MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 555d81fa212e92bdb36f96115032008de7120a7f9935cb4884d13dc5bfffd810. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 7


Intelligence 7 IOCs YARA File information Comments

SHA256 hash: 555d81fa212e92bdb36f96115032008de7120a7f9935cb4884d13dc5bfffd810
SHA3-384 hash: b2715d8f6bf98ca4f85a9f002d3b0943fe2c286fc72b9390f16dc70e95cd0250e091a0e01c81296c6fde9a4bae2428f3
SHA1 hash: 1b9df22e19844d66c29bab2c0b0e6ada7666062a
MD5 hash: 5413ec2349d36f83a1d5e20ea9963b67
humanhash: georgia-purple-pip-charlie
File name:wert
Download: download sample
Signature Mirai
File size:789 bytes
First seen:2025-03-07 02:11:44 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 24:qWWCWST5WsJJvSWdcKWmnt5tWfisWUPVWwltW+KtWo8p:qzCblTJJ6IcKRt70is/PVZnPKtR2
TLSH T18E01C8CD02603B8284BCBC26B1F2C29625448389B27F5F8FFC8A0A3C81C5550B970BD6
Magika txt
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://176.65.134.5/nabx86049941c6c5af46bf841f6c74df053d9863f1e9b3f1badf93c7e5c1ff390dd834 Miraielf mirai
http://176.65.134.5/nabmipsf7f287e17934124f22a9f78ff4deccfa29d780cbbadb51c1448f1bf1d2e4e886 Miraielf mirai
http://176.65.134.5/nabmpsl43e9eb915b547d4ff40678020a90e406176697f0a0f06982adf572896f8bb440 Miraielf mirai
http://176.65.134.5/nabarm0ec219b2e192aff5aad4f2c61d1757f88e5720808cd676605e39cc32d7185963 Miraielf mirai
http://176.65.134.5/nabarm5b97d3b2d55c0a8fc873da4accd60f26d45031d4a1f45d9cefdac7350bba9dc35 Miraielf mirai
http://176.65.134.5/nabarm61510d70f91ac70aae0651eccbc435e19b0ba58b7a6b199775eccd9ca6aaba761 Miraielf mirai
http://176.65.134.5/nabarm7cac6898b9cb1e97496358cc433e8f2bbc028d06612cd8d4e2014e7c67f974e03 Miraielf mirai
http://176.65.134.5/nabppca1222fd6169eb1e814f87b8f3bc9be7213d8ed30ed489ae5febb6c2892cf9d3f Miraielf mirai
http://176.65.134.5/nabm68k98f675b3faa7f68a98229903775d6a1e91d482e648513a331d32c986bc8d57b1 Miraielf mirai
http://176.65.134.5/nabsh451358e843933f194e5f198800e5fa97ffb3096fa976f41b8573a5ad77feb454c Miraielf mirai

Intelligence


File Origin
# of uploads :
1
# of downloads :
125
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Score:
97.4%
Tags:
shellcode phishing agent overt
Result
Verdict:
UNKNOWN
Threat name:
Document-HTML.Downloader.Heuristic
Status:
Malicious
First seen:
2025-03-07 05:37:24 UTC
File Type:
Text (Shell)
AV detection:
12 of 24 (50.00%)
Threat level:
  2/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
discovery
Behaviour
Modifies registry class
Suspicious behavior: GetForegroundWindowSpam
Suspicious use of SetWindowsHookEx
Suspicious use of WriteProcessMemory
Enumerates physical storage devices
System Location Discovery: System Language Discovery
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 555d81fa212e92bdb36f96115032008de7120a7f9935cb4884d13dc5bfffd810

(this sample)

  
Delivery method
Distributed via web download

Comments