IOC Report
la.bot.m68k.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/la.bot.m68k.elf
/tmp/la.bot.m68k.elf

URLs

Name
IP
Malicious
http:///wget.sh
unknown
http:///curl.sh
unknown

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7fb80cf14000
page read and write
7fb80d8d5000
page read and write
7fb80d58a000
page read and write
7fb80da06000
page read and write
7ffe8a2ae000
page execute read
564f798a7000
page read and write
7fb80d565000
page read and write
7fb80cf06000
page read and write
7fb80d9fe000
page read and write
564f77734000
page read and write
564f79732000
page execute and read and write
7fb80da4b000
page read and write
7ffe8a29f000
page read and write
564f774fa000
page execute read
7fb788013000
page execute read
7fb80c703000
page read and write
7fb788015000
page read and write
564f797c9000
page read and write
7fb808021000
page read and write
7fb80d1a3000
page read and write
7fb808000000
page read and write
7fb78801c000
page read and write
564f7772c000
page read and write
There are 13 hidden memdumps, click here to show them.