bin.sh

First submission 2023-06-24 19:54:02 Last sumbission 2023-09-30 00:11:02

File details

File type: ELF 32-bit LSB executable, MIPS, MIPS-I version 1 (SYSV), statically linked, no section header
Mime type: application/x-executable
File size: 131.84 KB (135008 bytes)
MD5: 3313e9cc72e7cf75851dc62b84ca932c
SHA1: b5f914ad11626070f6cf466069c8d5d9ee25f5bb
SHA256: 9e0a15a4318e3e788bad61398b8a40d4916d63ab27b47f3bdbe329c462193600
Virus Total: 44/61 VT report date: 2023-06-24 09:05:24

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 4

URL Host (FQDN/IP) Date Added
hXXp://200.69.57.50:54197/bin.sh VirusTotal Report 200.69.57.50 VirusTotal Report 2023-09-30 00:11:03
hXXp://200.69.57.50:54197/i VirusTotal Report 200.69.57.50 VirusTotal Report 2023-09-29 21:51:04
hXXp://200.69.57.50:49270/bin.sh VirusTotal Report 200.69.57.50 VirusTotal Report 2023-09-26 04:41:04
hXXp://42.87.117.245:41442/Mozi.m VirusTotal Report 42.87.117.245 VirusTotal Report 2023-09-25 06:02:06

Strings analysis - File found

XML
%FFcs7c.xml

Strings analysis - Possible URLs found 1

http://upx.sf.net