Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
/tmp/28aJXAjdQU.elf
|
/tmp/28aJXAjdQU.elf
|
||
/tmp/28aJXAjdQU.elf
|
-
|
||
/tmp/28aJXAjdQU.elf
|
-
|
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
w3d0ntlikebot5.parody
|
5.181.80.130
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
204.76.203.63
|
unknown
|
Reserved
|
Memdumps
Base Address
|
Regiontype
|
Protect
|
Malicious
|
|
---|---|---|---|---|
81d7000
|
page read and write
|
|||
f7fe4000
|
page execute read
|
|||
8053000
|
page execute read
|
|||
ffb39000
|
page read and write
|
|||
8054000
|
page read and write
|