IOC Report
sh4.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/sh4.elf
/tmp/sh4.elf
/tmp/sh4.elf
-

IPs

IP
Domain
Country
Malicious
85.239.34.134
unknown
Russian Federation
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7f57e4411000
page execute read
malicious
7f5864021000
page read and write
7f586b982000
page read and write
5563e65cb000
page execute and read and write
7f586bcf2000
page read and write
5563e83af000
page read and write
7f586be68000
page read and write
7f586b323000
page read and write
7f57e4417000
page read and write
7f57e4412000
page read and write
7f586be23000
page read and write
7f586b5c0000
page read and write
5563e45c5000
page read and write
7ffcd65d1000
page execute read
5563e43af000
page execute read
7f586b331000
page read and write
7f5864000000
page read and write
7ffcd6546000
page read and write
7f586be1b000
page read and write
7f586b9a7000
page read and write
5563e65e2000
page read and write
5563e45cd000
page read and write
7f586ab20000
page read and write
There are 13 hidden memdumps, click here to show them.