IOC Report
na.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/na.elf
/tmp/na.elf
/tmp/na.elf
-
/tmp/na.elf
-
/tmp/na.elf
-
/tmp/na.elf
-

Domains

Name
IP
Malicious
jsgd.us-tv.top
205.185.120.246
malicious

IPs

IP
Domain
Country
Malicious
205.185.120.246
jsgd.us-tv.top
United States
malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7f98d002b000
page execute read
malicious
7f98d002b000
page execute read
malicious
558efc248000
page execute read
7f98d0033000
page read and write
7f99d8312000
page read and write
7f99d8312000
page read and write
7f99d0021000
page read and write
558efe4b7000
page read and write
7f99d82cd000
page read and write
7fff34fcb000
page execute read
7f99d7661000
page read and write
7f99d79c3000
page read and write
7f99d7c2e000
page read and write
7f99d7dbd000
page read and write
7f99d0021000
page read and write
7f99d6dc7000
page read and write
7f99d82cd000
page read and write
558efe4a0000
page execute and read and write
7f99d75cf000
page read and write
7f98d0033000
page read and write
558efe4a0000
page execute and read and write
7f98d0038000
page read and write
7fff34f85000
page read and write
558efc499000
page read and write
7f99d82a9000
page read and write
7f99cffff000
page read and write
7f99d7c2e000
page read and write
7f99d8180000
page read and write
7f99d7f9f000
page read and write
7f99d7c51000
page read and write
558efc4a2000
page read and write
7f99d7c51000
page read and write
7f99cffff000
page read and write
558f00116000
page read and write
558f000f5000
page read and write
7f98d0038000
page read and write
7fff34f85000
page read and write
558efc499000
page read and write
558efc248000
page execute read
7f99d8180000
page read and write
7f99d7dbd000
page read and write
7f99d6dc7000
page read and write
7fff34fcb000
page execute read
558efc4a2000
page read and write
558efe4b7000
page read and write
7f99d79c3000
page read and write
7f99d82a9000
page read and write
7f99d7661000
page read and write
7f99d7f9f000
page read and write
7f99d75cf000
page read and write
There are 40 hidden memdumps, click here to show them.