Syn0.sh

First submission 2022-08-02 09:12:02

File details

File type: Bourne-Again shell script, ASCII text executable
File type: 2.3 KB (2360 bytes)
MD5: 474759662df11a553039132aa0e36f8c
SHA1: 9c238452a37bd495278971936f24972f6a6d3ca5
SHA256: 63794e94d52078dcf8536d98c49ccf3a3b7483eab06f29dec6491f03c9c8d021
Virus Total: 31/60 VT report date: 2022-08-02 06:27:50

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://5.199.143.110/Syn0.sh VirusTotal Report 5.199.143.110 VirusTotal Report 2022-08-02 09:12:02

Strings analysis - Possible IPs found 1

5.199.143.110

Strings analysis - Possible URLs found 13

http://5.199.143.110/Syn/Syn.arm5;
http://5.199.143.110/Syn/Syn.mips;
http://5.199.143.110/Syn/Syn.arm;
http://5.199.143.110/Syn/Syn.arm6;
http://5.199.143.110/Syn/Syn.spc;
http://5.199.143.110/Syn/Syn.sh4;
http://5.199.143.110/Syn/Syn.x86;
http://5.199.143.110/Syn/Syn.ppc;
http://5.199.143.110/Syn/Syn.mpsl;
http://5.199.143.110/Syn/Syn.i686;
http://5.199.143.110/Syn/Syn.arc;
http://5.199.143.110/Syn/Syn.arm7;
http://5.199.143.110/Syn/Syn.m68k;