sh4

First submission 2024-08-29 22:27:02 Last sumbission 2024-09-05 19:34:02

File details

File type: ELF 32-bit LSB executable, Renesas SH, version 1 (SYSV), statically linked, not stripped
Mime type: application/x-executable
File size: 52.89 KB (54158 bytes)
MD5: 1fff8efa9ffa8826e4964dd4500519ef
SHA1: c2179d2ea55b8c9acbf645fe967dbbcbd52c2bba
SHA256: 6b5264099b282107f3f63c00621243ca3afb5f349df25c855b3952404de5bcd6

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 38/79 VT report date: 2024-08-17 10:24:20
Malware Type 1 trojan
Threat Type 3 mirai gafgyt possible

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://154.213.186.19/sh4 VirusTotal Report 154.213.186.19 VirusTotal Report 2024-09-05 19:34:05

Strings analysis - Possible IPs found 1

154.213.185.140