rbot

First submission 2024-10-14 02:00:02

File details

File type: ELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 37.13 KB (38020 bytes)
MD5: 1cbcb204adaec7b98a0cb9cd68f590f1
SHA1: c0541bcd9c1c8ee50737fbee222fe3167fc4cd9f
SHA256: 82605030dc9a5718182a98ca0b7f6e62f5061d6f28874efb162cb726cc5d3bef

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 31/77 VT report date: 2024-10-13 21:41:56
Malware Type 1 trojan
Threat Type 3 mirai gafgyt bashlite

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://93.123.85.253/botpilled/rbot VirusTotal Report 93.123.85.253 VirusTotal Report 2024-10-14 02:00:02

Strings analysis - Possible IPs found 2

93.123.85.253
8.8.8.8