-
|
||
/tmp/na.elf
|
-
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
nineteen.libre. [malformed]
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
38.60.249.66
|
unknown
|
United States
|
||
63.231.92.27
|
unknown
|
United States
|
||
109.202.202.202
|
unknown
|
Switzerland
|
||
185.84.81.194
|
unknown
|
Germany
|
||
91.189.91.43
|
unknown
|
United Kingdom
|
||
91.189.91.42
|
unknown
|
United Kingdom
|
||
161.97.219.84
|
unknown
|
United States
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
7faca0452000
|
page read and write
|
|||
56131c28e000
|
page read and write
|
|||
7fad2634c000
|
page read and write
|
|||
56131a279000
|
page read and write
|
|||
7fad27026000
|
page read and write
|
|||
7fad269eb000
|
page read and write
|
|||
7fad25b44000
|
page read and write
|
|||
7fad20021000
|
page read and write
|
|||
7ffdcfd30000
|
page read and write
|
|||
7ffdcfd49000
|
page execute read
|
|||
7fad2660a000
|
page read and write
|
|||
7fad26d1c000
|
page read and write
|
|||
7faca0411000
|
page execute read
|
|||
56131c277000
|
page execute and read and write
|
|||
7fad27073000
|
page read and write
|
|||
7faca0459000
|
page read and write
|
|||
56131a26f000
|
page read and write
|
|||
7fad26efd000
|
page read and write
|
|||
7fad269ab000
|
page read and write
|
|||
7fad2635a000
|
page read and write
|
|||
7fad269ce000
|
page read and write
|
|||
561319fe7000
|
page execute read
|
|||
7fad2702e000
|
page read and write
|
|||
7fad20000000
|
page read and write
|
|||
56131cae6000
|
page read and write
|
There are 15 hidden memdumps, click here to show them.