yarn.sh

First submission 2024-10-14 08:02:02

File details

File type: Bourne-Again shell script, ASCII text executable
Mime type: text/x-shellscript
File size: 1.8 KB (1843 bytes)
MD5: c09f4a331ab91eb6e4ed9ff1389735fc
SHA1: ac68127f869a4ac16600fae4d7418d2ecc624274
SHA256: 2c8fd8316a0f9eee26be3a11100a3403045be4ed99f57fb442af21a528e4ca99

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://95.169.203.171/yarn.sh VirusTotal Report 95.169.203.171 VirusTotal Report 2024-10-14 08:02:02

Strings analysis - Possible IPs found 1

95.169.203.171

Strings analysis - Possible URLs found 12

http://95.169.203.171/FBI.i486;
http://95.169.203.171/FBI.arm6;
http://95.169.203.171/FBI.arm7;
http://95.169.203.171/FBI.ppc;
http://95.169.203.171/FBI.x86_64;
http://95.169.203.171/FBI.arm5;
http://95.169.203.171/FBI.mips;
http://95.169.203.171/FBI.mpsl;
http://95.169.203.171/FBI.arm;
http://95.169.203.171/FBI.mips64;
http://95.169.203.171/FBI.sh4;
http://95.169.203.171/FBI.m68k;