IOC Report
na.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/na.elf
/tmp/na.elf
/usr/lib/systemd/systemd
-
/usr/lib/snapd/snap-failure
/usr/lib/snapd/snap-failure snapd
/usr/lib/snapd/snap-failure
-
/usr/bin/systemctl
systemctl stop snapd.socket
/usr/lib/snapd/snap-failure
-

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.24

Memdumps

Base Address
Regiontype
Protect
Malicious
55b69e7f5000
page read and write
7f063567c000
page read and write
7f053007c000
page read and write
7f0635c49000
page read and write
7f0630021000
page read and write
55b69b2aa000
page execute read
7ffd5c1d8000
page execute read
7f0635fba000
page read and write
7f06355ea000
page read and write
55b69d503000
page execute and read and write
7f063632d000
page read and write
7ffd5c1a2000
page read and write
55b69b504000
page read and write
7f0530072000
page execute read
7f0635c6c000
page read and write
7f06359de000
page read and write
7f06362c4000
page read and write
55b69b4fb000
page read and write
7f06362e8000
page read and write
7f0635dd8000
page read and write
7f063619b000
page read and write
7f0634de2000
page read and write
7f0530088000
page read and write
55b69d519000
page read and write
There are 14 hidden memdumps, click here to show them.