Linux Analysis Report
tuefv1.elf

Overview

General Information

Sample name: tuefv1.elf
Analysis ID: 1545734
MD5: e63c67b5e3d7ed50f545f169bbabb85d
SHA1: dc257558381a518aec15ee646364eda18da3ad32
SHA256: 71cf150028e4b67bcd8cb50c4aa86eecab1615195cf6a45024e9c4e55aa1e7fd
Tags: elfuser-MDMCk10
Infos:

Detection

Xmrig
Score: 76
Range: 0 - 100
Whitelisted: false

Signatures

Malicious sample detected (through community Yara rule)
Multi AV Scanner detection for submitted file
Yara detected Xmrig cryptocurrency miner
Found strings related to Crypto-Mining
Machine Learning detection for sample
Stdout / stderr contain strings indicative of a mining client
Contains symbols related to standard C library sleeps (sometimes used to evade sandboxing)
Creates hidden files and/or directories
Reads CPU information from /proc indicative of miner or evasive malware
Reads CPU information from /sys indicative of miner or evasive malware
Reads system information from the proc file system
Sample has stripped symbol table
Uses the "uname" system call to query kernel version information (possible evasion)
Yara signature match

Classification

AV Detection

barindex
Source: tuefv1.elf ReversingLabs: Detection: 63%
Source: tuefv1.elf Joe Sandbox ML: detected

Bitcoin Miner

barindex
Source: Yara match File source: tuefv1.elf, type: SAMPLE
Source: tuefv1.elf String found in binary or memory: stratum+ssl://randomx.xmrig.com:443
Source: tuefv1.elf String found in binary or memory: cryptonight/0
Source: tuefv1.elf String found in binary or memory: -o, --url=URL URL of mining server
Source: tuefv1.elf String found in binary or memory: stratum+tcp://
Source: tuefv1.elf String found in binary or memory: Usage: xmrig [OPTIONS]
Source: tuefv1.elf String found in binary or memory: XMRig 6.22.1-mo1
Source: /tmp/tuefv1.elf Stdout: xmrig
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from proc file: /proc/cpuinfo Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/online Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/topology/core_cpus Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/topology/core_id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/topology/die_cpus Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/topology/package_cpus Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/topology/physical_package_id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/coherency_line_size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/number_of_sets Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/physical_line_partition Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index1/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index1/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index1/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index1/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/coherency_line_size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/number_of_sets Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/physical_line_partition Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/coherency_line_size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/number_of_sets Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/physical_line_partition Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/topology/core_cpus Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/topology/core_id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/topology/die_cpus Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/topology/package_cpus Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/topology/physical_package_id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/coherency_line_size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/number_of_sets Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/physical_line_partition Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index1/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index1/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index1/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index1/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/coherency_line_size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/number_of_sets Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/physical_line_partition Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/coherency_line_size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/number_of_sets Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/physical_line_partition Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/possible Jump to behavior
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global traffic DNS traffic detected: DNS query: daisy.ubuntu.com
Source: tuefv1.elf ELF static info symbol of initial sample: freeaddrinfo
Source: tuefv1.elf ELF static info symbol of initial sample: gai_strerror
Source: tuefv1.elf ELF static info symbol of initial sample: getaddrinfo
Source: tuefv1.elf ELF static info symbol of initial sample: getnameinfo
Source: tuefv1.elf String found in binary or memory: https://gcc.gnu.org/bugsSt15basic_stringbufIcSt11char_traitsIcESaIcEE
Source: tuefv1.elf String found in binary or memory: https://gcc.gnu.org/bugsSt15basic_stringbufIcSt11char_traitsIcESaIcEESt19basic_istringstreamIcSt11ch
Source: tuefv1.elf String found in binary or memory: https://xmrig.com/benchmark/%s
Source: tuefv1.elf String found in binary or memory: https://xmrig.com/docs/algorithms
Source: tuefv1.elf String found in binary or memory: https://xmrig.com/wizard
Source: tuefv1.elf String found in binary or memory: https://xmrig.com/wizard%s

