sdxkzX_UXA229x.sh4

First submission 2023-09-12 15:31:03

File details

File type: ELF 32-bit LSB executable, Renesas SH, version 1 (SYSV), statically linked, stripped
Mime type: application/x-executable
File size: 73.71 KB (75484 bytes)
MD5: f20bd68e9835546bd38956fc7a9b4fd7
SHA1: 4612ddccabcb901f11dfe40b3f55241c68c092cc
SHA256: 32d0b42aa4dccfd9860b69d991b2b86d4f8445dc238d948fdd143e6a528c25e7
Virus Total: 17/57 VT report date: 2023-09-12 13:10:43

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://185.143.179.92/bins/sdxkzX_UXA229x.sh4 VirusTotal Report 185.143.179.92 VirusTotal Report 2023-09-12 15:31:03

Strings analysis - Possible IPs found 4

37.221.92.196
194.180.49.165
127.0.0.1
255.255.255.255