General

  • Target

    0bd25bbdc52be804e02f47415287db5d.bin

  • Size

    51KB

  • Sample

    240706-bdhw9stcqh

  • MD5

    23b05234c3ae9c0594eac6283d5e3158

  • SHA1

    751374497c37b490d4f09a512d669a97521ebeec

  • SHA256

    761958ef99901fde72c8f51af63164b29997083589a238300ddd27429e8b750d

  • SHA512

    f102d0e61aa998b611cc44d55db8ad926a262b0f526adb8ea82d28358fbfb77d2ebd96fca5d2a470153c910ff86429ff490f5171e224c179bab0ae5fd0355286

  • SSDEEP

    1536:XMbE7zqC+/grJaArneHjFb/isIw73ikU6N46P:kSWdvAeH0xwv44

Score
10/10

Malware Config

Extracted

Family

gafgyt

C2

5.59.248.211:6982

Targets

    • Target

      73b5e72ab67fc9fde25ca1807c36856efbad75f0fc0e34e9b36e43aa41e82c6b.elf

    • Size

      121KB

    • MD5

      0bd25bbdc52be804e02f47415287db5d

    • SHA1

      ae795f48183efb88ea969a5e6e4538e106d30b17

    • SHA256

      73b5e72ab67fc9fde25ca1807c36856efbad75f0fc0e34e9b36e43aa41e82c6b

    • SHA512

      1818cf7d5135e1a2c5870818226421a028b949d9341e2093f6f4e3951ea2196007fc718b091114ac6ecf06b338addea1683603036d42cef8ee0ec92afc01dd7b

    • SSDEEP

      1536:xPUqkTEUAHXyUPo0Y8Fh+HPZpsc+MSboTkCsAl7Ty5ubbhhJmD+0DFq8nnl9:xnLPoXPpXSbEsAl7TykbRmC0DU8nnl9

    Score
    6/10
    • Reads system routing table

      Gets active network interfaces from /proc virtual filesystem.

MITRE ATT&CK Matrix ATT&CK v13

Tasks