IOC Report
spc.elf

loading gif

Processes

Path
Cmdline
Malicious
/tmp/spc.elf
/tmp/spc.elf
/tmp/spc.elf
-
/tmp/spc.elf
-
/tmp/spc.elf
-

Domains

Name
IP
Malicious
f.codingdrunk.
unknown
malicious
nineteen.libre. [malformed]
unknown
malicious
imaverygoodbadboy.libre. [malformed]
unknown
malicious
fortyfivehundred.dyn. [malformed]
unknown
malicious
f.codingdrunk. . [malformed]
unknown
malicious
ru.coziest.lol
unknown
malicious
www.codingdrunk.in. [malformed]
unknown
malicious
75cents.libre. [malformed]
unknown
malicious
2joints.libre. [malformed]
unknown
malicious
2joints.libre
unknown
malicious
eighteen.pirate
unknown
malicious
nineteen.libre
unknown
malicious
eighteen.pirate. [malformed]
unknown
malicious
www.codingdrunk.in
unknown
malicious
fortyfivehundred.dyn
unknown
malicious
21savage.dyn. [malformed]
unknown
malicious
ru.coziest.lol. [malformed]
unknown
malicious
imaverygoodbadboy.libre
unknown
malicious
There are 8 hidden domains, click here to show them.

IPs

IP
Domain
Country
Malicious
109.202.202.202
unknown
Switzerland
91.189.91.43
unknown
United Kingdom
91.189.91.42
unknown
United Kingdom

Memdumps

Base Address
Regiontype
Protect
Malicious
7fe670c5d000
page read and write
7ffe07927000
page read and write
7fe671fa5000
page read and write
7fe56c022000
page execute read
7fe671460000
page read and write
7fe671f58000
page read and write
7fe56c039000
page read and write
55821af1e000
page read and write
7fe67146e000
page read and write
7fe671f60000
page read and write
7fe671ae4000
page read and write
7ffe079bb000
page execute read
55821ace7000
page execute read
55821d223000
page read and write
7fe56c032000
page read and write
7fe671e2f000
page read and write
7fe671abf000
page read and write
55821cf33000
page read and write
7fe66c000000
page read and write
7fe6716fd000
page read and write
55821af15000
page read and write
55821cf1c000
page execute and read and write
7fe66c021000
page read and write
There are 13 hidden memdumps, click here to show them.