main_sh4

First submission 2024-10-17 12:40:02

File details

File type: ELF 32-bit LSB executable, Renesas SH, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 118.84 KB (121696 bytes)
MD5: 1b525020461274aa5ba190231dd40d24
SHA1: 89ec705395e4cf1a8afc028727a271d6b2f53fcf
SHA256: c092f519f52918ad49a9e82a8ec50ee045cbe6472b65406b74443b9814e043e9

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 38/77 VT report date: 2024-10-13 03:44:08
Malware Type 1 trojan
Threat Type 3 mirai gafgyt bashlite

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://212.64.199.171/main_sh4 VirusTotal Report 212.64.199.171 VirusTotal Report 2024-10-17 12:40:02

Strings analysis - Possible IPs found 2

255.255.255.255
127.0.0.1