Analysis

  • max time kernel
    147s
  • max time network
    149s
  • platform
    debian-9_armhf
  • resource
    debian9-armhf-20240418-en
  • resource tags

    arch:armhfimage:debian9-armhf-20240418-enkernel:4.9.0-13-armmp-lpaelocale:en-usos:debian-9-armhfsystem
  • submitted
    04-07-2024 17:26

General

  • Target

    arm7

  • Size

    176KB

  • MD5

    8bd098baae60823f5a755ec7e4f58930

  • SHA1

    80ac12f666aec74dde1bd7d30959cdaea9b73c2c

  • SHA256

    aa8824db6dd518d79cddaf20586b229d6e82efe9e931aa17c5783d70e9d5a9c8

  • SHA512

    476a9f196c6203e7870a009acf4aed405b972ed31bf8e8a17d9689da6c1293acd10c1f944fabb16d66b532812e67bbb0fef69b1dbf661b774a910c43762ff49a

  • SSDEEP

    3072:9fs8Tmeg7aqtCUtS7Rz91eLZIPTH/jAESeM/9gDnmKwMkZ/CIn:9fsL7aqtCUCRCLZOTH/jAYM/9WmKwMkt

Score
6/10

Malware Config

Signatures

  • Reads system routing table 1 TTPs 1 IoCs

    Gets active network interfaces from /proc virtual filesystem.

  • Reads system network configuration 1 TTPs 1 IoCs

    Uses contents of /proc filesystem to enumerate network settings.

Processes

  • /tmp/arm7
    /tmp/arm7
    1⤵
    • Reads system routing table
    • Reads system network configuration
    PID:646

Network

MITRE ATT&CK Matrix ATT&CK v13

Replay Monitor

Loading Replay Monitor...

Downloads