arm

First submission 2024-10-13 12:49:02 Last sumbission 2024-10-13 13:38:01

File details

File type: ELF 32-bit LSB executable, ARM, version 1 (ARM), statically linked, stripped
Mime type: application/x-executable
File size: 65.34 KB (66912 bytes)
MD5: 15ca69365248d0afd0c214246360d9e5
SHA1: 6e527d58d6d2e60be486fd3eb534f14f7badca75
SHA256: 6ca9cd4551df4d692847af59700242785423484b02db88eddf129720ccba7f58

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 32/77 VT report date: 2024-10-13 12:26:58
Malware Type 1 trojan
Threat Type 1 mirai

URLs, FQDN and IP indicators 2

URL Host (FQDN/IP) Date Added
hXXp://net.tiktoka.cc/arm VirusTotal Report net.tiktoka.cc VirusTotal Report 2024-10-13 13:38:03
hXXp://81.161.238.2/arm VirusTotal Report 81.161.238.2 VirusTotal Report 2024-10-13 12:49:02

Strings analysis - Possible IPs found 3

81.161.238.2
255.255.255.255
127.0.0.1

Strings analysis - Possible URLs found 2

http://schemas.xmlsoap.org/soap/encoding/
http://schemas.xmlsoap.org/soap/envelope/