timb-machine / linux-malware

Tracking interesting Linux (and UNIX) malware. Send PRs
The Unlicense
1.13k stars 90 forks source link

[Intel]: https://bazaar.abuse.ch/sample/d817131a06e282101d1da0a44df9b273f2c65bd0f4dd7cd9ef8e74ed49ce57e4/ #662

Open timb-machine opened 1 year ago

timb-machine commented 1 year ago

Area

Malware binaries

Parent threat

Persistence, Defense Evasion

Finding

https://bazaar.abuse.ch/sample/d817131a06e282101d1da0a44df9b273f2c65bd0f4dd7cd9ef8e74ed49ce57e4/

Industry reference

attack:T1053.003:Cron uses:Non-persistentStorage uses:RedirectionToNull https://github.com/timb-machine/linux-malware/issues/661

Malware reference

SystemBC /malware/binaries/SystemBC

Actor reference

No response

Component

Linux

Scenario

No response