bc2zcAkVZAQXwDHsI4IioAxNiIOz3MW7XQ

First submission 2024-08-25 23:56:02 Last sumbission 2024-10-15 15:40:02

File details

File type: ELF 32-bit LSB executable, MIPS, MIPS-I version 1 (SYSV), statically linked, not stripped
Mime type: application/x-executable
File size: 129.26 KB (132358 bytes)
MD5: 52f72bcf31899453b40d37a7cbf55f35
SHA1: 6dfca1bd70aad3e88713b02ec1669ba5a792456c
SHA256: ed7e61403d47c0319eea05db0cba4d17bfb1594621d6722bfe43cffecacdf495

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 19/79 VT report date: 2024-08-25 23:55:04
Malware Type 1 trojan
Threat Type 3 mirai gafgyt possible

URLs, FQDN and IP indicators 3

URL Host (FQDN/IP) Date Added
hXXp://87.120.84.230/bins/bc2zcAkVZAQXwDHsI4IioAxNiIOz3MW7XQ VirusTotal Report 87.120.84.230 VirusTotal Report 2024-10-15 15:40:04
hXXp://87.120.126.196/bins/bc2zcAkVZAQXwDHsI4IioAxNiIOz3MW7XQ VirusTotal Report 87.120.126.196 VirusTotal Report 2024-10-15 15:19:06
hXXp://87.120.84.230/bins/uAJdWHgfXUEbpdZZMEkewyRfJRRycxYsUf VirusTotal Report 87.120.84.230 VirusTotal Report 2024-10-12 16:53:04

Strings analysis - Possible IPs found 2

8.8.8.8
192.168.1.1