a

First submission 2024-10-17 12:50:01

File details

File type: Bourne-Again shell script, UTF-8 Unicode text executable, with CRLF line terminators
Mime type: text/x-shellscript
File size: 0.88 KB (904 bytes)
MD5: 8455cd0c73dbc405311ef293baa0e351
SHA1: 49f6196b754e9909db7f10647f5d8e873f332a26
SHA256: 14bdd3e0591c90c4cf849d96fdc78808517f79522c7bbbf829531ba6eb66da55

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 8/77 VT report date: 2024-10-17 02:29:23
Malware Type 1 downloader

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://212.64.199.171/a VirusTotal Report 212.64.199.171 VirusTotal Report 2024-10-17 12:50:02

Strings analysis - Possible IPs found 1

212.64.199.171

Strings analysis - Possible URLs found 1

http://212.64.199.171/$file_name