q55lW1vmzRDWUH7HKA2MUL5hIjJDEXZ4Cq

First submission 2024-08-26 00:00:01 Last sumbission 2024-10-17 03:32:02

File details

File type: ELF 32-bit MSB executable, Motorola m68k, 68020, version 1 (SYSV), statically linked, not stripped
Mime type: application/x-executable
File size: 101.38 KB (103815 bytes)
MD5: 8d0f8d45165dc1f3ba334ce75be39621
SHA1: 1d5baece9d5af3885276735c3c20d28e161e00ff
SHA256: 17441ed8bf165953a69907fb286dd47f2de3f94b744da25c889f86514b904791

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 18/79 VT report date: 2024-08-25 23:55:09
Malware Type 1 trojan
Threat Type 3 mirai gafgyt possible

URLs, FQDN and IP indicators 3

URL Host (FQDN/IP) Date Added
hXXp://conn.masjesu.zip/bins/q55lW1vmzRDWUH7HKA2MUL5hIjJDEXZ4Cq VirusTotal Report conn.masjesu.zip VirusTotal Report 2024-10-17 03:32:06
hXXp://87.120.84.230/bins/CLVJOwlTFaWrkXsAa4IRv2mWLrjKCvZBxH VirusTotal Report 87.120.84.230 VirusTotal Report 2024-10-15 14:57:06
hXXp://87.120.84.230/bins/bYYV5kGNhtrvSEznCwMue3WYLm6SOXy3JH VirusTotal Report 87.120.84.230 VirusTotal Report 2024-10-12 17:09:04

Strings analysis - Possible IPs found 1

8.8.8.8