main_sh4

First submission 2024-10-12 22:13:03 Last sumbission 2024-10-12 22:15:02

File details

File type: ELF 32-bit LSB executable, Renesas SH, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 114.84 KB (117600 bytes)
MD5: bb150d30380b42b85dee7f06c1b45b80
SHA1: bfe44c6fc8112f5dbed3c1649ba0bbc920f6b954
SHA256: c3d8e63a28d4fb5693e4532b93dda5268cbad28e796467d48987774a4f0a8580

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 24/77 VT report date: 2024-10-12 21:54:55
Malware Type 1 trojan
Threat Type 2 mirai gafgyt

URLs, FQDN and IP indicators 2

URL Host (FQDN/IP) Date Added
hXXp://net.igxhost.ru/main_sh4 VirusTotal Report net.igxhost.ru VirusTotal Report 2024-10-12 22:15:03
hXXp://5.59.248.145/main_sh4 VirusTotal Report 5.59.248.145 VirusTotal Report 2024-10-12 22:13:03

Strings analysis - Possible IPs found 2

255.255.255.255
127.0.0.1