home.arm6

First submission 2022-07-22 11:22:02

File details

File type: ELF 32-bit LSB executable, ARM, EABI4 version 1 (SYSV), statically linked, stripped
File type: 49.62 KB (50808 bytes)
MD5: 1fe7c6e59372147b2c1f08614170aba6
SHA1: e032003f02334ba77c1d8ebea8e4572a37852c57
SHA256: 0c187800b1223378c50fdcf00fc52fadae635b139649e34a7a7535f642e25b8a
Virus Total: 32/61 VT report date: 2022-07-21 09:42:29

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 3

URL Host (FQDN/IP) Date Added
hXXp://209.141.50.31/skullnet//haha.arm6 VirusTotal Report 209.141.50.31 VirusTotal Report 2022-07-22 11:22:02
hXXp://209.141.50.31/skullnet/haha.arm6 VirusTotal Report 209.141.50.31 VirusTotal Report 2022-08-04 21:41:05
hXXp://209.141.50.31/skullnet/home.arm6 VirusTotal Report 209.141.50.31 VirusTotal Report 2022-08-05 00:12:06

Strings analysis - Possible IPs found 2

255.255.255.255
127.0.0.1