× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 82d38c987bd0bb172671925454ce4426bf7502937ad1ce47d7b140fef1cec2e7
File name: DDos
Detection ratio: 4 / 57
Analysis date: 2015-06-20 00:06:15 UTC ( 3 years, 3 months ago ) View latest
Antivirus Result Update
Avast ELF:Flooder-FP [Trj] 20150620
AVG Linux/Generic_c.RO 20150620
DrWeb Linux.DDoS.60 20150620
ESET-NOD32 a variant of Linux/Xorddos.G 20150619
Ad-Aware 20150620
AegisLab 20150620
Yandex 20150619
AhnLab-V3 20150619
Alibaba 20150619
ALYac 20150619
Antiy-AVL 20150620
Arcabit 20150619
Avira (no cloud) 20150619
AVware 20150620
Baidu-International 20150619
BitDefender 20150620
Bkav 20150619
ByteHero 20150620
CAT-QuickHeal 20150619
ClamAV 20150619
CMC 20150618
Comodo 20150619
Cyren 20150619
Emsisoft 20150619
F-Prot 20150619
F-Secure 20150619
Fortinet 20150619
GData 20150619
Ikarus 20150619
Jiangmin 20150618
K7AntiVirus 20150619
K7GW 20150619
Kaspersky 20150620
Kingsoft 20150620
Malwarebytes 20150620
McAfee 20150619
McAfee-GW-Edition 20150619
Microsoft 20150620
eScan 20150619
NANO-Antivirus 20150620
nProtect 20150619
Panda 20150619
Qihoo-360 20150620
Rising 20150618
Sophos AV 20150619
SUPERAntiSpyware 20150619
Symantec 20150620
Tencent 20150620
TheHacker 20150619
TotalDefense 20150619
TrendMicro 20150619
TrendMicro-HouseCall 20150619
VBA32 20150619
VIPRE 20150620
ViRobot 20150620
Zillya 20150619
Zoner 20150619
The file being studied is an ELF! More specifically, it is a EXEC (Executable file) ELF for Unix systems running on Intel 80386 machines.
ELF Header
Class ELF32
Data 2's complement, little endian
Header version 1 (current)
OS ABI UNIX - Linux
ABI version 0
Object file type EXEC (Executable file)
Required architecture Intel 80386
Object file version 0x1
Program headers 5
Section headers 31
ELF sections
ELF Segments
.note.ABI-tag
.note.gnu.build-id
.rel.plt
.init
.plt
.text
__libc_freeres_fn
__libc_thread_freeres_fn
.fini
.rodata
__libc_subfreeres
__libc_atexit
__libc_thread_subfreeres
.stapsdt.base
.eh_frame
.gcc_except_table
.ctors
.dtors
.jcr
.data.rel.ro
.got
.got.plt
.data
.bss
__libc_freeres_ptrs
.note.ABI-tag
.note.gnu.build-id
Segment without sections
Segment without sections
ExifTool file metadata
MIMEType
application/octet-stream

CPUByteOrder
Little endian

CPUArchitecture
32 bit

FileType
ELF executable

ObjectFileType
Executable file

CPUType
i386

File identification
MD5 d2f59ce8cd26cde9de89584335a0e529
SHA1 1446b923d130514d52f5266402c09f615475d9ba
SHA256 82d38c987bd0bb172671925454ce4426bf7502937ad1ce47d7b140fef1cec2e7
ssdeep
24576:8kUpotcUSzgtPLdOEG0V0JRzFB3ywyUZ1N2AhNdhBjh+hnPlVVW0Mk7t69Kx/ti8:MoKXwZOK0TFBCwy8P2AhNdhBjh+hnPlP

File size 1.3 MB ( 1315556 bytes )
File type ELF
Magic literal
ELF 32-bit LSB executable, Intel 80386, version 1 (GNU/Linux), statically linked, for GNU/Linux 2.6.18, from 'p) 4@%edi 4@$0', stripped

TrID ELF Executable and Linkable format (Linux) (50.1%)
ELF Executable and Linkable format (generic) (49.8%)
Tags
elf

VirusTotal metadata
First submission 2015-06-20 00:06:15 UTC ( 3 years, 3 months ago )
Last submission 2018-05-15 00:06:24 UTC ( 5 months ago )
File names 82d38c987bd0bb172671925454ce4426bf7502937ad1ce47d7b140fef1cec2e7.bin
DDos
1446b923d130514d52f5266402c09f615475d9ba_DDos
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!