quang.arm5

First submission 2024-02-10 03:32:02

File details

File type: ELF 32-bit LSB executable, ARM, version 1 (ARM), dynamically linked, interpreter /lib/ld-uClibc.so.0, stripped
Mime type: application/x-executable
File size: 37.22 KB (38116 bytes)
MD5: 381bc98d928a9fb5f77c75a248e416a6
SHA1: fe9fb0b15f1f6e9e9e46c9a74429548cdb492070
SHA256: f3551a472d033453e48915289a9c2833c846c432526eb9b6c2c7ac42e75d22b0
Virus Total:

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://botnet.shopkami.site/quang.arm5 VirusTotal Report botnet.shopkami.site VirusTotal Report 2024-02-10 03:32:02

Strings analysis - Possible IPs found 2

255.255.255.255
127.0.0.1