IOC Report
xd.arm5.elf

loading gifProcessesURLsIPsMemdumps20102Label

Processes

Path
Cmdline
Malicious
/tmp/xd.arm5.elf
/tmp/xd.arm5.elf
/tmp/xd.arm5.elf
-

URLs

Name
IP
Malicious
http://upx.sf.net
unknown

IPs

IP
Domain
Country
Malicious
209.141.33.93
unknown
United States
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
Download
7f15b7fff000
page read and write
563d16d09000
page execute read
7f15b8021000
page read and write
7ffcde96b000
page read and write
7f15be030000
page read and write
7f14b8023000
page execute read
563d16f5a000
page read and write
7f15beb4f000
page read and write
7f14b8030000
page read and write
563d18f78000
page read and write
7ffcde9f8000
page execute read
7f15be96e000
page read and write
7f15bd796000
page read and write
7f15be78c000
page read and write
7f15bec78000
page read and write
7f15bec9c000
page read and write
563d16f63000
page read and write
7f15bece1000
page read and write
7f15be5fd000
page read and write
7f15be620000
page read and write
563d18f61000
page execute and read and write
563d192a4000
page read and write
7f15bdf9e000
page read and write
7f15be392000
page read and write
There are 14 hidden memdumps, click here to show them.