4BdfuLg907FGFgziFPeazPcwIhFLVjuRoN

First submission 2024-10-12 17:04:01 Last sumbission 2024-10-15 14:52:02

File details

File type: ELF 32-bit MSB executable, PowerPC or cisco 4500, version 1 (SYSV), statically linked, not stripped
Mime type: application/x-executable
File size: 93.06 KB (95297 bytes)
MD5: 8fad5e89ce3d2b6159ac2ce2fdf7c084
SHA1: 27105a304b9bb7cd8a663d1b4da1d92fd8eea355
SHA256: 24689f385c263c42a28dd1498049171abc633faf91b5df2a738a81145d929bd6

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 38/77 VT report date: 2024-08-27 18:57:37
Malware Type 1 trojan
Threat Type 3 mirai gafgyt possible

URLs, FQDN and IP indicators 2

URL Host (FQDN/IP) Date Added
hXXp://87.120.84.230/bins/4BdfuLg907FGFgziFPeazPcwIhFLVjuRoN VirusTotal Report 87.120.84.230 VirusTotal Report 2024-10-15 14:52:05
hXXp://87.120.84.230/bins/TxECveADXd75hrgwkChap2TZxNmMot30wz VirusTotal Report 87.120.84.230 VirusTotal Report 2024-10-12 17:04:01

Strings analysis - Possible IPs found 2

8.8.8.8
192.168.1.1