General

  • Target

    arm7

  • Size

    176KB

  • Sample

    240704-vzydmasdkb

  • MD5

    8bd098baae60823f5a755ec7e4f58930

  • SHA1

    80ac12f666aec74dde1bd7d30959cdaea9b73c2c

  • SHA256

    aa8824db6dd518d79cddaf20586b229d6e82efe9e931aa17c5783d70e9d5a9c8

  • SHA512

    476a9f196c6203e7870a009acf4aed405b972ed31bf8e8a17d9689da6c1293acd10c1f944fabb16d66b532812e67bbb0fef69b1dbf661b774a910c43762ff49a

  • SSDEEP

    3072:9fs8Tmeg7aqtCUtS7Rz91eLZIPTH/jAESeM/9gDnmKwMkZ/CIn:9fsL7aqtCUCRCLZOTH/jAYM/9WmKwMkt

Score
10/10

Malware Config

Extracted

Family

gafgyt

C2

5.59.248.211:6982

Targets

    • Target

      arm7

    • Size

      176KB

    • MD5

      8bd098baae60823f5a755ec7e4f58930

    • SHA1

      80ac12f666aec74dde1bd7d30959cdaea9b73c2c

    • SHA256

      aa8824db6dd518d79cddaf20586b229d6e82efe9e931aa17c5783d70e9d5a9c8

    • SHA512

      476a9f196c6203e7870a009acf4aed405b972ed31bf8e8a17d9689da6c1293acd10c1f944fabb16d66b532812e67bbb0fef69b1dbf661b774a910c43762ff49a

    • SSDEEP

      3072:9fs8Tmeg7aqtCUtS7Rz91eLZIPTH/jAESeM/9gDnmKwMkZ/CIn:9fsL7aqtCUCRCLZOTH/jAYM/9WmKwMkt

    Score
    6/10
    • Reads system routing table

      Gets active network interfaces from /proc virtual filesystem.

MITRE ATT&CK Matrix ATT&CK v13

Tasks