IOC Report
JGG1a56dcB.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/JGG1a56dcB.elf
/tmp/JGG1a56dcB.elf

URLs

Name
IP
Malicious
http://schemas.xmlsoap.org/soap/encoding/
unknown
http://schemas.xmlsoap.org/soap/envelope/
unknown

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7f76e002c000
page execute read
malicious
557408628000
page read and write
5574058a0000
page execute read
7fff1f3ca000
page read and write
557407ad5000
page execute and read and write
557407aec000
page read and write
7f77e5765000
page read and write
7fff1f3f0000
page execute read
7f77e57b2000
page read and write
7f77e52cc000
page read and write
7f77e446a000
page read and write
7f77e563c000
page read and write
7f77e0021000
page read and write
557405ace000
page read and write
7f77e4c7b000
page read and write
7f77e4c6d000
page read and write
7f76e0042000
page read and write
7f77e576d000
page read and write
7f77e0000000
page read and write
7f77e4f0a000
page read and write
7f76e003e000
page read and write
7f77e52f1000
page read and write
557405ad7000
page read and write
There are 13 hidden memdumps, click here to show them.