arm7.nn

First submission 2024-10-14 10:58:02

File details

File type: ELF 32-bit LSB executable, ARM, EABI4 version 1 (SYSV), statically linked, with debug_info, not stripped
Mime type: application/x-executable
File size: 186.63 KB (191106 bytes)
MD5: 452f9cb6f1858d0c0392b431df8d9c6e
SHA1: ac26cdb3a6af39226bdf79279200592415c77453
SHA256: d339e88fd6b6f2ad713c835639d09022cbc92d55dab8a0a5006c18ca5d8e01a9

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 35/77 VT report date: 2024-10-14 05:20:45
Malware Type 1 trojan
Threat Type 3 mirai gafgyt bashlite

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://87.120.84.247/arm7.nn VirusTotal Report 87.120.84.247 VirusTotal Report 2024-10-14 10:58:02

Strings analysis - Possible IPs found 3

127.0.0.1
87.120.84.247
255.255.255.255

Strings analysis - Possible URLs found 3

http://87.120.84.247/
http://87.120.84.247/lol.sh
http://87.120.84.247/curl.sh