IOC Report
5pl5TxJ4lJ.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/5pl5TxJ4lJ.elf
/tmp/5pl5TxJ4lJ.elf
/usr/lib/systemd/systemd
-
/usr/lib/snapd/snap-failure
/usr/lib/snapd/snap-failure snapd
/usr/lib/snapd/snap-failure
-
/usr/bin/systemctl
systemctl stop snapd.socket
/usr/lib/snapd/snap-failure
-

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.25

Memdumps

Base Address
Regiontype
Protect
Malicious
7f8c4041b000
page execute read
malicious
7f8c40444000
page read and write
7f8cc0021000
page read and write
55745127d000
page read and write
7f8cc77ff000
page read and write
7f8cc7c98000
page read and write
7f8cc71a0000
page read and write
7f8c4042f000
page read and write
7ffdd0a0d000
page read and write
557451285000
page read and write
7f8cc7ce5000
page read and write
7f8cc7b6f000
page read and write
55745329a000
page read and write
557451067000
page execute read
7ffdd0aed000
page execute read
557453283000
page execute and read and write
7f8cc699d000
page read and write
7f8cc743d000
page read and write
557454926000
page read and write
7f8cc7ca0000
page read and write
7f8cc0000000
page read and write
7f8cc71ae000
page read and write
7f8cc7824000
page read and write
There are 13 hidden memdumps, click here to show them.