× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: c907d36c60a33061025b1ab468db7e06f094ff9360fde2c55263384691af383d
File name: Lcnux.DDOSTF.mmd
Detection ratio: 19 / 56
Analysis date: 2016-04-08 10:35:45 UTC ( 3 years, 1 month ago ) View latest
Antivirus Result Update
Ad-Aware Trojan.Linux.Ddos.C 20160408
ALYac Trojan.Linux.Ddos.C 20160408
Arcabit Trojan.Linux.Ddos.C 20160408
Avast ELF:Ddostf-A 20160408
AVG Linux/Generic_c.ARJ 20160408
BitDefender Trojan.Linux.Ddos.C 20160408
CAT-QuickHeal Trojan.Linux.DDos.TF 20160407
DrWeb Linux.DDoS.82 20160408
Emsisoft Trojan.Linux.Ddos.C (B) 20160408
ESET-NOD32 Linux/Ddostf.A 20160408
F-Secure Trojan.Linux.Ddos.C 20160408
GData Trojan.Linux.Ddos.C 20160408
Ikarus Trojan.Linux.Dnsamp 20160408
Jiangmin TrojanDDoS.Linux.er 20160408
Kaspersky HEUR:Trojan-DDoS.Linux.Ddostf.a 20160408
eScan Trojan.Linux.Ddos.C 20160408
nProtect Trojan.Linux.Ddos.C 20160408
Sophos AV Linux/DDoS-TF 20160408
Zillya Trojan.Ddostf.Linux.1 20160408
AegisLab 20160408
AhnLab-V3 20160408
Alibaba 20160408
Antiy-AVL 20160408
Avira (no cloud) 20160408
AVware 20160408
Baidu 20160408
Baidu-International 20160408
Bkav 20160408
ClamAV 20160405
CMC 20160407
Comodo 20160408
Cyren 20160408
F-Prot 20160408
Fortinet 20160404
K7AntiVirus 20160407
K7GW 20160404
Kingsoft 20160408
Malwarebytes 20160408
McAfee 20160408
McAfee-GW-Edition 20160407
Microsoft 20160408
NANO-Antivirus 20160408
Panda 20160407
Qihoo-360 20160408
Rising 20160408
SUPERAntiSpyware 20160408
Symantec 20160408
Tencent 20160408
TheHacker 20160408
TrendMicro 20160408
TrendMicro-HouseCall 20160408
VBA32 20160407
VIPRE 20160408
ViRobot 20160408
Yandex 20160406
Zoner 20160408
The file being studied is an ELF! More specifically, it is a EXEC (Executable file) ELF for Unix systems running on Intel 80386 machines.
ELF Header
Class ELF32
Data 2's complement, little endian
Header version 1 (current)
OS ABI UNIX - Linux
ABI version 0
Object file type EXEC (Executable file)
Required architecture Intel 80386
Object file version 0x1
Program headers 5
Section headers 30
ELF sections
ELF Segments
.note.ABI-tag
.rel.plt
.init
.plt
.text
__libc_freeres_fn
__libc_thread_freeres_fn
.fini
.rodata
__libc_atexit
__libc_subfreeres
__libc_thread_subfreeres
.stapsdt.base
.eh_frame
.gcc_except_table
.ctors
.dtors
.jcr
.data.rel.ro
.got
.got.plt
.data
.bss
__libc_freeres_ptrs
.note.ABI-tag
Segment without sections
Segment without sections
ExifTool file metadata
MIMEType
application/octet-stream

CPUByteOrder
Little endian

CPUArchitecture
32 bit

FileType
ELF executable

ObjectFileType
Executable file

CPUType
i386

File identification
MD5 b30f160722652c2492ee3376d2e7e495
SHA1 ed405b7df014bc42c518f8619672f4e4916c5755
SHA256 c907d36c60a33061025b1ab468db7e06f094ff9360fde2c55263384691af383d
ssdeep
12288:lTurEUKhROhnCzrwsrsNuRIHZB62atXtjBIuMAI0VpnJJyeVxy5la8AJv:lqrEJhROh8rwKsNrDK9xM3cJyeg0Jv

File size 736.8 KB ( 754492 bytes )
File type ELF
Magic literal
ELF 32-bit LSB executable, Intel 80386, version 1 (GNU/Linux), statically linked, for GNU/Linux 2.6.18, from 'p) 4@%edi 4@$0', stripped

TrID ELF Executable and Linkable format (Linux) (50.1%)
ELF Executable and Linkable format (generic) (49.8%)
Tags
elf

VirusTotal metadata
First submission 2016-04-08 10:35:45 UTC ( 3 years, 1 month ago )
Last submission 2016-04-08 10:35:45 UTC ( 3 years, 1 month ago )
File names Lcnux.DDOSTF.mmd
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!