MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 0c579dbbd2a7aa09545a1bdaabae386bd3a990513df379a7380e1541d849c3ad. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 8


Intelligence 8 IOCs YARA File information Comments

SHA256 hash: 0c579dbbd2a7aa09545a1bdaabae386bd3a990513df379a7380e1541d849c3ad
SHA3-384 hash: 30504c67ee084c1ba218d1532e939976056eea4f5a92a80165833f661f2f9cf9edcc1d488e441f1be425abe19d381afb
SHA1 hash: 502b2f58da354b35cb7274dd9ed0cf74fa9c6360
MD5 hash: 16538238a67af6acb95542d157228c00
humanhash: papa-network-papa-nitrogen
File name:fc
Download: download sample
Signature Mirai
File size:1'126 bytes
First seen:2025-03-29 14:11:55 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 24:wlKvxJ36soe3eSsoe3ec6Oe3ec6Oe3ec6Oe3eWve3e/e3m:yq6meSmeHeHeHeWUeEm
TLSH T100215E63578C35F0B7DEA91AB6A78BE658DCD09F3C430612E434C2DA7C905640E78B70
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://185.142.53.233/arm7fc4b814d40c1602ae693c8ddf483b659bbf0b63e301c11a9b4928fea74e01c56 Miraimirai ua-wget
http://185.142.53.233/mips1115f758d81297173822b6403732150d67679c78959e03e4ca859337be0821f0 Gafgytddos elf gafgyt mirai

Intelligence


File Origin
# of uploads :
1
# of downloads :
60
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Score:
99.1%
Tags:
trojan agent virus
Threat name:
Script.Downloader.Heuristic
Status:
Malicious
First seen:
2025-03-30 00:59:00 UTC
File Type:
Text
AV detection:
3 of 36 (8.33%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 0c579dbbd2a7aa09545a1bdaabae386bd3a990513df379a7380e1541d849c3ad

(this sample)

  
Delivery method
Distributed via web download

Comments