MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 47f597b9eb3bacd5bc340296e6db4fb113983a7535d66e2f9f5e99a3313092d6. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 47f597b9eb3bacd5bc340296e6db4fb113983a7535d66e2f9f5e99a3313092d6
SHA3-384 hash: b22695a089a7df2d1487637dfcd0660f181ff26d7aad1c87e83529ca140e215193ded964594c470b936d5e26edfcff50
SHA1 hash: b19cd3b1cd787b91632a93332518f6c642605146
MD5 hash: c9bb09177800d6e797cc6f3761b151dc
humanhash: double-three-iowa-sad
File name:gig.sh
Download: download sample
Signature Mirai
File size:220 bytes
First seen:2025-02-26 19:49:00 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 3:L2UiMwWcqRQS+X7GBzSEyLTUWaXw8Ui9WFKV2UiMwWcqRQS+rBzSE8eU61w8Ui9n:LFwdBXCIyw7FgFwdBrL1wC
TLSH T1DAD0C7C904E33A104544AC873567CB7F64C1D3CC121747CF98CC1539B68C655B4A1B52
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://46.19.143.10/mipsef931d8ba4966260112b7ed31a1e0b5cd4423becc0397e8eeaee345de903a1ab Miraimirai opendir
http://46.19.143.10/mpsl0ee587fea341d9da43777102b508c6017d29ad537594afa596e042d4ecd67cf8 Miraimirai opendir

Intelligence


File Origin
# of uploads :
1
# of downloads :
81
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
busybox
Result
Verdict:
UNKNOWN
Threat name:
Script.Trojan.Multiverze
Status:
Malicious
First seen:
2025-02-26 19:49:25 UTC
File Type:
Text (Shell)
AV detection:
7 of 24 (29.17%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
discovery
Behaviour
Modifies registry class
Suspicious behavior: GetForegroundWindowSpam
Suspicious use of SetWindowsHookEx
Suspicious use of WriteProcessMemory
Enumerates physical storage devices
System Location Discovery: System Language Discovery
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 47f597b9eb3bacd5bc340296e6db4fb113983a7535d66e2f9f5e99a3313092d6

(this sample)

Comments