arm5

First submission 2024-10-13 12:51:02 Last sumbission 2024-10-13 14:17:02

File details

File type: ELF 32-bit LSB executable, ARM, version 1 (ARM), dynamically linked, interpreter /lib/ld-uClibc.so.0, stripped
Mime type: application/x-executable
File size: 39.79 KB (40744 bytes)
MD5: 2cca37084a336b38b10bd030b6f82690
SHA1: 5a22f5326961c9571a7d81fc75f60f6a85fb4ea8
SHA256: 78733e0f263c985ba523cd8afca56401f6e81e675a17854a7658a78f989f0467

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 19/77 VT report date: 2024-10-13 12:30:11
Malware Type 1 trojan
Threat Type 3 mirai gafgyt ddos

URLs, FQDN and IP indicators 2

URL Host (FQDN/IP) Date Added
hXXp://net.tiktoka.cc/arm5 VirusTotal Report net.tiktoka.cc VirusTotal Report 2024-10-13 14:17:04
hXXp://81.161.238.2/arm5 VirusTotal Report 81.161.238.2 VirusTotal Report 2024-10-13 12:51:02

Strings analysis - Possible IPs found 3

81.161.238.2
255.255.255.255
127.0.0.1

Strings analysis - Possible URLs found 2

http://schemas.xmlsoap.org/soap/encoding/
http://schemas.xmlsoap.org/soap/envelope/