bash
First submission 2024-10-11 20:52:04
Last sumbission 2024-10-11 23:16:03
File details
File type: | ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, not stripped |
Mime type: | application/x-executable |
File size: | 156.1 KB (159844 bytes) |
MD5: | 41679c73d13260d67ce5cc88231a50b6 |
SHA1: | 754b45482107a85f64e9bfb7cf8d031e707db3b5 |
SHA256: | 8af3d8726dea0d49c5666c9cfbcb21c11cc2c641fe6a2c6b1e01a89204be6c99 |
File features detected
Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR
OSINT Enrichments
Virus Total: | 42/76 VT report date: 2024-10-11 20:36:43 |
Malware Type 1 | trojan |
Threat Type 3 | gafgyt mirai ddos |
URLs, FQDN and IP indicators 2
Strings analysis - Possible IPs found 11
1.9.2.8 |
3.0.4.2 |
8.8.8.8 |
1.9.0.6 |
1.9.2.6 |
1.9.2.4 |
1.8.1.11 |
1.9.0.8 |
160.22.160.59 |
1.9.1.1 |
1.9.1.3 |
Strings analysis - Possible URLs found 5
http://www.baidu.com/search/spider.html) |
http://www.baidu.com/search/spider.htm) |
http://fast.no/support/crawler.asp) |
http://feedback.redkolibri.com/ |
http://www.billybobbot.com/crawler/) |