IOC Report
WINSx8yLsb.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/WINSx8yLsb.elf
/tmp/WINSx8yLsb.elf

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7feb60032000
page execute read
malicious
55a1b8019000
page read and write
7fec6656e000
page read and write
7fec660d5000
page read and write
7fec60021000
page read and write
7feb6004b000
page read and write
7fec660fa000
page read and write
55a1b4f31000
page execute read
7fec65273000
page read and write
7fec66576000
page read and write
7fec65a84000
page read and write
7fec65d13000
page read and write
7feb60047000
page read and write
55a1b7166000
page execute and read and write
55a1b5168000
page read and write
7fec665bb000
page read and write
7ffd4279d000
page execute read
7ffd42698000
page read and write
7fec65a76000
page read and write
55a1b515f000
page read and write
7fec66445000
page read and write
55a1b717d000
page read and write
7fec60000000
page read and write
There are 13 hidden memdumps, click here to show them.