jack5tr.sh

First submission 2023-09-12 17:56:03

File details

File type: Bourne-Again shell script, ASCII text executable
Mime type: text/x-shellscript
File size: 2.25 KB (2301 bytes)
MD5: 8769b2d64464c4524317007dfe5ab188
SHA1: 4102b4a13ccf6f38b018c5142a7a01f90bcdfcc6
SHA256: 73b850e58a65289611cf6711048572741be2b17436e2876ce99001db2514d752
Virus Total: 35/58 VT report date: 2023-09-12 14:42:19

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://172.247.38.252/jack5tr.sh VirusTotal Report 172.247.38.252 VirusTotal Report 2023-09-12 17:56:03

Strings analysis - Possible IPs found 1

172.247.38.252

Strings analysis - Possible URLs found 26

http://172.247.38.252/idk/home.x86_64;
http://172.247.38.252/idk/home.arc;
http://172.247.38.252/idk/home.m68k;
http://172.247.38.252/idk/home.arm6;cat
http://172.247.38.252/idk/home.mpsl;cat
http://172.247.38.252/idk/home.arm7;cat
http://172.247.38.252/idk/home.mips;
http://172.247.38.252/idk/home.arm;
http://172.247.38.252/idk/home.arm5;cat
http://172.247.38.252/idk/home.arc;cat
http://172.247.38.252/idk/home.sh4;
http://172.247.38.252/idk/home.ppc;
http://172.247.38.252/idk/home.m68k;cat
http://172.247.38.252/idk/home.arm6;
http://172.247.38.252/idk/home.x86;
http://172.247.38.252/idk/home.sh4;cat
http://172.247.38.252/idk/home.x86;cat
http://172.247.38.252/idk/home.ppc;cat
http://172.247.38.252/idk/home.arm;cat
http://172.247.38.252/idk/home.spc;cat
http://172.247.38.252/idk/home.mpsl;
http://172.247.38.252/idk/home.arm7;
http://172.247.38.252/idk/home.arm5;
http://172.247.38.252/idk/home.mips;cat
http://172.247.38.252/idk/home.x86_64;cat
http://172.247.38.252/idk/home.spc;