IOC Report
sh4.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/sh4.elf
/tmp/sh4.elf
/tmp/sh4.elf
-
/tmp/sh4.elf
-
/tmp/sh4.elf
-
/tmp/sh4.elf
-

Domains

Name
IP
Malicious
193.84.71.119
unknown
malicious

IPs

IP
Domain
Country
Malicious
193.84.71.119
unknown
Poland
malicious

Memdumps

Base Address
Regiontype
Protect
Malicious
7f8ed6c7e000
page read and write
7f8e5041c000
page read and write
7f8ed690e000
page read and write
7f8ed0021000
page read and write
557bf325b000
page read and write
7f8ed6c7e000
page read and write
7f8ed62bd000
page read and write
7f8ed6daf000
page read and write
7f8ed0000000
page read and write
7f8e5041d000
page read and write
7f8ed5aac000
page read and write
7f8ed5aac000
page read and write
7f8e5041d000
page read and write
7f8ed6daf000
page read and write
557bf5270000
page read and write
557bf6601000
page read and write
557bf6601000
page read and write
7f8ed690e000
page read and write
7f8ed5aac000
page read and write
557bf5270000
page read and write
7f8ed0021000
page read and write
7f8ed6933000
page read and write
7f8ed6933000
page read and write
7f8ed6c7e000
page read and write
557bf303d000
page execute read
557bf5259000
page execute and read and write
7f8ed6933000
page read and write
557bf303d000
page execute read
7f8ed654c000
page read and write
557bf5270000
page read and write
7f8ed62af000
page read and write
7f8ed6da7000
page read and write
7fffa51c4000
page execute read
557bf3253000
page read and write
7fffa51c4000
page execute read
7f8ed6daf000
page read and write
557bf5259000
page execute and read and write
7f8e5040b000
page execute read
7f8ed0000000
page read and write
7f8ed654c000
page read and write
7f8ed6da7000
page read and write
7f8ed6df4000
page read and write
7f8ed62bd000
page read and write
7f8ed6da7000
page read and write
7fffa5134000
page read and write
7fffa51c4000
page execute read
557bf6601000
page read and write
7f8ed0021000
page read and write
7f8e5041c000
page read and write
7f8ed62af000
page read and write
557bf303d000
page execute read
557bf3253000
page read and write
7f8ed690e000
page read and write
7f8ed0000000
page read and write
7f8ed654c000
page read and write
7f8ed62bd000
page read and write
7f8ed6df4000
page read and write
557bf3253000
page read and write
7f8e5041c000
page read and write
7fffa5134000
page read and write
7f8e5040b000
page execute read
557bf325b000
page read and write
7f8e5040b000
page execute read
7fffa5134000
page read and write
7f8ed6df4000
page read and write
557bf325b000
page read and write
7f8ed62af000
page read and write
7f8e5041d000
page read and write
557bf5259000
page execute and read and write
There are 59 hidden memdumps, click here to show them.