skid.arm5

First submission 2024-02-09 16:03:02

File details

File type: ELF 32-bit LSB executable, ARM, version 1 (ARM), statically linked, stripped
Mime type: application/x-executable
File size: 75.07 KB (76872 bytes)
MD5: 4e2b40d72a1ed288542d3342f8bc17ee
SHA1: 1a069440f09bc4c667f646b0d1c7d5e109125c05
SHA256: 89a91b949de47402238b7ffee8bc2852ecf1cf631405a95f43e47025199540dc
Virus Total:

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://172-234-120-102.ip.linodeusercontent.com/skid.arm5 VirusTotal Report 172-234-120-102.ip.linodeusercontent.com VirusTotal Report 2024-02-09 16:03:02

Strings analysis - Possible IPs found 2

255.255.255.255
127.0.0.1

Strings analysis - Possible URLs found 2

http://schemas.xmlsoap.org/soap/encoding/
http://schemas.xmlsoap.org/soap/envelope/