Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
/tmp/na.elf
|
/tmp/na.elf
|
||
/tmp/na.elf
|
-
|
||
/tmp/na.elf
|
-
|
||
/tmp/na.elf
|
-
|
||
/tmp/na.elf
|
-
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
jsgd.us-tv.top
|
205.185.120.246
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
205.185.120.246
|
jsgd.us-tv.top
|
United States
|
||
109.202.202.202
|
unknown
|
Switzerland
|
||
91.189.91.43
|
unknown
|
United Kingdom
|
||
91.189.91.42
|
unknown
|
United Kingdom
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
7f98d002b000
|
page execute read
|
|||
7f98d002b000
|
page execute read
|
|||
558efc248000
|
page execute read
|
|||
7f98d0033000
|
page read and write
|
|||
7f99d8312000
|
page read and write
|
|||
7f99d8312000
|
page read and write
|
|||
7f99d0021000
|
page read and write
|
|||
558efe4b7000
|
page read and write
|
|||
7f99d82cd000
|
page read and write
|
|||
7fff34fcb000
|
page execute read
|
|||
7f99d7661000
|
page read and write
|
|||
7f99d79c3000
|
page read and write
|
|||
7f99d7c2e000
|
page read and write
|
|||
7f99d7dbd000
|
page read and write
|
|||
7f99d0021000
|
page read and write
|
|||
7f99d6dc7000
|
page read and write
|
|||
7f99d82cd000
|
page read and write
|
|||
558efe4a0000
|
page execute and read and write
|
|||
7f99d75cf000
|
page read and write
|
|||
7f98d0033000
|
page read and write
|
|||
558efe4a0000
|
page execute and read and write
|
|||
7f98d0038000
|
page read and write
|
|||
7fff34f85000
|
page read and write
|
|||
558efc499000
|
page read and write
|
|||
7f99d82a9000
|
page read and write
|
|||
7f99cffff000
|
page read and write
|
|||
7f99d7c2e000
|
page read and write
|
|||
7f99d8180000
|
page read and write
|
|||
7f99d7f9f000
|
page read and write
|
|||
7f99d7c51000
|
page read and write
|
|||
558efc4a2000
|
page read and write
|
|||
7f99d7c51000
|
page read and write
|
|||
7f99cffff000
|
page read and write
|
|||
558f00116000
|
page read and write
|
|||
558f000f5000
|
page read and write
|
|||
7f98d0038000
|
page read and write
|
|||
7fff34f85000
|
page read and write
|
|||
558efc499000
|
page read and write
|
|||
558efc248000
|
page execute read
|
|||
7f99d8180000
|
page read and write
|
|||
7f99d7dbd000
|
page read and write
|
|||
7f99d6dc7000
|
page read and write
|
|||
7fff34fcb000
|
page execute read
|
|||
558efc4a2000
|
page read and write
|
|||
558efe4b7000
|
page read and write
|
|||
7f99d79c3000
|
page read and write
|
|||
7f99d82a9000
|
page read and write
|
|||
7f99d7661000
|
page read and write
|
|||
7f99d7f9f000
|
page read and write
|
|||
7f99d75cf000
|
page read and write
|
There are 40 hidden memdumps, click here to show them.