MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 40c54ce67a4af140f6b0256ee59108890ffd02abacecb61ac0b3fff98d44e002. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 7


Intelligence 7 IOCs YARA File information Comments

SHA256 hash: 40c54ce67a4af140f6b0256ee59108890ffd02abacecb61ac0b3fff98d44e002
SHA3-384 hash: 9439e6f8b4bf7a24a60b1c4c76ccfeef126a60b7e58a395eb41654b9505a65d56d7f4f3056d3ab045ed8d987c09cbce4
SHA1 hash: 388affbc4bbbe4c93e9e4191efa1caf06b7cc49c
MD5 hash: 00eb9ebf92222b5680d1edad40ed2274
humanhash: pennsylvania-wisconsin-quiet-hot
File name:c.sh
Download: download sample
File size:393 bytes
First seen:2025-05-02 14:32:00 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 12:3J3j8qxjoNIl5zAxjZf0LKjxj8CxjkxjEiAUn:3J3gZNI7IqK6K2n
TLSH T11DE0ED8C615023A75F2CDF18F12F82099442E2C0B0B46FD0A55551B1ADAC3017194F27
Magika txt
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://179.43.175.148/arm5n/an/aelf mirai
http://179.43.175.148/arm651b9c3cf30ac64ab2a1be099ce171edd0d5ade83296f3bf61dd070796ee04086 Miraielf mirai
http://179.43.175.148/arm73909213ef52d9589f6328bde418b65647e83c821a74f6a15e08489cf2b5d32b1 Miraielf mirai
http://179.43.175.148/mipsn/an/aelf mirai
http://179.43.175.148/mipseln/an/aelf mirai
http://179.43.175.148/x86n/an/aelf ua-wget

Intelligence


File Origin
# of uploads :
1
# of downloads :
62
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Score:
99.9%
Tags:
trojan mirai virus hype
Threat name:
Linux.Worm.Mirai
Status:
Malicious
First seen:
2025-05-02 14:15:26 UTC
File Type:
Text (Shell)
AV detection:
9 of 24 (37.50%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Behaviour
Modifies registry class
Suspicious use of SetWindowsHookEx
Enumerates physical storage devices
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

sh 40c54ce67a4af140f6b0256ee59108890ffd02abacecb61ac0b3fff98d44e002

(this sample)

2d7a6e1656e484269b3ce21ba98a064e0c2972f21ad15df4cb4dadc325e87415

  
Delivery method
Distributed via web download
  
Dropping
MD5 1866d027fce36eaab87bd2262bc3a7fb
  
Dropping
SHA256 2d7a6e1656e484269b3ce21ba98a064e0c2972f21ad15df4cb4dadc325e87415

Comments