rbot

First submission 2024-10-14 02:18:02

File details

File type: ELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 49.14 KB (50316 bytes)
MD5: d37bfd90fdaab04d1d0b4554675ed5e4
SHA1: 2623207eb249c78587abd85b00d9fcb6df790021
SHA256: 037444b2dc5e4c16779155f29b64ca34262c9476f800be2e2c6e43e406ed10ad

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 24/77 VT report date: 2024-10-13 21:40:11
Malware Type 1 trojan
Threat Type 3 mirai gafgyt bashlite

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://93.123.85.176/botpilled/rbot VirusTotal Report 93.123.85.176 VirusTotal Report 2024-10-14 02:18:02

Strings analysis - Possible IPs found 2

93.123.85.176
8.8.8.8