MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 020f1fa6072108c79ed6f553f4f8b08e157bf17f9c260a76353300230fed09f0. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Hajime


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 020f1fa6072108c79ed6f553f4f8b08e157bf17f9c260a76353300230fed09f0
SHA3-384 hash: 32a12e3760bd184a6e1d1d86e610ee96a1e07d8b89dfd4bd1b202ad5d0a917ea1341cc413ae5bd15d5132934570d9c49
SHA1 hash: b54c705193b7963a0d40699a91cdb34fedecbe88
MD5 hash: 5377e8f2ebdb280216c37a6195da9d6c
humanhash: high-tennis-chicken-emma
File name:020f1fa6072108c79ed6f553f4f8b08e157bf17f9c260a76353300230fed09f0
Download: download sample
Signature Hajime
File size:85'232 bytes
First seen:2021-04-18 18:41:48 UTC
Last seen:2025-11-15 09:42:28 UTC
File type: elf
MIME type:application/x-executable
ssdeep 1536:yYI0ARqw1qAEW67UIWi7M8gmfmJo0WgswnD6Efyq8PxlRkp2K3/J1V+uBNu:yYI0ARqw1qAEv7UIFM8oJorFquyjkRks
TLSH 21831229135414E5D62681F1D3FD1B84AE981FA9CEE2EC147C12BC89EE333AD3CD2618
Reporter r3dbU7z
Tags:elf Hajime

Intelligence


File Origin
# of uploads :
91
# of downloads :
230
Origin country :
DE DE
Vendor Threat Intelligence
Result
Verdict:
MALICIOUS
Gathering data
Result
Malware family:
n/a
Score:
  9/10
Tags:
linux
Behaviour
Reads runtime system information
Writes file to tmp directory
Reads system network configuration
Enumerates active TCP sockets
Reads system routing table
Modifies hosts file
Writes DNS configuration
Modifies the Watchdog daemon
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Hajime

elf 020f1fa6072108c79ed6f553f4f8b08e157bf17f9c260a76353300230fed09f0

(this sample)

  
Delivery method
Distributed via web download

Comments