General

  • Target

    78f6ad8a12d68b7c535210a8d0772a7e5f96996b733007891018570b151ce01b.elf

  • Size

    106KB

  • Sample

    240703-bvw58avbnn

  • MD5

    c3307bd2b4606c2ae9c74bb077d17c81

  • SHA1

    b7610e09e0ed88a7ed7334968e2a27411af2700b

  • SHA256

    78f6ad8a12d68b7c535210a8d0772a7e5f96996b733007891018570b151ce01b

  • SHA512

    fe20a96d0ed8af600aee0ec11ca6631909ce54b054684b18961a5f0f7eb02126ce0fb3282c5cb34dcc647057a02a897916a131e6cb71c63af1ac395610234126

  • SSDEEP

    3072:j6dye4BmJQ2phaZw/1vc4+AzkSXmdRWaLHgb4:d2phaZchrmdRWaDgb4

Score
10/10

Malware Config

Extracted

Family

gafgyt

C2

45.93.200.174:4258

Targets

    • Target

      78f6ad8a12d68b7c535210a8d0772a7e5f96996b733007891018570b151ce01b.elf

    • Size

      106KB

    • MD5

      c3307bd2b4606c2ae9c74bb077d17c81

    • SHA1

      b7610e09e0ed88a7ed7334968e2a27411af2700b

    • SHA256

      78f6ad8a12d68b7c535210a8d0772a7e5f96996b733007891018570b151ce01b

    • SHA512

      fe20a96d0ed8af600aee0ec11ca6631909ce54b054684b18961a5f0f7eb02126ce0fb3282c5cb34dcc647057a02a897916a131e6cb71c63af1ac395610234126

    • SSDEEP

      3072:j6dye4BmJQ2phaZw/1vc4+AzkSXmdRWaLHgb4:d2phaZchrmdRWaDgb4

    Score
    6/10
    • Reads system routing table

      Gets active network interfaces from /proc virtual filesystem.

MITRE ATT&CK Matrix ATT&CK v13

Tasks