IOC Report
wheiuwa4.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/wheiuwa4.elf
/tmp/wheiuwa4.elf

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7f1a925bd000
page read and write
7f198c047000
page read and write
7f198c03a000
page execute read
7f1a910db000
page read and write
55c2fded6000
page read and write
7ffd184ba000
page read and write
7f1a8c021000
page read and write
55c2ffef4000
page read and write
7f1a92626000
page read and write
7f1a925e1000
page read and write
7f1a91cd7000
page read and write
55c2fdc85000
page execute read
55c2ffede000
page execute and read and write
7f1a922b3000
page read and write
7f1a918e3000
page read and write
55c301632000
page read and write
7f1a920d1000
page read and write
7f1a91f42000
page read and write
7f1a91975000
page read and write
7f1a92494000
page read and write
7f198c04b000
page read and write
7ffd1859c000
page execute read
7f1a91f65000
page read and write
55c2fdedf000
page read and write
There are 14 hidden memdumps, click here to show them.