General

  • Target

    qkdjdjj22.ppc.elf

  • Size

    167KB

  • Sample

    240702-glbqtaygle

  • MD5

    207eb58423234306edaecb3ec89935d8

  • SHA1

    d64f9f4c92ab1f09851e5a94fa6c0ca518309dea

  • SHA256

    adb038e6094ea569085e9437212ea6a48fe4e7da0096ca0bcdc5e2bffd3c42d6

  • SHA512

    8806b9da8fff69c632ffa6c573b3af84935627de1487cf512c083f2e4539cbcb4ff3610c41d341236db2d11c94dda143ae3773030ef53a34489a1cf686756800

  • SSDEEP

    3072:Bdy8WoZkeDGOvvlIAFZ3U5c0xkuQn3Z5h1X7cKUmSQnNbGUBn:bZv9KBxkuQ3Z5h1X7xUmSQnNbGUBn

Score
10/10

Malware Config

Extracted

Family

gafgyt

C2

62.72.191.203:777

Targets

    • Target

      qkdjdjj22.ppc.elf

    • Size

      167KB

    • MD5

      207eb58423234306edaecb3ec89935d8

    • SHA1

      d64f9f4c92ab1f09851e5a94fa6c0ca518309dea

    • SHA256

      adb038e6094ea569085e9437212ea6a48fe4e7da0096ca0bcdc5e2bffd3c42d6

    • SHA512

      8806b9da8fff69c632ffa6c573b3af84935627de1487cf512c083f2e4539cbcb4ff3610c41d341236db2d11c94dda143ae3773030ef53a34489a1cf686756800

    • SSDEEP

      3072:Bdy8WoZkeDGOvvlIAFZ3U5c0xkuQn3Z5h1X7cKUmSQnNbGUBn:bZv9KBxkuQ3Z5h1X7xUmSQnNbGUBn

    Score
    6/10
    • Reads system routing table

      Gets active network interfaces from /proc virtual filesystem.

MITRE ATT&CK Matrix ATT&CK v13

Tasks