Analysis

  • max time kernel
    0s
  • max time network
    131s
  • platform
    ubuntu-22.04_amd64
  • resource
    ubuntu2204-amd64-20240611-en
  • resource tags

    arch:amd64arch:i386image:ubuntu2204-amd64-20240611-enkernel:5.15.0-105-genericlocale:en-usos:ubuntu-22.04-amd64system
  • submitted
    29-06-2024 01:19

General

  • Target

    586be05c12b4ca301d1b07f3982127ce0fbc3595ecd1f3575b0b376f0f303c9e.elf

  • Size

    37KB

  • MD5

    18b79131e6fc36d7246c8d9517e28c52

  • SHA1

    977fc6b7c579774c063af24f8b9033204d24c42d

  • SHA256

    586be05c12b4ca301d1b07f3982127ce0fbc3595ecd1f3575b0b376f0f303c9e

  • SHA512

    67bee7280f58fb375a3d363b5b99e633acf0ad130afe67fec9fdc116bfaf89a8c7e029a0418d04691194d28a32e6794a597340ae63930bb47c9d7f24d9e359f8

  • SSDEEP

    768:RbDTjtLatsg6Xp5IsvKheZ2gzvhltm/pkZGhDsM6nbcuyD7UGQRjQyStKr:5jtG655IsKhatlspkZ0DsFnouy8GyUpK

Score
10/10

Malware Config

Extracted

Family

mirai

Botnet

SORA

Signatures

  • Mirai

    Mirai is a prevalent Linux malware infecting exposed network devices.

Processes

  • /tmp/586be05c12b4ca301d1b07f3982127ce0fbc3595ecd1f3575b0b376f0f303c9e.elf
    /tmp/586be05c12b4ca301d1b07f3982127ce0fbc3595ecd1f3575b0b376f0f303c9e.elf
    1⤵
      PID:1596

    Network

    MITRE ATT&CK Matrix

    Replay Monitor

    Loading Replay Monitor...

    Downloads

    • memory/1596-1-0x0000000008048000-0x000000000805cf48-memory.dmp