General

  • Target

    b8c8b4d2373ce049bd273da73e6b3162.bin

  • Size

    27KB

  • Sample

    240701-dpxkxaxgmr

  • MD5

    1cbd99d2bd860f2ed0f8d961c0ee6d1f

  • SHA1

    90095e9e6c6c2c2dc27fd73e58ded59382c78d6b

  • SHA256

    99b0bff54c35d4139909aec0b1ebb6f02ef944dfccc4eed344f42d0258eadd64

  • SHA512

    6858f18cd3813f6bddee674a120882641d43259b4eb4246d5bd8b056b53bc458c9a9d282cb358c19e2e803ec8a93fd61891605d29b59c3a85142ac02d7bf8d10

  • SSDEEP

    768:oHazS3K722AXNoBWfrAJLZ1GfwaJ4zCQrcS7w:oH1kWO+ffyOccS7w

Score
9/10

Malware Config

Targets

    • Target

      b58872133137b096793cd8348c90a4cdb9fead7dc5335870618ce8b361238553.elf

    • Size

      52KB

    • MD5

      b8c8b4d2373ce049bd273da73e6b3162

    • SHA1

      c31af2fe9bf85d1fd6f60a5bc28a0fd480362fc4

    • SHA256

      b58872133137b096793cd8348c90a4cdb9fead7dc5335870618ce8b361238553

    • SHA512

      e3d304d1d4540b67f397c8d0e6bc2bb0e595a141dbaf6dc251a56169be657270286f5bd0d677dbcc7c00bf58b9f3f50fc9140f408bc2dfa7bd12759ae320686c

    • SSDEEP

      1536:afLc6l8EK0ypxRQtcj4UNW/GD9gU+eZKLOvWYgEp:afg6l8E8pxRBTU6+epeI

    Score
    9/10
    • Contacts a large (114895) amount of remote hosts

      This may indicate a network scan to discover remotely running services.

    • Creates a large amount of network flows

      This may indicate a network scan to discover remotely running services.

    • Modifies Watchdog functionality

      Malware like Mirai modifies the Watchdog to prevent it restarting an infected system.

    • Enumerates running processes

      Discovers information about currently running processes on the system

MITRE ATT&CK Matrix ATT&CK v13

Defense Evasion

Impair Defenses

1
T1562

Discovery

Network Service Discovery

2
T1046

Tasks