IOC Report
ppc.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/ppc.elf
/tmp/ppc.elf
/tmp/ppc.elf
-
/tmp/ppc.elf
-

IPs

IP
Domain
Country
Malicious
85.239.34.134
unknown
Russian Federation
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7feb73ffe000
page read and write
7feb74861000
page read and write
7feb748a6000
page read and write
7feb743e5000
page read and write
5609b5093000
page read and write
5609b3b93000
page execute and read and write
5609b5093000
page read and write
7feb74859000
page read and write
5609b3ba9000
page read and write
5609b3b93000
page execute and read and write
7feb7355e000
page read and write
5609b1b95000
page read and write
7ffd6f5eb000
page execute read
5609b190a000
page execute read
7ffd6f5e1000
page read and write
7fea7c011000
page execute read
7feb73d61000
page read and write
7feb73d61000
page read and write
5609b1b95000
page read and write
7fea7c012000
page execute and read and write
7feb6c000000
page read and write
7feb73d6f000
page read and write
7feb748a6000
page read and write
7fea7c014000
page execute and read and write
5609b190a000
page execute read
5609b1b8d000
page read and write
7feb73ffe000
page read and write
7feb6c021000
page read and write
7feb73d6f000
page read and write
7feb74859000
page read and write
7feb7355e000
page read and write
7feb74861000
page read and write
7fea7c014000
page execute and read and write
7feb74730000
page read and write
7fea7c012000
page execute and read and write
7feb6c021000
page read and write
7feb743c0000
page read and write
7feb6c000000
page read and write
7fea7c011000
page execute read
7ffd6f5eb000
page execute read
5609b3ba9000
page read and write
7fea7c016000
page read and write
5609b1b8d000
page read and write
7fea7c016000
page read and write
7ffd6f5e1000
page read and write
7feb743c0000
page read and write
7feb743e5000
page read and write
7feb74730000
page read and write
There are 38 hidden memdumps, click here to show them.