IOC Report
63PPG1bWEo.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/63PPG1bWEo.elf
/tmp/63PPG1bWEo.elf
/tmp/63PPG1bWEo.elf
-
/tmp/63PPG1bWEo.elf
-
/tmp/63PPG1bWEo.elf
-

Domains

Name
IP
Malicious
jhbaghjbasdg.shop
185.196.8.213
malicious

IPs

IP
Domain
Country
Malicious
185.196.8.213
jhbaghjbasdg.shop
Switzerland
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
55d843fea000
page read and write
7f9f2f6b2000
page read and write
7f9e28029000
page execute read
7f9f2f4d1000
page read and write
7ffc9efcb000
page execute read
7ffc9eec3000
page read and write
7f9e28034000
page read and write
7ffc9efcb000
page execute read
7f9f2f7ff000
page read and write
55d844eaa000
page read and write
7f9f2f844000
page read and write
7f9f2f160000
page read and write
55d843fd3000
page execute and read and write
7f9f2f183000
page read and write
7f9f2eef5000
page read and write
7f9f2e2f9000
page read and write
7f9f2f6b2000
page read and write
55d841fd5000
page read and write
7f9e28029000
page execute read
7f9f2f7ff000
page read and write
7f9f2f844000
page read and write
7f9e28031000
page read and write
55d843fd3000
page execute and read and write
7f9f2f160000
page read and write
55d841d7b000
page execute read
7ffc9eec3000
page read and write
7f9f2eb93000
page read and write
7f9f2eb93000
page read and write
7f9e28031000
page read and write
7f9f28021000
page read and write
55d841fcc000
page read and write
55d841fd5000
page read and write
7f9f2f2ef000
page read and write
7f9f2eb01000
page read and write
7f9f27fff000
page read and write
7f9f2f183000
page read and write
55d841fcc000
page read and write
7f9f2eb01000
page read and write
7f9f2e2f9000
page read and write
55d844eaa000
page read and write
7f9f28021000
page read and write
7f9f2f2ef000
page read and write
7f9f2f7db000
page read and write
7f9f27fff000
page read and write
55d841d7b000
page execute read
7f9f2f7db000
page read and write
7f9f2f4d1000
page read and write
55d843fea000
page read and write
7f9e28034000
page read and write
7f9f2eef5000
page read and write
There are 40 hidden memdumps, click here to show them.