× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 0206efba7fc13700efd59354e9c6ca4d1ffe34f6689bd195798181824d46b83d
File name: dcc
Detection ratio: 0 / 55
Analysis date: 2016-09-06 14:17:15 UTC ( 11 months, 2 weeks ago ) View latest
Antivirus Result Update
Ad-Aware 20160906
AegisLab 20160906
AhnLab-V3 20160906
Alibaba 20160905
ALYac 20160906
Antiy-AVL 20160906
Arcabit 20160906
Avast 20160906
AVG 20160906
Avira (no cloud) 20160906
AVware 20160906
Baidu 20160906
BitDefender 20160906
Bkav 20160905
CAT-QuickHeal 20160906
ClamAV 20160906
CMC 20160905
Comodo 20160906
Cyren 20160906
DrWeb 20160906
Emsisoft 20160906
ESET-NOD32 20160906
F-Prot 20160906
F-Secure 20160906
Fortinet 20160906
GData 20160906
Ikarus 20160906
Jiangmin 20160906
K7AntiVirus 20160906
K7GW 20160906
Kaspersky 20160906
Kingsoft 20160906
Malwarebytes 20160906
McAfee 20160906
McAfee-GW-Edition 20160906
Microsoft 20160906
eScan 20160906
NANO-Antivirus 20160906
nProtect 20160906
Panda 20160905
Qihoo-360 20160906
Rising 20160906
Sophos AV 20160906
SUPERAntiSpyware 20160906
Symantec 20160906
Tencent 20160906
TheHacker 20160905
TrendMicro 20160906
TrendMicro-HouseCall 20160906
VBA32 20160905
VIPRE 20160831
ViRobot 20160906
Yandex 20160905
Zillya 20160905
Zoner 20160906
The file being studied is an ELF! More specifically, it is a EXEC (Executable file) ELF for Unix systems running on ARM machines.
ELF Header
Class ELF32
Data 2's complement, little endian
Header version 1 (current)
OS ABI UNIX - System V
ABI version 0
Object file type EXEC (Executable file)
Required architecture ARM
Object file version 0x1
Program headers 4
Section headers 15
ELF sections
ELF Segments
.ARM.exidx
.init
.text
.fini
.rodata
.ARM.exidx
.eh_frame
.init_array
.fini_array
.jcr
.data
.bss
Segment without sections
ExifTool file metadata
MIMEType
application/octet-stream

CPUByteOrder
Little endian

CPUArchitecture
32 bit

FileType
ELF executable

ObjectFileType
Executable file

CPUType
Unknown (40)

File identification
MD5 8e7637d72e522cb52012c02eb8ddfdbe
SHA1 8f68f088908bd6113ab27c39f18bb4a75886c298
SHA256 0206efba7fc13700efd59354e9c6ca4d1ffe34f6689bd195798181824d46b83d
ssdeep
768:+CB4uaizGX5w5IKHwQI08iXUDeNXK0Er:+CB4uaizE5wj/ZtNXKTr

File size 25.5 KB ( 26136 bytes )
File type ELF
Magic literal
ELF 32-bit LSB executable, ARM, version 1 (SYSV), statically linked, stripped

TrID ELF Executable and Linkable format (generic) (100.0%)
Tags
elf

VirusTotal metadata
First submission 2016-09-06 14:17:15 UTC ( 11 months, 2 weeks ago )
Last submission 2016-11-02 10:25:26 UTC ( 9 months, 2 weeks ago )
File names 8f68f088908bd6113ab27c39f18bb4a75886c298_attacker module file
attacker module file
attacker module file
0206EFBA7FC13700EFD59354E9C6CA4D1FFE34F6689BD195798181824D46B83D.dat
dcc
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!