IOC Report
OkTC3AlPZZ.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/OkTC3AlPZZ.elf
/tmp/OkTC3AlPZZ.elf
/tmp/OkTC3AlPZZ.elf
-
/tmp/OkTC3AlPZZ.elf
-

URLs

Name
IP
Malicious
193.35.18.56:65490
malicious

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.24

IPs

IP
Domain
Country
Malicious
193.35.18.56
unknown
Germany
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
7f905c030000
page execute read
malicious
7f905c030000
page execute read
malicious
5622ec3d8000
page execute and read and write
7f91621cc000
page read and write
7f91620a3000
page read and write
5622ea3da000
page read and write
5622ea3da000
page read and write
7f9161584000
page read and write
7f9161ce0000
page read and write
7f915c021000
page read and write
5622ea3d1000
page read and write
7f91618e6000
page read and write
5622ec3ef000
page read and write
5622ea180000
page execute read
7f9161b74000
page read and write
7ffed8341000
page read and write
7f9161b51000
page read and write
5622ea180000
page execute read
7f905c039000
page read and write
7f9162235000
page read and write
5622ea3d1000
page read and write
7ffed83cd000
page execute read
5622ed473000
page read and write
7f915bfff000
page read and write
7f9160cea000
page read and write
7ffed83cd000
page execute read
7f9162235000
page read and write
7ffed8341000
page read and write
5622ec3ef000
page read and write
7f9161b51000
page read and write
7f91621f0000
page read and write
7f905c041000
page read and write
7f91618e6000
page read and write
5622ed472000
page read and write
7f91620a3000
page read and write
7f905c041000
page read and write
7f91621cc000
page read and write
7f915bfff000
page read and write
5622ec3d8000
page execute and read and write
5622ed451000
page read and write
7f9161ec2000
page read and write
7f91621f0000
page read and write
7f915c021000
page read and write
7f9160cea000
page read and write
7f9161ec2000
page read and write
7f9161b74000
page read and write
7f905c039000
page read and write
7f91614f2000
page read and write
7f91614f2000
page read and write
7f9161584000
page read and write
7f9161ce0000
page read and write
There are 41 hidden memdumps, click here to show them.