8.sh

First submission 2024-07-23 11:42:01

File details

File type: Bourne-Again shell script, UTF-8 Unicode text executable
Mime type: text/x-shellscript
File size: 0.63 KB (648 bytes)
MD5: ab9d64cd2fcb9cb57e1e376950cec836
SHA1: 4270a7ca33b0610d14114916dd8b8dbc158c4f85
SHA256: 8291450bbf1e91a23a58526f2b98def0821367f835b840bab1d0c35eb14de9c8

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 14/78 VT report date: 2024-07-23 12:00:26
Malware Type 2 downloader trojan
Threat Type 1 shell

Strings analysis - Possible IPs found 1

45.156.25.175

Strings analysis - Possible URLs found 4

http://45.156.25.175/mpsl;cat
http://45.156.25.175/mpsl;
http://45.156.25.175/mips;
http://45.156.25.175/mips;cat