w.sh

First submission 2022-08-05 02:43:01

File details

File type: POSIX shell script, ASCII text executable, with CRLF line terminators
File type: 0.89 KB (912 bytes)
MD5: dcf71f2e5e9bb117ad13bd045aced740
SHA1: 3bd7dd72df0f89d37d91c17d74ce041d066d90c6
SHA256: 7cdba32005ffcfadad9b963bcb445e04a6938b1fa33c842defce35c7c7cba5e8
Virus Total: 22/60 VT report date: 2022-07-31 17:34:41

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://107.182.129.226/w.sh VirusTotal Report 107.182.129.226 VirusTotal Report 2022-08-05 02:43:01

Strings analysis - Possible IPs found 1

107.182.129.226

Strings analysis - Possible URLs found 8

http://107.182.129.226/uwu/mips
http://107.182.129.226/uwu/arm7
http://107.182.129.226/uwu/arm6
http://107.182.129.226/uwu/arm5
http://107.182.129.226/uwu/mpsl
http://107.182.129.226/uwu/arm
http://107.182.129.226/uwu/x86
http://107.182.129.226/uwu/ppc