boatnet.sh4

First submission 2024-10-12 08:55:02

File details

File type: ELF 32-bit LSB executable, Renesas SH, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 48.99 KB (50168 bytes)
MD5: e920f4666c57397579afe7a1399fdcd4
SHA1: 5e611f0050997f685fe00cbb4710d9f150c43b37
SHA256: 8797abac1a05866d45e87774e4062a8c42fa4d26da68c702ffc0761f15739274

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 42/77 VT report date: 2024-10-12 08:24:36
Malware Type 1 trojan
Threat Type 3 mirai gafgyt ddos

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://93.123.109.160/hiddenbin/boatnet.sh4 VirusTotal Report 93.123.109.160 VirusTotal Report 2024-10-12 08:55:02

Strings analysis - Possible IPs found 3

93.123.109.160
255.255.255.255
127.0.0.1