MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4d4bbbaa1dd456273c14f89621546e726253ea0dae49ce216fc166c6a94b3589. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 4d4bbbaa1dd456273c14f89621546e726253ea0dae49ce216fc166c6a94b3589
SHA3-384 hash: a60a512009ea93e2b51576e35940e0b6621998a8f5537bb211e4256c9dc42f8c7fbdb644f221b776f67b20d1a7b88b0b
SHA1 hash: 6d591f93cf0221e615b7ef78c38e45fe7f73b110
MD5 hash: 703ef766a2800e9b851feabd0a75f071
humanhash: pip-dakota-thirteen-friend
File name:o
Download: download sample
Signature Mirai
File size:88 bytes
First seen:2025-05-10 11:37:41 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 3:L6FT7SXeMEd9EVax9GBzSEyLTUWOevn:L6FTWXFEjxkI5v
TLSH T1DCB012FB30103050C408FC4C6C239BBC2012C7D23140065415DC0210CC84400381094C
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://103.188.82.240/mips2d028a56a4e8ca330d2b5d39039a61ab3074f811ebc39e585d62decc81facc3d Miraielf gafgyt geofenced mirai ua-wget USA

Intelligence


File Origin
# of uploads :
1
# of downloads :
80
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
evasive lolbin remote
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Behaviour
Modifies registry class
Suspicious use of SetWindowsHookEx
Enumerates physical storage devices
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 4d4bbbaa1dd456273c14f89621546e726253ea0dae49ce216fc166c6a94b3589

(this sample)

  
Delivery method
Distributed via web download

Comments