m68k

First submission 2024-10-13 00:33:01

File details

File type: ELF 32-bit MSB executable, Motorola m68k, 68020, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 63.27 KB (64792 bytes)
MD5: 7b891f5e240baf672dab597b8a6b2cbb
SHA1: a23efe6335c5e7a78b96e32691f8a230bfacc6ef
SHA256: d8458bf9845a6b4caf29b9910ed95a9521f34b159f3a763946f4f9a7167ded34

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 36/76 VT report date: 2024-10-12 22:43:42
Malware Type 1 trojan
Threat Type 3 mirai gafgyt froz

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://185.196.10.215/bins/m68k VirusTotal Report 185.196.10.215 VirusTotal Report 2024-10-13 00:33:02

Strings analysis - Possible IPs found 3

255.255.255.255
127.0.0.1
185.196.10.215

Strings analysis - Possible URLs found 3

http://schemas.xmlsoap.org/soap/encoding/
http://185.196.10.215/bins/mips;
http://schemas.xmlsoap.org/soap/envelope/