MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 81b16e7eda72eaab3486c806248c949db5d7df6e501085040bbe233c4bfc2b24. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 81b16e7eda72eaab3486c806248c949db5d7df6e501085040bbe233c4bfc2b24
SHA3-384 hash: c8cde85ea655d3d1785d65807d7249e875841478a913ca3c4e95a72c9b84430e402112d7643013fff33f6387c558aee1
SHA1 hash: 90ea4068720d62faafbd0c91ec416d5dd3f3be91
MD5 hash: 1910d86e67d290ccf30a63e9faede230
humanhash: sixteen-texas-batman-batman
File name:meow.sh
Download: download sample
Signature Mirai
File size:158 bytes
First seen:2025-04-26 14:49:18 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 3:LMFPMqQpIPFYFbFjBDKzSHX7F0QYFcMFPMqQpI8JFYhFjBDKzSHX7F0QYC:LMFPeIPFobRB9LF9VMFPeIYFYhRB9LFD
TLSH T170C08CCF6C0012604D0258483727C831E432C0CC10C0860CFCCB383AAAA86007838EC7
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://46.29.235.158/gmips3387785a975cf1e2e0a65360ea825a5f4f2ea2f544104f44736fd1cab38584cd Gafgytcensys elf gafgyt mirai ua-wget
http://46.29.235.158/gmpsl03c576ab7425edfe7ac00e82a7926074196e2a11e44bc1f1f5b7a348004b9979 Gafgytcensys elf gafgyt mirai ua-wget

Intelligence


File Origin
# of uploads :
1
# of downloads :
70
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Score:
92.5%
Tags:
mirai agent hype sage
Verdict:
Likely Malicious
Threat level:
  7.5/10
Confidence:
100%
Tags:
lolbin remote
Threat name:
Text.Browser.Generic
Status:
Suspicious
First seen:
2025-04-26 14:50:23 UTC
File Type:
Text (Shell)
AV detection:
2 of 24 (8.33%)
Threat level:
  4/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Behaviour
Modifies registry class
Suspicious use of SetWindowsHookEx
Enumerates physical storage devices
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 81b16e7eda72eaab3486c806248c949db5d7df6e501085040bbe233c4bfc2b24

(this sample)

  
Delivery method
Distributed via web download

Comments