MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 5b010d777d4894180dfb1d36e57dfb147194090a597870c8e4576aef4b64bab5. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 7


Intelligence 7 IOCs YARA File information Comments

SHA256 hash: 5b010d777d4894180dfb1d36e57dfb147194090a597870c8e4576aef4b64bab5
SHA3-384 hash: d1a03c10ca3638c255bbedaed2d923262fe172a702d620c726bf5d24533b98d016437e7e2f34f199441e84aedaeb5fca
SHA1 hash: deb4c50bcaba00a5bd39bfdf1f31638ab36760ba
MD5 hash: 622f2fe05f6e2c5513e1974bdba2c495
humanhash: network-oxygen-magazine-black
File name:dvr.sh
Download: download sample
Signature Mirai
File size:421 bytes
First seen:2025-04-19 01:03:44 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 12:3WKDbnPZrQAvfQAMXBHQjJQaTfQagXBHQj5:GIb35WBo8Bo5
TLSH T1A5E030DA39B144272A835D95F0FA8C14D5CADAF50EC9CE8D80C90CB7644DC41F592E10
Magika txt
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://95.215.108.183/lol.armv5l343611a4d51844223d3939f32354c662ac6668a62c59d023eeef5c838d640831 Miraielf mirai ua-wget
http://95.215.108.183/lol.armv7lae2b51e0f8e7bd8b531a120996d2fb2edea88127f630397530f95a2cb6460007 Miraielf mirai ua-wget

Intelligence


File Origin
# of uploads :
1
# of downloads :
112
Origin country :
DE DE
Vendor Threat Intelligence
Threat name:
Text.Trojan.Generic
Status:
Suspicious
First seen:
2025-04-19 01:04:23 UTC
File Type:
Text (Shell)
AV detection:
5 of 24 (20.83%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Behaviour
Modifies registry class
Suspicious use of SetWindowsHookEx
Enumerates physical storage devices
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 5b010d777d4894180dfb1d36e57dfb147194090a597870c8e4576aef4b64bab5

(this sample)

  
Delivery method
Distributed via web download

Comments