IOC Report
boatnet.arm5.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/boatnet.arm5.elf
/tmp/boatnet.arm5.elf

URLs

Name
IP
Malicious
http://upx.sf.net
unknown
malicious

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7f60d802a000
page execute read
malicious
5610e9bfe000
page read and write
7ffdab4b1000
page read and write
7f61dcafc000
page read and write
5610ebc1c000
page read and write
7f61dd15b000
page read and write
7ffdab4de000
page execute read
7f61dd2ea000
page read and write
7f61dd7fa000
page read and write
7f60d8044000
page execute and read and write
7f61dd7d6000
page read and write
7f61d7fff000
page read and write
7f60d8046000
page execute read
7f61d8021000
page read and write
7f61dcef0000
page read and write
7f61dd6ad000
page read and write
5610e9c07000
page read and write
7f61dc2f4000
page read and write
7f60d8047000
page execute and read and write
7f61dd4cc000
page read and write
7f61dd83f000
page read and write
7f61dd17e000
page read and write
5610ed5fa000
page read and write
7f61dcb8e000
page read and write
5610ebc05000
page execute and read and write
7f60d8032000
page read and write
5610e99ad000
page execute read
There are 17 hidden memdumps, click here to show them.