🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 2d0553d5ec80a052c3d670eb42154835dd4e107d7f914b63299c05362d98a74e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 8


Intelligence 8 IOCs YARA File information Comments

SHA256 hash: 2d0553d5ec80a052c3d670eb42154835dd4e107d7f914b63299c05362d98a74e
SHA3-384 hash: 2dc71b660d7bfd8fe3e3754c27df792fcdde6b2722b5ad689e0c22bdf5db1b93e088d50c740de26b250a8f2e297ee6ae
SHA1 hash: efcdde1e6da3d211d9b2746456761c2d7bfefe60
MD5 hash: c7cf72ba78b521f7259299b950f6e70d
humanhash: december-one-east-ten
File name:sample
Download: download sample
Signature Mirai
File size:1'774 bytes
First seen:2026-06-29 19:15:23 UTC
Last seen:2026-06-30 19:07:30 UTC
File type: sh
MIME type:text/x-shellscript
ssdeep 24:v6PW/OSwc7IOSWi/woOS53OS6jOSwMOSsOSh8OS1/OSOVOl:v6PW/RkRWMR53R6jRrRsRaRxRWe
TLSH T1803195C623212D712DE6DF1E75A88424B282B1E2DDC36AC594D93DFD9CCEF087842A53
TrID 70.0% (.SH) Linux/UNIX shell script (7000/1)
30.0% (.) Unix-like shebang (var.3) (gen) (3000/1)
Magika shell
Reporter abuserobot66609
Tags:mirai
URLMalware sample (SHA256 hash)SignatureTags
http://94.154.43.10/bins/px8603ea5a00f2cb9501fbf2833e49d597994e9ef3acef7cdf6b3e8d704a287d7f1b MiraiDEU elf geofenced mirai ua-wget
http://94.154.43.10/bins/pmipse1d4e04aab183f72923e45a1f9d06a04b78213455fa9a1bbc024d8186515c685 Miraielf mirai ua-wget
http://94.154.43.10/bins/pmpsl9a13d58b6aee76ede19290cf358fb6fcafcb26190b260289c97d74d1e18895b0 MiraiDEU elf geofenced mirai ua-wget
http://94.154.43.10/bins/parm4n/an/aDEU elf geofenced ua-wget
http://94.154.43.10/bins/parm5afbdf2cf4dc4196369ce04816b793e07f93135ed633d4d252647a8695e154d42 Miraielf mirai ua-wget
http://94.154.43.10/bins/parm6da545d84ddb6827fab190470cdbb1025601867ad9b89848e4711c17fdede8a84 MiraiDEU elf geofenced mirai ua-wget
http://94.154.43.10/bins/parm7dbf46eac8bebada17c1fc112d3da97cb322752bf7999f735d9ed2a2677be24a5 MiraiDEU elf geofenced mirai ua-wget
http://94.154.43.10/bins/pppcd4c6fe587718b4cfa1ba8d053b7190ecd3f25df6d52c41713c4a09d38c2704b3 MiraiDEU elf geofenced mirai ua-wget
http://94.154.43.10/bins/pm68ke9897eff21ced56a8b21770f8f716de8fb0058245e084cbc46efaff43aee999e MiraiDEU elf geofenced mirai ua-wget
http://94.154.43.10/bins/psh4fbbb7cf19348e346b7b0c69bcb2d13e83492b53916a0b49034754b16c7fc4141 MiraiDEU elf geofenced mirai ua-wget

Intelligence


File Origin
# of uploads :
4
# of downloads :
64
Origin country :
DE DE
Vendor Threat Intelligence
No detections
Verdict:
Malicious
File Type:
unix shell
First seen:
2026-06-29T14:00:00Z UTC
Last seen:
2026-07-01T13:13:00Z UTC
Hits:
~10
Detections:
HEUR:Trojan-Downloader.Shell.Agent.p HEUR:Trojan-Downloader.Shell.Agent.gen HEUR:Trojan-Downloader.Shell.Agent.a
Threat name:
Linux.Downloader.Morila
Status:
Malicious
First seen:
2026-06-29 18:54:40 UTC
File Type:
Text (Shell)
AV detection:
23 of 37 (62.16%)
Threat level:
  3/5
Result
Malware family:
Score:
  10/10
Tags:
family:mirai botnet:mirai antivm botnet defense_evasion discovery linux upx
Behaviour
Reads runtime system information
System Network Configuration Discovery
Writes file to tmp directory
Changes its process name
Checks CPU configuration
UPX packed file
File and Directory Permissions Modification
Deletes itself
Executes dropped EXE
Modifies Watchdog functionality
Family: Mirai
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 2d0553d5ec80a052c3d670eb42154835dd4e107d7f914b63299c05362d98a74e

(this sample)

  
Delivery method
Distributed via web download

Comments