camp.arm

First submission 2023-09-13 20:00:03

File details

File type: ELF 32-bit LSB executable, ARM, version 1 (ARM), statically linked, stripped
Mime type: application/x-executable
File size: 77.0 KB (78844 bytes)
MD5: 9eb2aca5601d3071daa026f61fff4982
SHA1: 0a3bb38e1cf59f141cebe227f97e3ad8a3c0a5fb
SHA256: 7cb60d1402c93b263e7d1fc8697e033ad63f91653d0af24e4f44c89236bfd5fc
Virus Total: 41/61 VT report date: 2023-09-13 17:41:50

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://89.190.156.176/bins/camp.arm VirusTotal Report 89.190.156.176 VirusTotal Report 2023-09-13 20:00:03

Strings analysis - Possible IPs found 2

192.168.0.14
89.190.156.176

Strings analysis - Possible URLs found 4

http://schemas.xmlsoap.org/soap/encoding/
http://89.190.156.176/bins/x86
http://89.190.156.176/zyxel.sh;
http://schemas.xmlsoap.org/soap/envelope/