FBI.arm5
First submission 2024-10-14 12:40:02
File details
File type: | ELF 32-bit LSB executable, ARM, EABI4 version 1 (SYSV), statically linked, stripped |
Mime type: | application/x-executable |
File size: | 113.4 KB (116124 bytes) |
MD5: | 831151c2ad9ce729724e30a60a58f0d4 |
SHA1: | dcafc81ef0e9566d53670381f6f8c800d879dcf0 |
SHA256: | 8f532e050f3cbc18c2d8f4ca3a57e1910dd4d3483850bdf8943166e04a5189e4 |
File features detected
Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR
OSINT Enrichments
Virus Total: | 38/77 VT report date: 2024-10-14 08:01:49 |
Malware Type 1 | trojan |
Threat Type 3 | gafgyt mirai genericrxtw |
URLs, FQDN and IP indicators 1
Strings analysis - Possible IPs found 8
1.9.2.8 |
3.0.4.2 |
1.9.1.1 |
1.9.0.8 |
8.8.4.4 |
45.81.39.172 |
8.8.8.8 |
1.9.1.3 |
Strings analysis - Possible URLs found 5
http://www.baidu.com/search/spider.html) |
http://www.baidu.com/search/spider.htm) |
http://www.billybobbot.com/crawler/) |
http://fast.no/support/crawler.asp) |
http://feedback.redkolibri.com/ |