jew.ppc

First submission 2024-09-01 14:10:02

File details

File type: ELF 32-bit MSB executable, PowerPC or cisco 4500, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 54.17 KB (55472 bytes)
MD5: 0b63f8fa4b9d4ac7c0b770c3ab9a9cc9
SHA1: b11a3be375df5e66849005f3364f2fdfdf4d2cd7
SHA256: 81d8d53128ba90cdf5872ebfce983f5134d09c28d57c10ed40cb6dbd53d43cc8

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 39/78 VT report date: 2024-09-01 13:56:59
Malware Type 1 trojan
Threat Type 3 mirai bootnet smmr1

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://104.168.101.215/bins/jew.ppc VirusTotal Report 104.168.101.215 VirusTotal Report 2024-09-01 14:10:02

Strings analysis - Possible IPs found 1

104.168.101.215