top title background image
flash

SGEgzPdjRk

Status: finished
Submission Time: 2022-01-15 00:35:10 +01:00
Malicious
Spreader
Evader

Comments

Tags

  • 32
  • elf
  • mips
  • mirai

Details

  • Analysis ID:
    553480
  • API (Web) ID:
    921002
  • Analysis Started:
    2022-01-15 00:47:53 +01:00
  • Analysis Finished:
    2022-01-15 00:53:31 +01:00
  • MD5:
    bac2f57ce5018c375edb702622eec6b9
  • SHA1:
    2506edaa267c8bbb17dbe039f24e928fd8c386bc
  • SHA256:
    bcdcdf35b7e12a89a6f5a44877bbc82cb53a23b863722f5a705aa8bbcea9f940
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
malicious
Score: 56
System: Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0, Evince Document Viewer 3.36.10, LibreOffice 6.4.7.2, OpenJDK 11.0.11)

Third Party Analysis Engines

malicious
Score: 15/61
malicious
Score: 15/43

URLs

Name Detection
http://upx.sf.net

Dropped files

Name File Type Hashes Detection
/var/cache/man/sr/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/ko/index.db.N9VQls
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/nl/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
Click to see the 50 hidden entries
/var/cache/man/nl/index.db.oe9k9o
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/pl/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/pl/index.db.1iZcXq
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/pt/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/pt/index.db.97DJlr
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/pt_BR/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/pt_BR/index.db.s1P5ap
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/ru/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/ru/index.db.mQhIks
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/sl/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/sl/index.db.iZThrs
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/ko/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/sr/index.db.CCNCvr
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/sv/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/sv/index.db.0Hu6Fr
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/tr/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/tr/index.db.JHMT2p
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/zh_CN/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/zh_CN/index.db.UpDzbs
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/zh_TW/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/zh_TW/index.db.GCJ7Fo
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/lib/logrotate/status.tmp
ASCII text
#
/var/log/cups/access_log.1.gz
gzip compressed data, last modified: Fri Jan 14 23:47:59 2022, from Unix
#
/var/log/syslog.1.gz
gzip compressed data, last modified: Fri Jan 14 23:47:59 2022, from Unix
#
/var/cache/man/fr.UTF-8/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/cs/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/cs/index.db.jXqXSr
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/da/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/da/index.db.138Yms
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/de/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/de/index.db.sI6NCp
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/es/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/es/index.db.h1ygwq
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/fi/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/fi/index.db.CYTRGq
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/fr.ISO8859-1/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/fr.ISO8859-1/index.db.cYBTBq
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/fr.UTF-8/index.db.staMSr
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/fr/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/fr/index.db.vp8Oes
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/hu/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/hu/index.db.9RkNQq
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/id/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/id/index.db.OMLgop
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/index.db.FfIscr
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/it/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/it/index.db.VSKzYp
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/ja/5240
GNU dbm 1.x or ndbm database, little endian, 64-bit
#
/var/cache/man/ja/index.db.VfIoao
GNU dbm 1.x or ndbm database, little endian, 64-bit
#