bot.amd64

First submission 2024-10-13 22:05:02 Last sumbission 2024-10-13 22:15:03

File details

File type: ELF 64-bit LSB shared object, x86-64, version 1 (SYSV), for GNU/Linux 3.2.0, BuildID[sha1]=a5bdb209387e06cba305d4d5db76c52b7cb6ea26, dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, no section header
Mime type: application/x-pie-executable
File size: 1583.75 KB (1621765 bytes)
MD5: debea92deadbac44819389446c95151b
SHA1: 58e7f1251e19875a70c2837f7dfe2b8fe7421570
SHA256: ca393fca152c79ff9e25f1fe10beee78418e816205a454ccd28812f0ae9105b2

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

URLs, FQDN and IP indicators 2

URL Host (FQDN/IP) Date Added
hXXp://billing.rpnodes.host/bot.amd64 VirusTotal Report billing.rpnodes.host VirusTotal Report 2024-10-13 22:15:05
hXXp://100.42.189.107/bot.amd64 VirusTotal Report 100.42.189.107 VirusTotal Report 2024-10-13 22:05:02