IOC Report
eFRX5kWfol.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/eFRX5kWfol.elf
/tmp/eFRX5kWfol.elf
/usr/bin/dash
-
/usr/bin/rm
rm -f /tmp/tmp.lP3ujbDVHq /tmp/tmp.sGvxnbEPCz /tmp/tmp.Ji4EecG5YZ
/usr/bin/dash
-
/usr/bin/rm
rm -f /tmp/tmp.lP3ujbDVHq /tmp/tmp.sGvxnbEPCz /tmp/tmp.Ji4EecG5YZ

Domains

Name
IP
Malicious
daisy.ubuntu.com
162.213.35.24

IPs

IP
Domain
Country
Malicious
54.217.10.153
unknown
United States

Memdumps

Base Address
Regiontype
Protect
Malicious
530000
page read and write
41b000
page execute read
7ffc86331000
page read and write
631000
page read and write
7ffc86376000
page execute read