bin.sh4

First submission 2024-10-17 20:20:02

File details

File type: ELF 32-bit LSB executable, Renesas SH, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 145.84 KB (149336 bytes)
MD5: e832fd9292d3924edcf62f0b71a6644b
SHA1: 5da1cecbd2e1ea2d1496946bc7d8f36dbb62c7dc
SHA256: b592c3f3c59a09cef5d9aa8f885aa46e7c24cd2da96c9206ceef3cacda91f715

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 13/77 VT report date: 2024-10-17 20:08:37
Malware Type 1 trojan
Threat Type 2 mirai ddosagent

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://178.215.238.13/g/bin.sh4 VirusTotal Report 178.215.238.13 VirusTotal Report 2024-10-17 20:20:02

Strings analysis - Possible IPs found 1

85.239.34.134