Analysis
-
max time kernel
147s -
max time network
149s -
platform
debian-9_armhf -
resource
debian9-armhf-20240418-en -
resource tags
arch:armhfimage:debian9-armhf-20240418-enkernel:4.9.0-13-armmp-lpaelocale:en-usos:debian-9-armhfsystem -
submitted
04-07-2024 17:26
Behavioral task
behavioral1
Sample
arm7
Resource
debian9-armhf-20240418-en
2 signatures
150 seconds
General
-
Target
arm7
-
Size
176KB
-
MD5
8bd098baae60823f5a755ec7e4f58930
-
SHA1
80ac12f666aec74dde1bd7d30959cdaea9b73c2c
-
SHA256
aa8824db6dd518d79cddaf20586b229d6e82efe9e931aa17c5783d70e9d5a9c8
-
SHA512
476a9f196c6203e7870a009acf4aed405b972ed31bf8e8a17d9689da6c1293acd10c1f944fabb16d66b532812e67bbb0fef69b1dbf661b774a910c43762ff49a
-
SSDEEP
3072:9fs8Tmeg7aqtCUtS7Rz91eLZIPTH/jAESeM/9gDnmKwMkZ/CIn:9fsL7aqtCUCRCLZOTH/jAYM/9WmKwMkt
Score
6/10
Malware Config
Signatures
-
Reads system routing table 1 TTPs 1 IoCs
Gets active network interfaces from /proc virtual filesystem.
Processes:
arm7description ioc process File opened for reading /proc/net/route arm7 -
Reads system network configuration 1 TTPs 1 IoCs
Uses contents of /proc filesystem to enumerate network settings.
Processes:
arm7description ioc process File opened for reading /proc/net/route arm7