bot.arm5

First submission 2024-03-25 14:04:03 Last sumbission 2024-04-12 09:36:03

File details

File type: ELF 32-bit LSB executable, ARM, version 1 (ARM), statically linked, stripped
Mime type: application/x-executable
File size: 126.75 KB (129792 bytes)
MD5: 36ae69640d3fbaeb88943933ec3a31a2
SHA1: bfda0689bc72991b6e314b89663f7d1595cd2755
SHA256: f33a02781d60ca36f4ee56579c6d33846c2549ad7556bca499c73302cee17514
Virus Total:

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 2

URL Host (FQDN/IP) Date Added
hXXp://103.237.86.195/bot.arm5 VirusTotal Report 103.237.86.195 VirusTotal Report 2024-04-12 09:36:04
hXXp://103.237.86.195/condi/bot.arm5 VirusTotal Report 103.237.86.195 VirusTotal Report 2024-04-12 09:15:05

Strings analysis - Possible IPs found 2

255.255.255.255
127.0.0.1