main

First submission 2024-10-16 14:53:06

File details

File type: Zip archive data, at least v1.0 to extract
Mime type: application/zip
File size: 53213.17 KB (54490282 bytes)
MD5: 6bb8c1c0c84f182fdf91d2519f870ea4
SHA1: ece30a74ea95c3b944381e4f4129bfa4311c9dd0
SHA256: 7a8c46de763bb4f5eb14a5350bd6a1259a4dda8a2811cd36ec4b787aaa007144

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 7/74 VT report date: 2024-10-16 14:01:55
Malware Type 1 trojan

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXps://codeload.github.com/longdeptrai6363/okem/zip/refs/heads/main VirusTotal Report codeload.github.com VirusTotal Report 2024-10-16 14:53:06

Strings analysis - File found

Executable
/k.So
Autocad
v 9=.dwG
Database
%v.Db
Text
Lib/idlelib/NEWS2x.txt
Library
DLLs/sqlite3.dll
vcruntime140.dll
VCRUNTIME140_1.dll
DLLs/libcrypto-1_1.dll
DLLs/tcl86t.dll
DLLs/libssl-1_1.dll
DLLs/tk86t.dll
DLLs/libffi-7.dll
python310.dll

Strings analysis - Possible IPs found 1

3.4.5.3