IOC Report
rkF1LTQVdi.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/rkF1LTQVdi.elf
/tmp/rkF1LTQVdi.elf
/tmp/rkF1LTQVdi.elf
-
/tmp/rkF1LTQVdi.elf
-
/tmp/rkF1LTQVdi.elf
-

Domains

Name
IP
Malicious
drumev.eu
93.123.85.140

IPs

IP
Domain
Country
Malicious
93.123.85.140
drumev.eu
Bulgaria

Memdumps

Base Address
Regiontype
Protect
Malicious
8054000
page read and write
ffabb000
page read and write
8a59000
page read and write
f7fdd000
page execute read
f7fdd000
page execute read
8054000
page read and write
8057000
page read and write
8053000
page execute read
8054000
page read and write
8053000
page execute read
ffabb000
page read and write
ffabb000
page read and write
8057000
page read and write
8a59000
page read and write
8a59000
page read and write
f7fdd000
page execute read
8053000
page execute read
8057000
page read and write
There are 8 hidden memdumps, click here to show them.