qlcxvisgod.m68k

First submission 2022-08-05 06:43:02

File details

File type: ELF 32-bit MSB executable, Motorola m68k, 68020, version 1 (SYSV), statically linked, stripped
File type: 70.64 KB (72336 bytes)
MD5: 35becd018b3e48ad6cc275cc1b0efd6a
SHA1: 4188d1f54b5e7afcf8279671f1a4d28034f560d5
SHA256: 9c494e2e22814e66ac625772e96299036504881b1719695ecacdd2132ffca77e
Virus Total: 38/62 VT report date: 2022-07-31 14:34:56

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://208.67.106.145/bns/qlcxvisgod.m68k VirusTotal Report 208.67.106.145 VirusTotal Report 2022-08-05 06:43:02

Strings analysis - Possible IPs found 2

208.67.106.145
192.168.0.14

Strings analysis - Possible URLs found 4

http://208.67.106.145/zyxel.sh;
http://schemas.xmlsoap.org/soap/encoding/
http://208.67.106.145/bns/x86
http://schemas.xmlsoap.org/soap/envelope/