Resubmissions

02-07-2024 10:03

240702-l3teeaxdjf 6

02-07-2024 09:12

240702-k59nqszamn 6

General

  • Target

    syslogng

  • Size

    8.1MB

  • Sample

    240702-k59nqszamn

  • MD5

    8714ec446084136df28a0eeaf83c25fd

  • SHA1

    f45458eb50df3f42b91232c28501f2746f6bfed8

  • SHA256

    cd124150fc978591b47f3434ae4508973b0e13f884a6d71c93d649b68af27f84

  • SHA512

    e0ae4475c53ee96a823797615df1cbedc0a0815a3b3f27e816d30ad086cc7dd3bfeec9d703ef6478b062e38a4e28191dbd2cad1ac4af2d270b3f36f149a383d9

  • SSDEEP

    49152:+/YyphSrb/TMvO90dL3BmAFd4A64nsfJpTVVOp6Z7arBNkLdw6f/8M0Hx0e3z+SN:XPOgZPqfNEGcAkpwuS/QRyMP8

Score
6/10

Malware Config

Targets

    • Target

      syslogng

    • Size

      8.1MB

    • MD5

      8714ec446084136df28a0eeaf83c25fd

    • SHA1

      f45458eb50df3f42b91232c28501f2746f6bfed8

    • SHA256

      cd124150fc978591b47f3434ae4508973b0e13f884a6d71c93d649b68af27f84

    • SHA512

      e0ae4475c53ee96a823797615df1cbedc0a0815a3b3f27e816d30ad086cc7dd3bfeec9d703ef6478b062e38a4e28191dbd2cad1ac4af2d270b3f36f149a383d9

    • SSDEEP

      49152:+/YyphSrb/TMvO90dL3BmAFd4A64nsfJpTVVOp6Z7arBNkLdw6f/8M0Hx0e3z+SN:XPOgZPqfNEGcAkpwuS/QRyMP8

    Score
    6/10
    • Checks mountinfo of local process

      Checks mountinfo of running processes which indicate if it is running in chroot jail.

MITRE ATT&CK Matrix ATT&CK v13

Defense Evasion

Virtualization/Sandbox Evasion

2
T1497

Discovery

Virtualization/Sandbox Evasion

2
T1497

System Information Discovery

2
T1082

System Network Configuration Discovery

1
T1016

Tasks