SUSPICIOUS — lol
Verdict: suspicious (59/100) · Family: high
File type: elf · SHA-256: e4cc4c89b6f5448a1e554a381970319365532f05cfc312927b4e18350e128776
MITRE ATT&CK
YARA
Dynamic analysis (linux)
828 behavior events · 0 ATT&CK techniques · 1 dropped files.
Runtime network
- ntp.ubuntu.com
- 10.240.0.1
- 185.125.190.58
- 57.155.101.212
- 23.40.52.123
- 203.26.79.13
- ff02::2
- 255.255.255.255
- ff02::16
- ff02::1
- ff02::1:ff12:3456
- 185.125.190.57
- 85.210.196.11
- 10.240.0.77
- 40.79.150.123
- 172.172.255.216
- 40.126.14.164
Analyzed on MalwareAnalyzer by Cyble · Open interactive report