IOC Report
8lzQh5F8lt.elf

loading gif

Processes

Path
Cmdline
Malicious
/usr/bin/dash
-
/usr/bin/rm
rm -f /tmp/tmp.CYk8MuxQaI /tmp/tmp.yRbbqgjDr7 /tmp/tmp.iqDdXm5vlC
/usr/bin/dash
-
/usr/bin/cat
cat /tmp/tmp.CYk8MuxQaI
/usr/bin/dash
-
/usr/bin/head
head -n 10
/usr/bin/dash
-
/usr/bin/tr
tr -d \\000-\\011\\013\\014\\016-\\037
/usr/bin/dash
-
/usr/bin/cut
cut -c -80
/usr/bin/dash
-
/usr/bin/cat
cat /tmp/tmp.CYk8MuxQaI
/usr/bin/dash
-
/usr/bin/head
head -n 10
/usr/bin/dash
-
/usr/bin/tr
tr -d \\000-\\011\\013\\014\\016-\\037
/usr/bin/dash
-
/usr/bin/cut
cut -c -80
/usr/bin/dash
-
/usr/bin/rm
rm -f /tmp/tmp.CYk8MuxQaI /tmp/tmp.yRbbqgjDr7 /tmp/tmp.iqDdXm5vlC
/tmp/8lzQh5F8lt.elf
/tmp/8lzQh5F8lt.elf
/tmp/8lzQh5F8lt.elf
-
/tmp/8lzQh5F8lt.elf
-
/tmp/8lzQh5F8lt.elf
-
/tmp/8lzQh5F8lt.elf
-
There are 15 hidden processes, click here to show them.

IPs

IP
Domain
Country
Malicious
65.131.38.219
unknown
United States
101.102.207.24
unknown
Japan
54.168.59.198
unknown
United States
45.173.76.64
unknown
Brazil
83.16.62.114
unknown
Poland
109.79.102.193
unknown
Ireland
166.50.136.60
unknown
United States
136.53.110.240
unknown
United States
48.5.11.93
unknown
United States
76.58.153.84
unknown
United States
185.71.13.143
unknown
Switzerland
202.213.223.79
unknown
Japan
13.213.43.239
unknown
United States
186.213.21.216
unknown
Brazil
116.198.160.6
unknown
China
75.74.47.233
unknown
United States
68.143.234.235
unknown
United States
39.69.244.185
unknown
China
142.150.250.14
unknown
Canada
115.33.14.82
unknown
China
45.176.183.118
unknown
Brazil
71.222.85.47
unknown
United States
83.245.144.36
unknown
Finland
18.75.205.198
unknown
United States
64.94.12.234
unknown
United States
122.220.116.194
unknown
Japan
70.181.105.51
unknown
United States
140.240.66.225
unknown
China
114.199.124.56
unknown
Indonesia
52.55.4.101
unknown
United States
48.67.24.206
unknown
United States
123.8.73.65
unknown
China
93.125.83.176
unknown
Belarus
27.189.35.194
unknown
China
99.18.216.73
unknown
United States
136.160.238.151
unknown
United States
194.1.14.97
unknown
Slovakia (SLOVAK Republic)
177.194.0.106
unknown
Brazil
210.26.108.109
unknown
China
75.20.216.70
unknown
United States
34.25.84.232
unknown
United States
216.186.136.6
unknown
United States
167.47.24.235
unknown
Canada
131.85.43.93
unknown
United States
196.58.32.171
unknown
Seychelles
196.136.113.59
unknown
Egypt
93.204.191.38
unknown
Germany
99.41.85.211
unknown
United States
176.242.84.199
unknown
Italy
185.121.200.0
unknown
Croatia (LOCAL Name: Hrvatska)
139.65.64.61
unknown
United States
221.245.137.240
unknown
Japan
172.171.219.163
unknown
United States
69.31.120.97
unknown
United States
79.246.77.120
unknown
Germany
171.14.107.243
unknown
China
53.153.108.45
unknown
Germany
23.157.196.199
unknown
Reserved
42.152.242.60
unknown
Malaysia
81.120.137.92
unknown
Italy
87.136.201.45
unknown
Germany
101.17.108.228
unknown
China
189.166.227.115
unknown
Mexico
93.28.7.196
unknown
France
219.226.153.16
unknown
China
66.216.213.5
unknown
United States
75.134.246.175
unknown
United States
195.64.94.82
unknown
Netherlands
125.172.247.38
unknown
Japan
201.246.161.149
unknown
Chile
156.114.33.37
unknown
Netherlands
177.127.229.37
unknown
Brazil
137.54.216.10
unknown
United States
85.53.70.123
unknown
Spain
8.208.198.83
unknown
Singapore
189.20.154.117
unknown
Brazil
120.179.242.196
unknown
Indonesia
51.227.18.102
unknown
United States
9.75.55.26
unknown
United States
176.196.14.230
unknown
Russian Federation
117.26.163.12
unknown
China
201.13.213.85
unknown
Brazil
129.66.74.53
unknown
United States
102.148.89.8
unknown
Zambia
200.246.162.177
unknown
Brazil
107.112.85.158
unknown
United States
114.190.78.21
unknown
Japan
138.93.155.243
unknown
United States
204.243.128.143
unknown
United States
31.226.165.42
unknown
Germany
38.144.99.87
unknown
United States
178.121.229.59
unknown
Belarus
173.175.185.173
unknown
United States
79.48.47.24
unknown
Italy
179.177.63.160
unknown
Brazil
163.100.32.2
unknown
France
88.190.58.13
unknown
France
197.220.77.205
unknown
Somalia
193.45.101.1
unknown
Sweden
189.198.19.27
unknown
Mexico
There are 90 hidden IPs, click here to show them.

Memdumps

Base Address
Regiontype
Protect
Malicious
8055000
page execute read
malicious
8055000
page execute read
malicious
8055000
page execute read
malicious
831d000
page read and write
8056000
page read and write
f7fd2000
page execute read
ffb6b000
page read and write
831d000
page read and write
8056000
page read and write
f7fd2000
page execute read
ffb6b000
page read and write
f7fd2000
page execute read
ffb6b000
page read and write
831d000
page read and write
8056000
page read and write
There are 5 hidden memdumps, click here to show them.