a-r.m-4.Sakura

First submission 2024-08-30 10:07:02

File details

File type: ELF 32-bit LSB executable, ARM, version 1 (ARM), statically linked, with debug_info, not stripped
Mime type: application/x-executable
File size: 105.88 KB (108417 bytes)
MD5: ad7c2df969126ff0595898d29ba5c7d6
SHA1: fc065186a573a53e0f1665f7a160571ffc66b7af
SHA256: 580592b88b7f9a0645beab4017fff42f6518c3a15394bd9961cc7ec85a76fbba

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 40/78 VT report date: 2024-08-30 10:34:19
Malware Type 1 trojan
Threat Type 3 gafgyt mirai bashlite

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://20.40.101.136/a-r.m-4.Sakura VirusTotal Report 20.40.101.136 VirusTotal Report 2024-08-30 10:07:02

Strings analysis - Possible IPs found 2

20.40.101.136
8.8.8.8