MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 0942add0643e6b6ffaf478b32a307321d6136ca6173fe7258b80bb4dd8014c31. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Gafgyt


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 0942add0643e6b6ffaf478b32a307321d6136ca6173fe7258b80bb4dd8014c31
SHA3-384 hash: 3e0f3e9f3a1aaf7af005a06a72fad208d883323d732b71e51dc260eb76720b8ab6c85c862ec421566c1a7a8ea06df36f
SHA1 hash: 4633dfd49923ba72b2ad7ba420420cc4016edd27
MD5 hash: ad66833a261c14a8e610bf6feb88e585
humanhash: item-mississippi-uncle-happy
File name:SecuriteInfo.com.Linux.Mirai.19965.7752
Download: download sample
Signature Gafgyt
File size:37'648 bytes
First seen:2020-05-20 13:53:14 UTC
Last seen:Never
File type: elf
MIME type:application/x-executable
ssdeep 768:/+AAMaui7foF752N4FNx5aW3VFdd7JNnpC5iTs6UbkPqg5:/+hMQ7gW8J/3VFdZXo4I6UYyg5
TLSH D7F2F22253020699DAE02DB689DD8B31B1C4BEBC770BA9D376B5340F57C14BE8F06155
Reporter SecuriteInfoCom
Tags:gafgyt

Intelligence


File Origin
# of uploads :
1
# of downloads :
88
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Linux.Trojan.Gafgyt
Status:
Malicious
First seen:
2020-01-06 10:43:01 UTC
File Type:
ELF32 Little (Exe)
AV detection:
7 of 31 (22.58%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Gafgyt

elf 0942add0643e6b6ffaf478b32a307321d6136ca6173fe7258b80bb4dd8014c31

(this sample)

  
Delivery method
Distributed via web download

Comments