General

  • Target

    Okami.mips.elf

  • Size

    120KB

  • Sample

    240705-gtrf8stejj

  • MD5

    17f005fea50cb82ab66c74edaca61e02

  • SHA1

    8499f1c21c5ebd2bb13627a785fcf4bae9bfbbac

  • SHA256

    dc0b26808c72f737553b655769dda26d2fbd9df185215743208a47ac6fa683e8

  • SHA512

    f3dcb85486ed0fc65322b575b6817c66050b7fcd1cfd5bcf925f1e4c0bc57c9b8554f51625a2eb68cc3e9e5f6ae2bb827b593ef5efe00487823c96175a291780

  • SSDEEP

    3072:DLYxtjCSEEV+5hr+xWDOPRx9Fq51uUOypn:vCub++5hqxWyPRx9Fq51uUOypn

Score
10/10

Malware Config

Extracted

Family

gafgyt

C2

93.123.85.246:6963

Targets

    • Target

      Okami.mips.elf

    • Size

      120KB

    • MD5

      17f005fea50cb82ab66c74edaca61e02

    • SHA1

      8499f1c21c5ebd2bb13627a785fcf4bae9bfbbac

    • SHA256

      dc0b26808c72f737553b655769dda26d2fbd9df185215743208a47ac6fa683e8

    • SHA512

      f3dcb85486ed0fc65322b575b6817c66050b7fcd1cfd5bcf925f1e4c0bc57c9b8554f51625a2eb68cc3e9e5f6ae2bb827b593ef5efe00487823c96175a291780

    • SSDEEP

      3072:DLYxtjCSEEV+5hr+xWDOPRx9Fq51uUOypn:vCub++5hqxWyPRx9Fq51uUOypn

    Score
    7/10
    • Writes DNS configuration

      Writes data to DNS resolver config file.

MITRE ATT&CK Matrix ATT&CK v13

Tasks