armv4l

First submission 2024-10-17 16:06:02

File details

File type: ELF 32-bit LSB executable, ARM, version 1 (ARM), statically linked, stripped
Mime type: application/x-executable
File size: 72.68 KB (74420 bytes)
MD5: 9e6674158db4434986a685e931b2e836
SHA1: e1bd7d5695da09a70cee980539c1d62c50051015
SHA256: 78b8a46454338de5c4171edfb8c14ff8db91a9f20c830aabb92bddb0dbcad525

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 7/77 VT report date: 2024-10-17 14:35:08
Threat Type 1 mirai

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://185.121.233.82/ss/armv4l VirusTotal Report 185.121.233.82 VirusTotal Report 2024-10-17 16:06:02

Strings analysis - File found

Data
!5/////./..//////./..//////./../flash/rw/store/user.dat

Strings analysis - Possible IPs found 1

127.0.0.1