System Summary

barindex
Source: tuefv1.elf, type: SAMPLE Matched rule: Linux_Cryptominer_Malxmr_f35a670c Author: unknown
Source: tuefv1.elf, type: SAMPLE Matched rule: Linux_Trojan_Pornoasset_927f314f Author: unknown
Source: tuefv1.elf, type: SAMPLE Matched rule: MacOS_Cryptominer_Xmrig_241780a1 Author: unknown
Source: 5433.1.0000000000407000.00000000009aa000.r-x.sdmp, type: MEMORY Matched rule: Linux_Cryptominer_Malxmr_f35a670c Author: unknown
Source: 5433.1.0000000000407000.00000000009aa000.r-x.sdmp, type: MEMORY Matched rule: Linux_Trojan_Pornoasset_927f314f Author: unknown
Source: ELF static info symbol of initial sample .symtab present: no
Source: tuefv1.elf, type: SAMPLE Matched rule: Linux_Cryptominer_Malxmr_f35a670c reference_sample = a73808211ba00b92f8d0027831b3aa74db15f068c53dd7f20fcadb294224f480, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Cryptominer.Malxmr, fingerprint = 9064024118d30d89bdc093d5372a0d9fefd43eb1ac6359dbedcf3b73ba93f312, id = f35a670c-7599-4c93-b08b-463c4a93808a, last_modified = 2021-09-16
Source: tuefv1.elf, type: SAMPLE Matched rule: Linux_Trojan_Pornoasset_927f314f reference_sample = d653598df857535c354ba21d96358d4767d6ada137ee32ce5eb4972363b35f93, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Pornoasset, fingerprint = 7214d3132fc606482e3f6236d291082a3abc0359c80255048045dba6e60ec7bf, id = 927f314f-2cbb-4f87-b75c-9aa5ef758599, last_modified = 2021-09-16
Source: tuefv1.elf, type: SAMPLE Matched rule: MacOS_Cryptominer_Xmrig_241780a1 reference_sample = 2e94fa6ac4045292bf04070a372a03df804fa96c3b0cb4ac637eeeb67531a32f, os = macos, severity = x86, creation_date = 2021-09-30, scan_context = file, memory, license = Elastic License v2, threat_name = MacOS.Cryptominer.Xmrig, fingerprint = be9c56f18e0f0bdc8c46544039b9cb0bbba595c1912d089b2bcc7a7768ac04a8, id = 241780a1-ad50-4ded-b85a-26339ae5a632, last_modified = 2021-10-25
Source: 5433.1.0000000000407000.00000000009aa000.r-x.sdmp, type: MEMORY Matched rule: Linux_Cryptominer_Malxmr_f35a670c reference_sample = a73808211ba00b92f8d0027831b3aa74db15f068c53dd7f20fcadb294224f480, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Cryptominer.Malxmr, fingerprint = 9064024118d30d89bdc093d5372a0d9fefd43eb1ac6359dbedcf3b73ba93f312, id = f35a670c-7599-4c93-b08b-463c4a93808a, last_modified = 2021-09-16
Source: 5433.1.0000000000407000.00000000009aa000.r-x.sdmp, type: MEMORY Matched rule: Linux_Trojan_Pornoasset_927f314f reference_sample = d653598df857535c354ba21d96358d4767d6ada137ee32ce5eb4972363b35f93, os = linux, severity = x86, creation_date = 2021-01-12, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Trojan.Pornoasset, fingerprint = 7214d3132fc606482e3f6236d291082a3abc0359c80255048045dba6e60ec7bf, id = 927f314f-2cbb-4f87-b75c-9aa5ef758599, last_modified = 2021-09-16
Source: classification engine Classification label: mal76.mine.linELF@0/0@2/0
Source: /tmp/tuefv1.elf (PID: 5433) Directory: /root/.xmrig.json Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads from proc file: /proc/cpuinfo Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads from proc file: /proc/meminfo Jump to behavior
Source: ELF symbol in initial sample Symbol name: nanosleep
Source: ELF symbol in initial sample Symbol name: sleep
Source: ELF symbol in initial sample Symbol name: usleep
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from proc file: /proc/cpuinfo Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/online Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/topology/core_cpus Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/topology/core_id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/topology/die_cpus Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/topology/package_cpus Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/topology/physical_package_id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/coherency_line_size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/number_of_sets Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index0/physical_line_partition Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index1/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index1/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index1/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index1/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/coherency_line_size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/number_of_sets Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index2/physical_line_partition Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/coherency_line_size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/number_of_sets Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu0/cache/index3/physical_line_partition Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/topology/core_cpus Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/topology/core_id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/topology/die_cpus Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/topology/package_cpus Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/topology/physical_package_id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/coherency_line_size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/number_of_sets Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index0/physical_line_partition Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index1/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index1/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index1/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index1/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/coherency_line_size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/number_of_sets Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index2/physical_line_partition Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/shared_cpu_map Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/level Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/type Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/id Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/coherency_line_size Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/number_of_sets Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/cpu1/cache/index3/physical_line_partition Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Reads CPU info from /sys: /sys/devices/system/cpu/possible Jump to behavior
Source: /tmp/tuefv1.elf (PID: 5433) Queries kernel information via 'uname': Jump to behavior
No contacted IP infos