xi.x86

First submission 2024-10-14 19:20:03

File details

File type: ELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 49.08 KB (50256 bytes)
MD5: 6f222904b218df69ed5140c9cd3a88f6
SHA1: 78a410929da0fa5401b0996e5bc2ba68f2d63623
SHA256: ba82a317e804118b1536bceedc0d1912d2df1b55ba696cbdb1300d25262210a2

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 39/77 VT report date: 2024-10-09 23:14:53
Malware Type 1 trojan
Threat Type 3 mirai ddos febn

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://103.192.179.5/xi.x86 VirusTotal Report 103.192.179.5 VirusTotal Report 2024-10-14 19:20:03

Strings analysis - Possible IPs found 2

255.255.255.255
127.0.0.1