MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8214649bbee9d00c5e2dd9c78c8d9fcc51a2bbeabf82c1f28ef1ee85f8905f5b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 7


Intelligence 7 IOCs YARA File information Comments

SHA256 hash: 8214649bbee9d00c5e2dd9c78c8d9fcc51a2bbeabf82c1f28ef1ee85f8905f5b
SHA3-384 hash: 649c78277834110c0b77b987cfa3416831430b0cfab9efb4df9845aa5601aeb0cb4fc17e005ff70de819fb341f16982d
SHA1 hash: f2d6b69a377f61da556f7013d820f5a2fa15979f
MD5 hash: a6ab8da2177c17782c46fe14b4f9cc51
humanhash: twelve-enemy-paris-leopard
File name:rev.arm7
Download: download sample
Signature Mirai
File size:35'400 bytes
First seen:2025-05-22 14:41:37 UTC
Last seen:2025-05-22 20:30:13 UTC
File type: elf
MIME type:application/x-executable
ssdeep 768:sRnC2d3qowhaqleCiIf5bFHmKit0C5Y6xe3IjsA:sRnNSaqlRi4bhcY6xcOsA
TLSH T1AEF2296AF9406F11E9C110BEFF5F124933534B6CE3EA72029A249B2473C7E6A0F7A515
telfhash t1bba0020541304c6454e01602943d73014834d1cda045ecfc52bbcd881813c90901276c
TrID 50.1% (.) ELF Executable and Linkable format (Linux) (4022/12)
49.8% (.O) ELF Executable and Linkable format (generic) (4000/1)
Magika elf
Reporter abuse_ch
Tags:elf mirai

Intelligence


File Origin
# of uploads :
3
# of downloads :
84
Origin country :
DE DE
Vendor Threat Intelligence
Result
Verdict:
Clean
Maliciousness:
Verdict:
Unknown
Threat level:
  0/10
Confidence:
100%
Tags:
lolbin masquerade remote
Verdict:
Malicious
Uses P2P?:
false
Uses anti-vm?:
false
Architecture:
arm
Packer:
not packed
Botnet:
unknown
Number of open files:
0
Number of processes launched:
0
Processes remaning?
false
Remote TCP ports scanned:
not identified
Behaviour
no suspicious findings
Botnet C2s
TCP botnet C2(s):
not identified
UDP botnet C2(s):
not identified
Result
Threat name:
n/a
Detection:
clean
Classification:
n/a
Score:
1 / 100
Behaviour
Behavior Graph:
n/a
Threat name:
Linux.Trojan.Generic
Status:
Suspicious
First seen:
2025-05-22 14:30:10 UTC
File Type:
ELF32 Little (Exe)
AV detection:
10 of 24 (41.67%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

elf 8214649bbee9d00c5e2dd9c78c8d9fcc51a2bbeabf82c1f28ef1ee85f8905f5b

(this sample)

  
Delivery method
Distributed via web download

Comments