Linux Analysis Report
exploit-2

Overview

General Information

Sample name: exploit-2
Analysis ID: 1561523
MD5: ca270a734b76615e7d4a91edcbb6fb2d
SHA1: f8732474c38f88481d809382c0d32b918f49b983
SHA256: 726d07e8ca75c717f27273b72c5db135d878d8ddb9c7cb0e98d040fc7b07fca6
Infos:

Detection

Score: 68
Range: 0 - 100
Whitelisted: false

Signatures

Antivirus / Scanner detection for submitted sample
Malicious sample detected (through community Yara rule)
Multi AV Scanner detection for submitted file
Machine Learning detection for sample
Yara signature match

Classification

AV Detection

barindex
Source: exploit-2 Avira: detected
Source: exploit-2 ReversingLabs: Detection: 66%
Source: exploit-2 Joe Sandbox ML: detected

System Summary

barindex
Source: exploit-2, type: SAMPLE Matched rule: Linux_Exploit_CVE_2022_0847_e831c285 Author: unknown
Source: 5414.1.00005583273e3000.00005583273e4000.r-x.sdmp, type: MEMORY Matched rule: Linux_Exploit_CVE_2022_0847_e831c285 Author: unknown
Source: exploit-2, type: SAMPLE Matched rule: Linux_Exploit_CVE_2022_0847_e831c285 reference_sample = c6b2cef2f2bc04e3ae33e0d368eb39eb5ea38d1bca390df47f7096117c1aecca, os = linux, severity = x86, creation_date = 2022-03-10, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Exploit.CVE-2022-0847, fingerprint = 376b791f9bb5f48d0f41ead4e48b5bcc74cb68002bb7c170760428ace169457e, id = e831c285-b2b9-49f3-a87c-3deb806e31e4, last_modified = 2022-03-14
Source: 5414.1.00005583273e3000.00005583273e4000.r-x.sdmp, type: MEMORY Matched rule: Linux_Exploit_CVE_2022_0847_e831c285 reference_sample = c6b2cef2f2bc04e3ae33e0d368eb39eb5ea38d1bca390df47f7096117c1aecca, os = linux, severity = x86, creation_date = 2022-03-10, scan_context = file, memory, license = Elastic License v2, threat_name = Linux.Exploit.CVE-2022-0847, fingerprint = 376b791f9bb5f48d0f41ead4e48b5bcc74cb68002bb7c170760428ace169457e, id = e831c285-b2b9-49f3-a87c-3deb806e31e4, last_modified = 2022-03-14
Source: classification engine Classification label: mal68.lin@0/0@0/0
No contacted IP infos