IOC Report
28aJXAjdQU.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/28aJXAjdQU.elf
/tmp/28aJXAjdQU.elf
/tmp/28aJXAjdQU.elf
-
/tmp/28aJXAjdQU.elf
-

Domains

Name
IP
Malicious
w3d0ntlikebot5.parody
5.181.80.130

IPs

IP
Domain
Country
Malicious
204.76.203.63
unknown
Reserved
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
81d7000
page read and write
f7fe4000
page execute read
8053000
page execute read
ffb39000
page read and write
8054000
page read and write