xi.arm7

First submission 2024-10-14 17:20:03

File details

File type: ELF 32-bit LSB executable, ARM, EABI4 version 1 (SYSV), statically linked, with debug_info, not stripped
Mime type: application/x-executable
File size: 136.66 KB (139936 bytes)
MD5: 75bafb6432a482031d792bac00dd0019
SHA1: de6cf788d2f841b7d9188577857c8db0a67ec15b
SHA256: ea73e4240122c37e95d39f3a4788b21bfeb84738415bcbc9f0deb0d60fd6ea06

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 35/77 VT report date: 2024-10-14 16:55:23
Malware Type 1 trojan
Threat Type 3 mirai alon ddos

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://103.192.179.5/xi.arm7 VirusTotal Report 103.192.179.5 VirusTotal Report 2024-10-14 17:20:03

Strings analysis - Possible IPs found 2

255.255.255.255
127.0.0.1