x86

First submission 2024-10-13 12:59:02 Last sumbission 2024-10-13 14:13:01

File details

File type: ELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 54.33 KB (55632 bytes)
MD5: 593e12a55226a314cada7e47cdf7fb04
SHA1: 82e89b66e0cd7b3eb01804a5b908eed6082aa823
SHA256: 07caf23c17ad74a5f223780201cc5a70c5dd25a790b889ff01ca588ff4b5de0b

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 41/77 VT report date: 2024-10-13 12:26:58
Malware Type 1 trojan
Threat Type 3 mirai ddos expl

URLs, FQDN and IP indicators 2

URL Host (FQDN/IP) Date Added
hXXp://net.tiktoka.cc/x86 VirusTotal Report net.tiktoka.cc VirusTotal Report 2024-10-13 14:13:04
hXXp://81.161.238.2/x86 VirusTotal Report 81.161.238.2 VirusTotal Report 2024-10-13 12:59:02

Strings analysis - Possible IPs found 3

81.161.238.2
255.255.255.255
127.0.0.1

Strings analysis - Possible URLs found 2

http://schemas.xmlsoap.org/soap/encoding/
http://schemas.xmlsoap.org/soap/envelope/