MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 12c0e0476d7fa97dfbbefff2d5ee3c137a27852acb9520d6503e3c6867d267ac. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 12c0e0476d7fa97dfbbefff2d5ee3c137a27852acb9520d6503e3c6867d267ac
SHA3-384 hash: af6bc1632c44f18194a40653acf99065f3abc69e7e1665aaa36e7163cd633e3b92620aed7fc6527c8e725b4dc2e431fb
SHA1 hash: 0d31a1387434652642871015df297e41422ad0dd
MD5 hash: 2d5fd92297fc0b5f8060f49b9cd6b59c
humanhash: princess-helium-harry-fillet
File name:to
Download: download sample
Signature Mirai
File size:201 bytes
First seen:2025-12-05 18:23:34 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 6:LA5/jeAKTjOWVA5/ZWJeAbJTobJl8Ftox8OLJn:sh6AMCWOhoMAejz
TLSH T179D0C9A84007A9F8A029A96EB27523CAB2639B0E316B4F4ADC4060B6B0C1498F021E04
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://213.209.143.64/zermips3f622b288e8182003119ed88145a8c767b94813a364eae2c6e12344c8787ca3e Miraielf mirai ua-wget
http://213.209.143.64/zermpsld601648e9899e851aeed28f8647b34e99568d2db7ec355b1bb006a13ef3193a8 Miraielf mirai ua-wget

Intelligence


File Origin
# of uploads :
1
# of downloads :
30
Origin country :
DE DE
Vendor Threat Intelligence
No detections
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
mirai
Verdict:
Malicious
File Type:
text
First seen:
2025-12-05T16:20:00Z UTC
Last seen:
2025-12-06T15:06:00Z UTC
Hits:
~10
Threat name:
Script-BAT.Trojan.Heuristic
Status:
Malicious
First seen:
2025-12-05 18:35:24 UTC
File Type:
Text (Shell)
AV detection:
6 of 38 (15.79%)
Threat level:
  2/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Behaviour
Modifies registry class
Suspicious use of SetWindowsHookEx
Enumerates physical storage devices
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 12c0e0476d7fa97dfbbefff2d5ee3c137a27852acb9520d6503e3c6867d267ac

(this sample)

  
Delivery method
Distributed via web download

Comments