General

  • Target

    1416a40fed2dacc3e0308ed77cb3e4c2.elf

  • Size

    150KB

  • Sample

    240705-jvy9ksvdnj

  • MD5

    1416a40fed2dacc3e0308ed77cb3e4c2

  • SHA1

    be113958bc2c7f0d4acaf19de23e5a968201f33e

  • SHA256

    f21759f7e984dab431f129158230259294a953b2fad8f1c50740d93c7f556107

  • SHA512

    741914a984d66ae0bbf4c9a710c335f4240150406c7a61f2a7e99afa033c927471c501c1747dd312f187732aeb45ccbed9089fd59765a00e9f8f25f6b7494e57

  • SSDEEP

    3072:Tdbmn8aAEHqgSkano1DTAX5hWTGZWYxVlxXmpwTsL/QMyn:he8aAEHKkdDT25hWTGZWYxVldmpwTsLS

Score
10/10

Malware Config

Extracted

Family

gafgyt

C2

164.90.201.215:4258

Targets

    • Target

      1416a40fed2dacc3e0308ed77cb3e4c2.elf

    • Size

      150KB

    • MD5

      1416a40fed2dacc3e0308ed77cb3e4c2

    • SHA1

      be113958bc2c7f0d4acaf19de23e5a968201f33e

    • SHA256

      f21759f7e984dab431f129158230259294a953b2fad8f1c50740d93c7f556107

    • SHA512

      741914a984d66ae0bbf4c9a710c335f4240150406c7a61f2a7e99afa033c927471c501c1747dd312f187732aeb45ccbed9089fd59765a00e9f8f25f6b7494e57

    • SSDEEP

      3072:Tdbmn8aAEHqgSkano1DTAX5hWTGZWYxVlxXmpwTsL/QMyn:he8aAEHKkdDT25hWTGZWYxVldmpwTsLS

    Score
    6/10
    • Reads system routing table

      Gets active network interfaces from /proc virtual filesystem.

MITRE ATT&CK Matrix ATT&CK v13

Tasks