MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 69daa68bc09f5594446d33c266700617ccc02faa293f0420bb7e209db1096086. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 69daa68bc09f5594446d33c266700617ccc02faa293f0420bb7e209db1096086
SHA3-384 hash: 815009799a10a833bf01025e47290f953234524109385d1f020c3388e8f6f9a41d88d98ba1ca5266e89731e393a1cb16
SHA1 hash: 39b1c37866c2fa30230bd70157ccef89e388ab7a
MD5 hash: 38f542316153f12fbab8fd7ae4f35923
humanhash: ack-three-robin-chicken
File name:Mozi.a
Download: download sample
File size:33'280 bytes
First seen:2021-06-21 15:03:33 UTC
Last seen:Never
File type: elf
MIME type:application/x-executable
ssdeep 768:win4W+m7jnflBAu/1ja/0tEkVeTp2HP3Xd/EcJd+srFGHnxndJxBZFM:EWTXdmu/5k063Y98cJHZGHddLBZFM
TLSH 5BE2E11D88B68F95D7758AF7058BCD1C8EEF93B5FD246DE186612EC4037A10FA459308
Reporter tolisec

Intelligence


File Origin
# of uploads :
1
# of downloads :
88
Origin country :
n/a
Vendor Threat Intelligence
Verdict:
Malicious
Uses P2P?:
false
Uses anti-vm?:
false
Architecture:
mips
Packer:
custom
Botnet:
210.101.157.199:59394
Number of open files:
0
Number of processes launched:
1
Processes remaning?
false
Result
Verdict:
MALICIOUS
Threat name:
Linux.Trojan.Dakkatoni
Status:
Malicious
First seen:
2021-06-21 04:43:50 UTC
AV detection:
10 of 29 (34.48%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  8/10
Tags:
linux
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

elf 69daa68bc09f5594446d33c266700617ccc02faa293f0420bb7e209db1096086

(this sample)

  
Delivery method
Distributed via web download

Comments