MALICIOUS — 1a749712883354d7da407004b49ece6ae638a22314ed70a095316429b5c41c22.elf
Verdict: malicious (88/100) · Family: RiskTool
File type: elf · SHA-256: 1a749712883354d7da407004b49ece6ae638a22314ed70a095316429b5c41c22
MITRE ATT&CK
- T1496
YARA
Dynamic analysis (linux)
863 behavior events · 0 ATT&CK techniques · 1 dropped files.
Runtime network
- pool.supportxmr.com
- 250.255.255.239.in-addr.arpa
- ntp.ubuntu.com
- 15.235.234.220:3333 SG · Singapore · AS16276 OVH Singapore PTE. LTD
- ff02::1:3
- 224.0.0.252
- 10.240.0.1
- ff02::fb
- 224.0.0.251
- 20.42.65.90 US · Flint Hill · AS8075 Microsoft Corporation
- ff02::16
- 239.255.255.250
- ff02::1
- 20.165.94.46 US · San Antonio · AS8075 Microsoft Corporation
- 20.190.142.166
- 15.235.234.220 SG · Singapore · AS16276 OVH Singapore PTE. LTD
- ff02::1:ff12:3456
- 23.214.88.41
- 72.153.5.137 US · Boydton · AS8075 Microsoft Corporation
- 135.233.95.144 US · Des Moines · AS8075 Microsoft Limited
Analyzed on MalwareAnalyzer by Cyble · Open interactive report