General

  • Target

    5d2ca8b5558f1d5c40b2c768d0e9273720538312cfe49c8aa9343b4c34975cee.elf

  • Size

    93KB

  • Sample

    240704-bwk5cayena

  • MD5

    eabd258c366f2dbf6b35e0acdf356fd6

  • SHA1

    bb66770bd25614d87c95f23315cbaf4892dfccaa

  • SHA256

    5d2ca8b5558f1d5c40b2c768d0e9273720538312cfe49c8aa9343b4c34975cee

  • SHA512

    0102aefb118a53a32f25298ba2e27b234f7845df99da3b143a737102a7f61e142b5bf9c63c86a0bcdd4520c98018cc83023b54700e735c773056a44f3b49fd79

  • SSDEEP

    1536:r8TbGir7UXykSCxTAiJxEONa5hDePK1BT4WVM/bC3xjvxqQEqn/lJXfPe:Kr1CXJi5hCPK1BTdVqijvxqQEqn9JXfW

Score
10/10

Malware Config

Extracted

Family

gafgyt

C2

194.233.78.47:4258

Targets

    • Target

      5d2ca8b5558f1d5c40b2c768d0e9273720538312cfe49c8aa9343b4c34975cee.elf

    • Size

      93KB

    • MD5

      eabd258c366f2dbf6b35e0acdf356fd6

    • SHA1

      bb66770bd25614d87c95f23315cbaf4892dfccaa

    • SHA256

      5d2ca8b5558f1d5c40b2c768d0e9273720538312cfe49c8aa9343b4c34975cee

    • SHA512

      0102aefb118a53a32f25298ba2e27b234f7845df99da3b143a737102a7f61e142b5bf9c63c86a0bcdd4520c98018cc83023b54700e735c773056a44f3b49fd79

    • SSDEEP

      1536:r8TbGir7UXykSCxTAiJxEONa5hDePK1BT4WVM/bC3xjvxqQEqn/lJXfPe:Kr1CXJi5hCPK1BTdVqijvxqQEqn9JXfW

    Score
    6/10
    • Reads system routing table

      Gets active network interfaces from /proc virtual filesystem.

MITRE ATT&CK Matrix ATT&CK v13

Tasks