IOC Report
la.bot.m68k.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/la.bot.m68k.elf
/tmp/la.bot.m68k.elf

URLs

Name
IP
Malicious
http:///wget.sh
unknown
http:///curl.sh
unknown

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.24

Memdumps

Base Address
Regiontype
Protect
Malicious
7f9bf8021000
page read and write
56028af90000
page execute read
56028da68000
page read and write
7ffcec600000
page execute read
7f9b7801c000
page read and write
56028d25f000
page read and write
7f9bffd95000
page read and write
7f9bff532000
page read and write
56028b1ca000
page read and write
7f9bff295000
page read and write
56028b1c2000
page read and write
7f9bffdda000
page read and write
7f9bff8f4000
page read and write
7f9b78015000
page read and write
7f9bfea92000
page read and write
7f9bff919000
page read and write
56028d1c8000
page execute and read and write
7f9bffc64000
page read and write
7f9bf8000000
page read and write
7f9b78013000
page execute read
7f9bff2a3000
page read and write
7f9bffd8d000
page read and write
7ffcec5ee000
page read and write
There are 13 hidden memdumps, click here to show them.