IOC Report
boatnet.sh4.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/boatnet.sh4.elf
/tmp/boatnet.sh4.elf

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7fa16c413000
page execute read
malicious
7fa1f41ee000
page read and write
55d42cb20000
page read and write
55d42cb28000
page read and write
7fa1f3b8f000
page read and write
55d430848000
page read and write
7fa16c423000
page read and write
7fa1ec021000
page read and write
55d42eb3d000
page read and write
7fa1f338c000
page read and write
7ffdde193000
page execute read
7fa1f4687000
page read and write
7fa1ec000000
page read and write
7fa1f4213000
page read and write
7fa1f455e000
page read and write
7fa1f3b9d000
page read and write
55d42c90a000
page execute read
7ffdde075000
page read and write
55d42eb26000
page execute and read and write
7fa1f3e2c000
page read and write
7fa1f468f000
page read and write
7fa1f46d4000
page read and write
There are 12 hidden memdumps, click here to show them.