boatnet.arc

First submission 2024-09-04 20:45:02 Last sumbission 2024-09-04 21:37:02

File details

File type: ELF 32-bit LSB executable, ARC Cores Tangent-A5, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 105.27 KB (107800 bytes)
MD5: 5f798a5f9bb3637442027fbf54c24b59
SHA1: fb288ad99d1e4fbbaeafe40fb7e654d68e53fe0b
SHA256: f38dbc69e1b633eb55ade7f1cccbec330642611cdd0f470ae37dbcabbe41a06b

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 41/79 VT report date: 2024-09-04 20:35:14
Malware Type 1 trojan
Threat Type 3 mirai bashlite froz

URLs, FQDN and IP indicators 2

URL Host (FQDN/IP) Date Added
hXXp://93.123.85.167/hiddenbin/boatnet.arc VirusTotal Report 93.123.85.167 VirusTotal Report 2024-09-04 21:37:05
hXXp://93.123.85.167/arc VirusTotal Report 93.123.85.167 VirusTotal Report 2024-09-04 20:45:02

Strings analysis - Possible IPs found 3

93.123.85.167
255.255.255.255
127.0.0.1