MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 375c08d38d3cf01d98fd14e3067b7baac8a9fec925f37d8aad42644f3cd59bcb. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 375c08d38d3cf01d98fd14e3067b7baac8a9fec925f37d8aad42644f3cd59bcb
SHA3-384 hash: 6cfa9adfdacfa7f8b5e2a921f13028d3f9d4a853592a9a1f4ccd8bfd5d3b469e0d983e08d1cbdfc412a3884d2473dcc1
SHA1 hash: b9952bf24b0a1c70525e514ff0d93e4f1e830229
MD5 hash: 2705da95983ba937aebe74362d14d19d
humanhash: vermont-emma-lemon-louisiana
File name:o.xml
Download: download sample
Signature Mirai
File size:734 bytes
First seen:2025-08-13 07:16:32 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 12:FH8ioNJAC7ukxGWi2jU30+0K5+A+MjR3KEDCIKEDoBjZhG+E6:FH8j/wWi2jz8IHf
TLSH T15001267CA1A88A5204B5C4D7B1F09506C080808BA6AA53E5F38D09266F28CCE3D5320C
Magika xml
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://5.180.82.94/00101010101001/morte.x867dee059214e018c5d8fe8a4f5134a3a796663b341ebc4c2e5f48890c2c1c6709 Miraielf geofenced mirai opendir ua-wget USA

Intelligence


File Origin
# of uploads :
1
# of downloads :
29
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Suspicious
Labled as:
TrojanDownloader/Linux.NetLoader
Threat name:
Script-JS.Downloader.Heuristic
Status:
Malicious
First seen:
2025-08-13 10:23:45 UTC
AV detection:
3 of 38 (7.89%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 375c08d38d3cf01d98fd14e3067b7baac8a9fec925f37d8aad42644f3cd59bcb

(this sample)

  
Delivery method
Distributed via web download

Comments