x86

First submission 2024-09-04 20:21:02 Last sumbission 2024-09-04 20:54:02

File details

File type: ELF 32-bit LSB executable, Intel 80386, version 1 (GNU/Linux), statically linked, no section header
Mime type: application/x-executable
File size: 21.0 KB (21500 bytes)
MD5: 297bffe083d463085b04c161aeabb443
SHA1: 2295444a50beba3188b441fd25665cdf1f85be4a
SHA256: b6639d2ac700d1996bcf6f3defdde62a9a23b5009023b12dc1ce7151aa677e67

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 32/79 VT report date: 2024-09-04 20:04:01
Malware Type 1 trojan
Threat Type 3 mirai gafgyt genericrxtp

URLs, FQDN and IP indicators 2

URL Host (FQDN/IP) Date Added
hXXp://93.123.85.167/x86 VirusTotal Report 93.123.85.167 VirusTotal Report 2024-09-04 20:54:07
hXXp://93.123.85.167/hiddenbin/boatnet.x86 VirusTotal Report 93.123.85.167 VirusTotal Report 2024-09-04 20:21:02

Strings analysis - Possible URLs found 1

http://upx.sf.net