MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 62c48a327262f96b6a61f0b76935b371d33573152a55a6b16901b9865cfce150. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 10


Intelligence 10 IOCs YARA File information Comments 1

SHA256 hash: 62c48a327262f96b6a61f0b76935b371d33573152a55a6b16901b9865cfce150
SHA3-384 hash: ab662b163a83029fe9f4d7f7b7a41d71fb6afd0ec2d5999bb858d62c264f14c617382b43ef83d534a94c38a5b896c42a
SHA1 hash: 7a6a6ac9df0a7a9a4d47a354734c98c8908e13e7
MD5 hash: 2a233651b189ea3fd6222517cb5c8c72
humanhash: nineteen-spring-uranus-fish
File name:2a233651b189ea3fd6222517cb5c8c72
Download: download sample
Signature Mirai
File size:125'184 bytes
First seen:2023-12-16 21:52:21 UTC
Last seen:Never
File type: elf
MIME type:application/x-executable
ssdeep 1536:ya+FWLJOkAC5mDbB8Bm4miCQK7Mj5MFtfryiIWFv1NfNy9Dq+Dyl1d0:y09OtDOE4mi+79tfJIWxfNx+DqC
TLSH T1EEC38D73D8266F68E659D170B0708F792F53A99082471FBE15B6C2B54083DCEF909BB8
TrID 50.1% (.) ELF Executable and Linkable format (Linux) (4022/12)
49.8% (.O) ELF Executable and Linkable format (generic) (4000/1)
Reporter zbetcheckin
Tags:32 elf mirai renesas

Intelligence


File Origin
# of uploads :
1
# of downloads :
107
Origin country :
FR FR
Vendor Threat Intelligence
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
anti-debug lolbin mirai remote
Result
Verdict:
MALICIOUS
Result
Threat name:
Detection:
malicious
Classification:
troj
Score:
80 / 100
Signature
Antivirus / Scanner detection for submitted sample
Detected Mirai
Malicious sample detected (through community Yara rule)
Snort IDS alert for network traffic
Yara detected Mirai
Behaviour
Behavior Graph:
Threat name:
Linux.Trojan.Mirai
Status:
Malicious
First seen:
2023-12-16 17:30:57 UTC
File Type:
ELF32 Little (Exe)
AV detection:
24 of 37 (64.86%)
Threat level:
  5/5
Result
Malware family:
Score:
  10/10
Tags:
family:mirai linux
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

elf 62c48a327262f96b6a61f0b76935b371d33573152a55a6b16901b9865cfce150

(this sample)

  
Delivery method
Distributed via web download

Comments



Avatar
zbet commented on 2023-12-16 21:52:22 UTC

url : hxxp://103.178.235.42/skyljne.sh4