General

  • Target

    94c011704cfc587872cf723c8fb48605b57f7de48c7f1854d0cbe4699e5da329.elf

  • Size

    209KB

  • Sample

    240703-csb8pssdph

  • MD5

    fdb2c3c77ac5fcdb3e3a358bc5d0c566

  • SHA1

    6f0c1e828a1d83ed63099db2b694b6c0be308f2a

  • SHA256

    94c011704cfc587872cf723c8fb48605b57f7de48c7f1854d0cbe4699e5da329

  • SHA512

    f017fa7c5317fe104e8d8edbc600012a6cc9f764e7b40cb266433a42f9afa16179a72ee13b14bc76893209690d326de2cb32c16686c94d63e03d289e4f29bc3d

  • SSDEEP

    3072:3XC9j6w2ZQgoYJlQeRmhDvy2uSNbtmWu+R9ask0QcYbr5hRBg1cmrpy6n9Nn:3SDCzcYbr5hR5mrpy6n9Nn

Score
10/10

Malware Config

Extracted

Family

gafgyt

C2

62.72.191.203:777

Targets

    • Target

      94c011704cfc587872cf723c8fb48605b57f7de48c7f1854d0cbe4699e5da329.elf

    • Size

      209KB

    • MD5

      fdb2c3c77ac5fcdb3e3a358bc5d0c566

    • SHA1

      6f0c1e828a1d83ed63099db2b694b6c0be308f2a

    • SHA256

      94c011704cfc587872cf723c8fb48605b57f7de48c7f1854d0cbe4699e5da329

    • SHA512

      f017fa7c5317fe104e8d8edbc600012a6cc9f764e7b40cb266433a42f9afa16179a72ee13b14bc76893209690d326de2cb32c16686c94d63e03d289e4f29bc3d

    • SSDEEP

      3072:3XC9j6w2ZQgoYJlQeRmhDvy2uSNbtmWu+R9ask0QcYbr5hRBg1cmrpy6n9Nn:3SDCzcYbr5hR5mrpy6n9Nn

    Score
    6/10
    • Reads system routing table

      Gets active network interfaces from /proc virtual filesystem.

MITRE ATT&CK Matrix ATT&CK v13

Tasks