curl.sh

First submission 2024-09-04 18:59:02

File details

File type: POSIX shell script, ASCII text executable
Mime type: text/x-shellscript
File size: 0.94 KB (962 bytes)
MD5: d24ade01551febbd790a642de9f3143f
SHA1: 8d546e00ba4ee990b276e584a3bfb0beb3755793
SHA256: 7445cfaaced5784a7952c59308b5d3e5aed478c242bf1862065a2023b717f063

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 20/79 VT report date: 2024-09-04 15:32:53
Malware Type 2 downloader trojan
Threat Type 3 shell bashdlod gen2

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://154.216.17.217/curl.sh VirusTotal Report 154.216.17.217 VirusTotal Report 2024-09-04 18:59:02

Strings analysis - Possible IPs found 1

154.216.17.171

Strings analysis - Possible URLs found 9

http://154.216.17.171/mips
http://154.216.17.171/sh4
http://154.216.17.171/mpsl
http://154.216.17.171/ppc
http://154.216.17.171/arc
http://154.216.17.171/arm7
http://154.216.17.171/arm6
http://154.216.17.171/arm5
http://154.216.17.171/arm