top title background image
flash

yNGgbod6dt.elf

Status: finished
Submission Time: 2023-01-08 16:08:21 +01:00
Malicious
Spreader
Trojan
Mirai

Comments

Tags

  • 32
  • elf
  • gafgyt
  • Mirai

Details

  • Analysis ID:
    780227
  • API (Web) ID:
    1147487
  • Analysis Started:
    2023-01-08 16:30:07 +01:00
  • Analysis Finished:
    2023-01-08 16:35:30 +01:00
  • MD5:
    62f1db29777c386f59a4836a2578e635
  • SHA1:
    0adc886845b8a3a549b6d41a16c7e1644ec15908
  • SHA256:
    2b68e82dada6e7bfa17c1ef77c4f03920d5644e34686a6e8a6ea5b809de70c1a
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 76
System: Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11)

Third Party Analysis Engines

malicious
Score: 31/63
malicious
Score: 17/41

IPs

IP Country Detection
190.173.195.220
Argentina
190.107.216.65
Argentina
109.202.202.202
Switzerland
Click to see the 2 hidden entries
91.189.91.43
United Kingdom
91.189.91.42
United Kingdom

URLs

Name Detection
http://89.208.107.26/miniupd.sh
http://89.208.107.26/miniupd.sh;
http://89.208.107.26/diag00/log21.mips
Click to see the 5 hidden entries
http://89.208.107.26/miniupd.sh;chmod$
http://89.208.107.26/miniupd.sh;sh
http://schemas.xmlsoap.org/soap/encoding/
http://purenetworks.com/HNAP1/
http://schemas.xmlsoap.org/soap/envelope/