sensi.sh

First submission 2022-08-01 05:52:02

File details

File type: Bourne-Again shell script, ASCII text executable
File type: 1.91 KB (1953 bytes)
MD5: 6ef04202e366b55c15c6be0cb4f10a77
SHA1: fce78e466d1c000bd86f26421800f25d79f7f72e
SHA256: 1d7d813f6899f9f8bc12e60a7e46c462ce16a7a3f744b13b81848db35e784211
Virus Total: 33/60 VT report date: 2022-08-01 02:36:16

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://173.255.209.102/sensi.sh VirusTotal Report 173.255.209.102 VirusTotal Report 2022-08-01 05:52:02

Strings analysis - Possible IPs found 1

173.255.209.102

Strings analysis - Possible URLs found 20

http://173.255.209.102/Brave/Unitlife.arm4;cat
http://173.255.209.102/Brave/Unitlife.x86;cat
http://173.255.209.102/Brave/Unitlife.mips;
http://173.255.209.102/Brave/Unitlife.m68k;
http://173.255.209.102/Brave/Unitlife.ppc;cat
http://173.255.209.102/Brave/Unitlife.sh4;
http://173.255.209.102/Brave/Unitlife.x86;
http://173.255.209.102/Brave/Unitlife.arm5;cat
http://173.255.209.102/Brave/Unitlife.arm7;
http://173.255.209.102/Brave/Unitlife.arm6;
http://173.255.209.102/Brave/Unitlife.sh4;cat
http://173.255.209.102/Brave/Unitlife.mpsl;
http://173.255.209.102/Brave/Unitlife.arm5;
http://173.255.209.102/Brave/Unitlife.arm4;
http://173.255.209.102/Brave/Unitlife.m68k;cat
http://173.255.209.102/Brave/Unitlife.mpsl;cat
http://173.255.209.102/Brave/Unitlife.arm6;cat
http://173.255.209.102/Brave/Unitlife.mips;cat
http://173.255.209.102/Brave/Unitlife.ppc;
http://173.255.209.102/Brave/Unitlife.arm7;cat