MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 10d80a08e4d90e32213746ab214b61840a1ee9691adbe78f6b90d9c8b470707c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 7


Intelligence 7 IOCs YARA File information Comments

SHA256 hash: 10d80a08e4d90e32213746ab214b61840a1ee9691adbe78f6b90d9c8b470707c
SHA3-384 hash: 4f347c20ab73b079c6a6a421824bf5925a7543deaf497baa56a8ac061f9f004de323e649722a946b3bcceff879569544
SHA1 hash: 8f1349232a9b451efc329f249ee30be5e21f31dc
MD5 hash: 3651a5e97a8f13aa4a50616ec8488eb2
humanhash: snake-lactose-eleven-carpet
File name:fernisafuckingddosbossfuckkrebsandshitlabs.sh
Download: download sample
Signature Mirai
File size:93 bytes
First seen:2026-01-21 22:31:25 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 3:GRFbdolLCDdNDM4A2jERQGw1vGE9XLyO:SbSluBNA4gQBIaXOO
TLSH T15BB012A43409F4008C3A444CA0FC927040C480922B7AD54AE575820D0807D0530B4D00
Magika txt
Reporter abuse_ch
Tags:mirai sh
URLMalware sample (SHA256 hash)SignatureTags
http://158.94.208.27/i686b914b60bd6ed779eeee07d42598e861352e3cbb8e2377d13920d95b9d78aef10 Miraielf mirai ua-wget

Intelligence


File Origin
# of uploads :
1
# of downloads :
36
Origin country :
DE DE
Vendor Threat Intelligence
No detections
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
mirai
Verdict:
Malicious
File Type:
text
First seen:
2026-01-21T15:30:00Z UTC
Last seen:
2026-01-21T19:36:00Z UTC
Hits:
~10
Detections:
HEUR:Trojan-Downloader.Shell.Agent.bc
Status:
terminated
Behavior Graph:
%3 guuid=3228e9db-1a00-0000-4b8a-56e7700c0000 pid=3184 /usr/bin/sudo guuid=82f9f1de-1a00-0000-4b8a-56e7780c0000 pid=3192 /tmp/sample.bin guuid=3228e9db-1a00-0000-4b8a-56e7700c0000 pid=3184->guuid=82f9f1de-1a00-0000-4b8a-56e7780c0000 pid=3192 execve guuid=82f16fdf-1a00-0000-4b8a-56e77a0c0000 pid=3194 /usr/bin/wget net guuid=82f9f1de-1a00-0000-4b8a-56e7780c0000 pid=3192->guuid=82f16fdf-1a00-0000-4b8a-56e77a0c0000 pid=3194 execve b8c32f6f-e0ff-5b69-a443-652e84386a76 158.94.208.27:80 guuid=82f16fdf-1a00-0000-4b8a-56e77a0c0000 pid=3194->b8c32f6f-e0ff-5b69-a443-652e84386a76 con
Verdict:
Malicious
Threat:
Trojan-Downloader.Shell.Agent
Threat name:
Document-HTML.Worm.Mirai
Status:
Malicious
First seen:
2026-01-14 05:26:07 UTC
File Type:
Text (Batch)
AV detection:
6 of 36 (16.67%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Behaviour
Modifies registry class
Suspicious use of SetWindowsHookEx
Enumerates physical storage devices
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 10d80a08e4d90e32213746ab214b61840a1ee9691adbe78f6b90d9c8b470707c

(this sample)

  
Delivery method
Distributed via web download

Comments