MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 afa0cbf9d3a3c6470ceac042d15f97b93fded5a47f6ced585ac3b06bc7711167. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Gafgyt


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: afa0cbf9d3a3c6470ceac042d15f97b93fded5a47f6ced585ac3b06bc7711167
SHA3-384 hash: 5e8f0184c06eb572744ec76eff30fb72afeaea2aaa2826f18a9bf9f5e3f7a604fa32eee4e0130091ea85143e0d8ad6d5
SHA1 hash: e357320e0a442e3fc5be49b7c41a65af2a7d2d54
MD5 hash: 2f11943f805c1493323ad86d9ff6f3bc
humanhash: social-shade-early-mango
File name:armv6l
Download: download sample
Signature Gafgyt
File size:143'044 bytes
First seen:2020-05-23 11:36:54 UTC
Last seen:Never
File type: elf
MIME type:application/x-executable
ssdeep 3072:Z41HOuaGVV3NfHUOjqylAqCw3jkmhxQwoVZUNu:Ze3aGVVdqylAq1jkmhxQwoVZUNu
TLSH 89E31930D4504B17C2D213FAA69E825E3F221FA793D733115B38BAB41FE279A1D69924
telfhash 87313122943546142fb39928acbd56b315222f2363993e716f26c5cc492b0e2e93ad5f
Reporter JoulK
Tags:elf gafgyt

Intelligence


File Origin
# of uploads :
1
# of downloads :
76
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Linux.Trojan.Gafgyt
Status:
Malicious
First seen:
2020-05-23 12:36:36 UTC
File Type:
ELF32 Little (Exe)
AV detection:
18 of 30 (60.00%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments