IOC Report
bJC4H147mB.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/bJC4H147mB.elf
/tmp/bJC4H147mB.elf
/usr/bin/dash
-
/usr/bin/rm
rm -f /tmp/tmp.MDFBZFUGiB /tmp/tmp.2nBAIp2TFT /tmp/tmp.ak5R7DwSTE
/usr/bin/dash
-
/usr/bin/rm
rm -f /tmp/tmp.MDFBZFUGiB /tmp/tmp.2nBAIp2TFT /tmp/tmp.ak5R7DwSTE

IPs

IP
Domain
Country
Malicious
34.249.145.219
unknown
United States
109.202.202.202
unknown
Switzerland
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7f459a9b1000
page read and write
7f459a723000
page read and write
7f459a98e000
page read and write
7f449403a000
page read and write
7f4594021000
page read and write
7f459a32f000
page read and write
55c6cda31000
page read and write
7f459b009000
page read and write
7f459ab1d000
page read and write
7f459a3c1000
page read and write
7f4593fff000
page read and write
55c6ccf24000
page read and write
7f4494030000
page read and write
7f459b02d000
page read and write
7fff44e10000
page read and write
7f459acff000
page read and write
7f459b072000
page read and write
7fff44e57000
page execute read
7f4494028000
page execute read
55c6caf0f000
page read and write
55c6caf06000
page read and write
7f4599b27000
page read and write
55c6ccf0d000
page execute and read and write
7f459aee0000
page read and write
55c6cacb5000
page execute read
There are 15 hidden memdumps, click here to show them.