Skip to content

Instantly share code, notes, and snippets.

@bwall
Last active November 25, 2015 22:19
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
Star You must be signed in to star a gist
Embed
What would you like to do?
bamfdetect output from scanning GlassRAT sample.
{
"/tmp/glassrat/a9b30b928ebf9cda5136ee37053fa045f3a53d0706dcb2343c91013193de761e":
{"information":
{
"c2s":
[
{"c2_uri": "bits.foryousee.net"},
{"c2_uri": "103.20.195.242"}
]
},
"description": "Trojan",
"module": "glassrat",
"preprocessor": {"upx_compressed": false},
"postprocessor": {"sha1": "f95c2a8aeb081ff849ec720045beffd6c9cb1bf4", "sha256": "a9b30b928ebf9cda5136ee37053fa045f3a53d0706dcb2343c91013193de761e", "md5": "b7f2020208ebd137616dadb60700b847"},
"type": "GlassRAT"
}
}
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment