jew.arm

First submission 2024-09-01 14:15:03

File details

File type: ELF 32-bit LSB executable, ARM, version 1 (ARM), statically linked, stripped
Mime type: application/x-executable
File size: 58.58 KB (59988 bytes)
MD5: fb9302cbd7e055331f86f7ba2fa6831d
SHA1: 023dc975b3d32731010fdfa703994ed52653039a
SHA256: 3b14aea26c83428a0460e3920b04ddddf75c071de4a5dc140c0cc56234572dd9

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 41/78 VT report date: 2024-09-01 14:07:48
Malware Type 1 trojan
Threat Type 3 mirai bootnet smmr1

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://104.168.101.215/bins/jew.arm VirusTotal Report 104.168.101.215 VirusTotal Report 2024-09-01 14:15:03

Strings analysis - Possible IPs found 1

104.168.101.215