MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 0668f903a58382a2743473618e99b29e3281e3c645b243c4639b63c9e4063f97. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 8


Intelligence 8 IOCs YARA File information Comments

SHA256 hash: 0668f903a58382a2743473618e99b29e3281e3c645b243c4639b63c9e4063f97
SHA3-384 hash: 7563ef8a784fb725f08a21c6e5e181d31735e12588377510ea26f0cbdd832b6945523b2b814b37412446da6870e68b5c
SHA1 hash: aeb2f8c5df41050d36b38f8ec3159085d991af82
MD5 hash: 24a516fe71c8f4ead207e9ee478673ea
humanhash: montana-jersey-undress-blue
File name:b
Download: download sample
Signature Mirai
File size:393 bytes
First seen:2025-12-06 07:28:48 UTC
Last seen:Never
File type: sh
MIME type:text/x-shellscript
ssdeep 6:h9OnFflE0FJ6D60hMwXJfLFmfLFNfZ5B6Ea5XKbF8dvwtMs:d0FJ873JkDhy7COs
TLSH T100E092DDA4720071B84CBE2EE6A94B5CB051FBC5AAC02B3888DBBD51E81CD157482E23
TrID 70.0% (.SH) Linux/UNIX shell script (7000/1)
30.0% (.) Unix-like shebang (var.3) (gen) (3000/1)
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://bpy.is/f1d4d24c9fc8553770036239bc2be91e1865a5ec6ec8316cb0380117a42380329 Miraielf mirai ua-wget

Intelligence


File Origin
# of uploads :
1
# of downloads :
35
Origin country :
DE DE
Vendor Threat Intelligence
No detections
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
busybox evasive
Verdict:
Malicious
File Type:
unix shell
First seen:
2025-12-06T06:34:00Z UTC
Last seen:
2025-12-07T01:41:00Z UTC
Hits:
~10
Threat name:
Script-Shell.Trojan.MiraiB
Status:
Malicious
First seen:
2025-12-06 07:15:03 UTC
File Type:
Text (Shell)
AV detection:
8 of 24 (33.33%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 0668f903a58382a2743473618e99b29e3281e3c645b243c4639b63c9e4063f97

(this sample)

  
Delivery method
Distributed via web download

Comments