e2XIZNGYM9ikoVjgBL0InN279Icu52rkYd

First submission 2024-08-26 05:19:01 Last sumbission 2024-10-17 03:34:02

File details

File type: ELF 32-bit MSB executable, SPARC, version 1 (SYSV), statically linked, not stripped
Mime type: application/x-executable
File size: 101.8 KB (104247 bytes)
MD5: a7e686eb3f74b104a5520f08cfd54eb5
SHA1: 58b5d9571c85c6a7efc4e57111c3b8e2b2c9bb6b
SHA256: 617734b61c7e230a72fba8cb8b361bda96cc2d8f40ee358c44a60f1d9b48ab07

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 30/79 VT report date: 2024-08-25 23:55:08
Malware Type 1 trojan
Threat Type 3 mirai gafgyt possible

URLs, FQDN and IP indicators 3

URL Host (FQDN/IP) Date Added
hXXp://conn.masjesu.zip/bins/e2XIZNGYM9ikoVjgBL0InN279Icu52rkYd VirusTotal Report conn.masjesu.zip VirusTotal Report 2024-10-17 03:34:06
hXXp://87.120.84.230/bins/iZjBEp0O8lgVrkFduCbBaW3lnl1qiVjFSA VirusTotal Report 87.120.84.230 VirusTotal Report 2024-10-15 15:16:06
hXXp://87.120.84.230/bins/EQ9ov4LgXV8dGsewm9o5aSwnmzszxrKwhA VirusTotal Report 87.120.84.230 VirusTotal Report 2024-10-12 17:11:04

Strings analysis - Possible IPs found 1

8.8.8.8