General
-
Target
1416a40fed2dacc3e0308ed77cb3e4c2.elf
-
Size
150KB
-
Sample
240705-jvy9ksvdnj
-
MD5
1416a40fed2dacc3e0308ed77cb3e4c2
-
SHA1
be113958bc2c7f0d4acaf19de23e5a968201f33e
-
SHA256
f21759f7e984dab431f129158230259294a953b2fad8f1c50740d93c7f556107
-
SHA512
741914a984d66ae0bbf4c9a710c335f4240150406c7a61f2a7e99afa033c927471c501c1747dd312f187732aeb45ccbed9089fd59765a00e9f8f25f6b7494e57
-
SSDEEP
3072:Tdbmn8aAEHqgSkano1DTAX5hWTGZWYxVlxXmpwTsL/QMyn:he8aAEHKkdDT25hWTGZWYxVldmpwTsLS
Behavioral task
behavioral1
Sample
1416a40fed2dacc3e0308ed77cb3e4c2.elf
Resource
debian9-armhf-20240418-en
Malware Config
Extracted
gafgyt
164.90.201.215:4258
Targets
-
-
Target
1416a40fed2dacc3e0308ed77cb3e4c2.elf
-
Size
150KB
-
MD5
1416a40fed2dacc3e0308ed77cb3e4c2
-
SHA1
be113958bc2c7f0d4acaf19de23e5a968201f33e
-
SHA256
f21759f7e984dab431f129158230259294a953b2fad8f1c50740d93c7f556107
-
SHA512
741914a984d66ae0bbf4c9a710c335f4240150406c7a61f2a7e99afa033c927471c501c1747dd312f187732aeb45ccbed9089fd59765a00e9f8f25f6b7494e57
-
SSDEEP
3072:Tdbmn8aAEHqgSkano1DTAX5hWTGZWYxVlxXmpwTsL/QMyn:he8aAEHKkdDT25hWTGZWYxVldmpwTsLS
Score6/10-
Reads system routing table
Gets active network interfaces from /proc virtual filesystem.
-