IOC Report
arm6.nn.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/arm6.nn.elf
/tmp/arm6.nn.elf

URLs

Name
IP
Malicious
http://193.143.1.70/curl.sh
unknown
http://193.143.1.70/lol.sh
unknown
http://193.143.1.70/
unknown

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.24

Memdumps

Base Address
Regiontype
Protect
Malicious
7fce6c032000
page execute read
malicious
7fcf7520c000
page read and write
7fcf751a3000
page read and write
7fcf748bd000
page read and write
7fcf74e99000
page read and write
7fcf73cc1000
page read and write
7fce6c045000
page read and write
7ffc575a7000
page execute read
7fcf6c021000
page read and write
560fb1f8d000
page execute and read and write
7fcf74b4b000
page read and write
560faff86000
page read and write
560fb1fa4000
page read and write
7fcf7507a000
page read and write
7fce6c03b000
page read and write
7ffc57550000
page read and write
7fcf751c7000
page read and write
7fcf6bfff000
page read and write
560fb2a17000
page read and write
560faff8f000
page read and write
7fcf7455b000
page read and write
7fcf74b28000
page read and write
7fcf744c9000
page read and write
560fafd35000
page execute read
7fcf74cb7000
page read and write
There are 15 hidden memdumps, click here to show them.