MB-26baeb01bcefacee2cf9d29e2a84dd15fef3a9b26f43266d4aafb74969144743
high
📛 Threat Title
Unknown: stub.aarch64
Description
File type: elf. Size: 777076 bytes. Tags: elf. Reporter: abuse_ch. First seen: 2026-09-25 00:13:00.
Indicators of Compromise (3)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
hash_sha256
26baeb01bcefacee2cf9d29e2a84dd15fef3a9b26f43266d4aafb74969144743
IOC database
- Type
- hash_sha256
- Value
26baeb01bcefacee2cf9d29e2a84dd15fef3a9b26f43266d4aafb74969144743- First seen
- Last seen
- Attached to this threat
- Appears in
- 2 threats
- Description
- URLhaus payload hash
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_md5
4122e087d0228deb34038d8b21d4afe3
IOC database
- Type
- hash_md5
- Value
4122e087d0228deb34038d8b21d4afe3- First seen
- Last seen
- Attached to this threat
- Appears in
- 2 threats
- Description
- URLhaus payload hash
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_sha1
28005ac8a89dc4dc853fac2b0d447a866b40d684
IOC database
- Type
- hash_sha1
- Value
28005ac8a89dc4dc853fac2b0d447a866b40d684- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
References (1)
-
MalwareBazaar sample page
Abuse.ch
File type: elf. Size: 777076 bytes. Tags: elf. Reporter: abuse_ch. First seen: 2026-09-25 00:13:00.
Remediations (10)
-
web:access.redhat.com
The aarch64 (ARM64) kernel gets stuck if you try to boot with mem=16G. The only output is: EFI stub: Booting Linux Kernel... EFI stub: Using DTB from configuration table EFI stub: Exiting boot services and installing virtual address map... L3c Cache: 8MB If I add some debug options, "mem=16G earlycon=uart,mmio32,0x1c021000 keep_bootcon uefi_debug", then I get some more output showing a kernel ...
-
web:bugzilla.redhat.com
You need to before you can comment on or make changes to this bug.
-
web:deepwiki.com
This document describes the CPU errata workaround and CVE mitigation framework in TF-A. It covers the build-time configuration system, runtime application mechanisms, and the Errata ABI service for querying workaround status. This framework allows platforms to enable workarounds for hardware errata and security vulnerabilities discovered in ARM ...
-
web:deepwiki.com
AArch64 utilizes frame pointer (x29) and link register (x30) manipulation to ensure the stack trace appears to originate from a system-trusted location. AArch64 Stub Workflow
-
web:doc.rust-lang.org
aarch64- unknown -linux-gnu Tier: 1 (with Host Tools) Target for 64-bit little endian ARMv8-A Linux 4.1+ programs using glibc 2.17+. Target maintainers arm-maintainers (rust@arm.com) Use @rustbot ping arm-maintainers to ping us Requirements Building the target itself requires a 64-bit little endian ARMv8-A compiler that is supported by cc-rs. Building the target The target can be built by ...
-
web:gcc.gnu.org
The value ' native ' is available on native AArch64 GNU/Linux and causes the compiler to pick the architecture of the host system. This option has no effect if the compiler is unable to recognize the architecture of the host system, The permissible values for feature are listed in the sub-section on -march and -mcpu Feature Modifiers.
-
web:gcc.gnu.org
The value ' native ' is available on native AArch64 GNU/Linux and causes the compiler to pick the architecture of the host system. This option has no effect if the compiler is unable to recognize the architecture of the host system. When -march=native is given and no other -mcpu or -mtune is given then GCC will pick the host CPU as the CPU to tune for as well as select the architecture ...
-
web:jensd.be
In this post, I'll explain how to do cross compiling for 32bit ARM (arm) or 64bit ARM (aarch64) using Debian 10 or Ubuntu 20.04 LTS. Youtube video If you are interested, I also created a YouTube video from this blogpost. If you prefer classic text, you can just follow the rest of this article:
-
web:sourceware.org
21.4.1 AArch64 When GDB is debugging the AArch64 architecture, it provides the following special commands: set debug aarch64 This command determines whether AArch64 architecture-specific debugging messages are to be displayed. show debug aarch64 Show whether AArch64 debugging messages are displayed. 21.4.1.1 AArch64 Scalable Vector Extension When GDB is debugging the AArch64 architecture, if ...
-
web:suchmememanyskill.github.io
READ THIS BEFORE CONTINUING This guide isn't called an "unbrick guide" for no reason, it shouldn't be treated as a way out of simple inconveniences and should NOT be followed without proper reason to do so. A "brick" indicates that a device is dysfunctional on a soft- and/or hardware level. The term "software brick" means that something is messed up at the internal storage/operating system ...
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.