General

  • Target

    73b5e72ab67fc9fde25ca1807c36856efbad75f0fc0e34e9b36e43aa41e82c6b.elf

  • Size

    121KB

  • Sample

    240705-bve7ps1fnh

  • MD5

    0bd25bbdc52be804e02f47415287db5d

  • SHA1

    ae795f48183efb88ea969a5e6e4538e106d30b17

  • SHA256

    73b5e72ab67fc9fde25ca1807c36856efbad75f0fc0e34e9b36e43aa41e82c6b

  • SHA512

    1818cf7d5135e1a2c5870818226421a028b949d9341e2093f6f4e3951ea2196007fc718b091114ac6ecf06b338addea1683603036d42cef8ee0ec92afc01dd7b

  • SSDEEP

    1536:xPUqkTEUAHXyUPo0Y8Fh+HPZpsc+MSboTkCsAl7Ty5ubbhhJmD+0DFq8nnl9:xnLPoXPpXSbEsAl7TykbRmC0DU8nnl9

Score
10/10

Malware Config

Extracted

Family

gafgyt

C2

5.59.248.211:6982

Targets

    • Target

      73b5e72ab67fc9fde25ca1807c36856efbad75f0fc0e34e9b36e43aa41e82c6b.elf

    • Size

      121KB

    • MD5

      0bd25bbdc52be804e02f47415287db5d

    • SHA1

      ae795f48183efb88ea969a5e6e4538e106d30b17

    • SHA256

      73b5e72ab67fc9fde25ca1807c36856efbad75f0fc0e34e9b36e43aa41e82c6b

    • SHA512

      1818cf7d5135e1a2c5870818226421a028b949d9341e2093f6f4e3951ea2196007fc718b091114ac6ecf06b338addea1683603036d42cef8ee0ec92afc01dd7b

    • SSDEEP

      1536:xPUqkTEUAHXyUPo0Y8Fh+HPZpsc+MSboTkCsAl7Ty5ubbhhJmD+0DFq8nnl9:xnLPoXPpXSbEsAl7TykbRmC0DU8nnl9

    Score
    6/10
    • Reads system routing table

      Gets active network interfaces from /proc virtual filesystem.

MITRE ATT&CK Matrix ATT&CK v13

Tasks