debug.dbg

First submission 2024-10-13 12:48:01 Last sumbission 2024-10-13 14:18:01

File details

File type: ELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 69.08 KB (70736 bytes)
MD5: 4b6eb96c15bfd951b6445a84dd6a5abb
SHA1: dbcb159fe0edebef124a69179304c66fe5b7d42a
SHA256: 591e50216af5c3970b070d2c1aa46a2b5990c84ebb9f04c2a61a2d0add3bdac0

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 29/77 VT report date: 2024-10-13 12:32:42
Malware Type 1 trojan
Threat Type 3 mirai ddos gafgyt

URLs, FQDN and IP indicators 2

URL Host (FQDN/IP) Date Added
hXXp://net.tiktoka.cc/debug.dbg VirusTotal Report net.tiktoka.cc VirusTotal Report 2024-10-13 14:18:04
hXXp://81.161.238.2/debug.dbg VirusTotal Report 81.161.238.2 VirusTotal Report 2024-10-13 12:48:01

Strings analysis - Possible IPs found 3

81.161.238.2
255.255.255.255
127.0.0.1

Strings analysis - Possible URLs found 2

http://schemas.xmlsoap.org/soap/encoding/
http://schemas.xmlsoap.org/soap/envelope/