ppc

First submission 2024-10-17 13:14:02

File details

File type: ELF 32-bit MSB executable, PowerPC or cisco 4500, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 49.84 KB (51040 bytes)
MD5: 5fb3d999ac385a838295ac36c3e45150
SHA1: 7fd2f0de3f1df67bc364c7b3c4b4c9ac2d7684f1
SHA256: faa404e28d5faeb1587c59e253219085226918b18373b514326057e82dbc7865

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 38/77 VT report date: 2024-10-17 02:05:36
Malware Type 1 trojan
Threat Type 3 mirai expl gafgyt

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://87.236.95.134/bin1/ppc VirusTotal Report 87.236.95.134 VirusTotal Report 2024-10-17 13:14:02

Strings analysis - Possible IPs found 1

172.236.29.44

Strings analysis - Possible URLs found 2

http://schemas.xmlsoap.org/soap/encoding/
http://schemas.xmlsoap.org/soap/envelope/