k.x86
First submission 2024-10-18 00:06:02
File details
File type: | ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, not stripped |
Mime type: | application/x-executable |
File size: | 145.01 KB (148486 bytes) |
MD5: | 79de065144e83810c9996855ac24d8cd |
SHA1: | c5c986bab2edc38ede5e574ea05f877484ea9891 |
SHA256: | 8edbc60b94ed73f80c6714eb12035ce5c6f558ee5efd0622220c74d8a0c339f3 |
File features detected
Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR
URLs, FQDN and IP indicators 1
Strings analysis - Possible IPs found 7
1.9.2.6 |
1.9.2.4 |
1.8.1.11 |
1.9.0.8 |
64.235.37.148 |
8.8.8.8 |
1.9.0.6 |
Strings analysis - Possible URLs found 6
http://64.235.37.148/gpon+-O+/tmp/gaf;sh+/tmp/gaf |
http://64.235.37.148/t%20-O%20-%3E%20/tmp/t;sh%20/tmp/t%27$ |
http://64.235.37.148/real.sh |
http://schemas.xmlsoap.org/soap/envelope/ |
http://schemas.xmlsoap.org/soap/encoding/ |
http://64.235.37.148/Kirin.sh;chmod |