thinkphp

First submission 2024-09-05 00:58:02 Last sumbission 2024-09-05 00:59:02

File details

File type: Bourne-Again shell script, ASCII text executable
Mime type: text/x-shellscript
File size: 2.51 KB (2568 bytes)
MD5: 395c62582a1556e32ae1d901e77ce791
SHA1: f18a1f865611dbfca2059fa0bb82f6f7e95185cf
SHA256: e662af1d9a4b0f82fe80c9fb0581022970ddde29e631462ff77a6c21ae276e8e

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

URLs, FQDN and IP indicators 2

URL Host (FQDN/IP) Date Added
hXXp://154.216.17.167/thinkphp VirusTotal Report 154.216.17.167 VirusTotal Report 2024-09-05 00:59:07
hXXp://154.216.17.167:8080/thinkphp VirusTotal Report 154.216.17.167 VirusTotal Report 2024-09-05 00:58:02

Strings analysis - Possible IPs found 1

154.216.17.167

Strings analysis - Possible URLs found 13

http://154.216.17.167//zmap.mips;
http://154.216.17.167//zmap.mpsl;
http://154.216.17.167//zmap.i686;
http://154.216.17.167//zmap.arm6;
http://154.216.17.167//zmap.arm7;
http://154.216.17.167//zmap.arm5;
http://154.216.17.167//zmap.m68k;
http://154.216.17.167//zmap.arm;
http://154.216.17.167//zmap.x86;
http://154.216.17.167//zmap.arc;
http://154.216.17.167//zmap.sh4;
http://154.216.17.167//zmap.spc;
http://154.216.17.167//zmap.ppc;