Analysis
-
max time kernel
141s -
max time network
153s -
platform
debian-9_mips -
resource
debian9-mipsbe-20240611-en -
resource tags
arch:mipsimage:debian9-mipsbe-20240611-enkernel:4.9.0-13-4kc-maltalocale:en-usos:debian-9-mipssystem -
submitted
03-07-2024 02:19
Behavioral task
behavioral1
Sample
94c011704cfc587872cf723c8fb48605b57f7de48c7f1854d0cbe4699e5da329.elf
Resource
debian9-mipsbe-20240611-en
2 signatures
150 seconds
General
-
Target
94c011704cfc587872cf723c8fb48605b57f7de48c7f1854d0cbe4699e5da329.elf
-
Size
209KB
-
MD5
fdb2c3c77ac5fcdb3e3a358bc5d0c566
-
SHA1
6f0c1e828a1d83ed63099db2b694b6c0be308f2a
-
SHA256
94c011704cfc587872cf723c8fb48605b57f7de48c7f1854d0cbe4699e5da329
-
SHA512
f017fa7c5317fe104e8d8edbc600012a6cc9f764e7b40cb266433a42f9afa16179a72ee13b14bc76893209690d326de2cb32c16686c94d63e03d289e4f29bc3d
-
SSDEEP
3072:3XC9j6w2ZQgoYJlQeRmhDvy2uSNbtmWu+R9ask0QcYbr5hRBg1cmrpy6n9Nn:3SDCzcYbr5hR5mrpy6n9Nn
Score
6/10
Malware Config
Signatures
-
Reads system routing table 1 TTPs 1 IoCs
Gets active network interfaces from /proc virtual filesystem.
Processes:
94c011704cfc587872cf723c8fb48605b57f7de48c7f1854d0cbe4699e5da329.elfdescription ioc process File opened for reading /proc/net/route 94c011704cfc587872cf723c8fb48605b57f7de48c7f1854d0cbe4699e5da329.elf -
Reads system network configuration 1 TTPs 1 IoCs
Uses contents of /proc filesystem to enumerate network settings.
Processes:
94c011704cfc587872cf723c8fb48605b57f7de48c7f1854d0cbe4699e5da329.elfdescription ioc process File opened for reading /proc/net/route 94c011704cfc587872cf723c8fb48605b57f7de48c7f1854d0cbe4699e5da329.elf