MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 829555e6fa380def3f557b97cc60551c1df898f7dc82d3cfe611044585050f31. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 9


Intelligence 9 IOCs YARA File information Comments

SHA256 hash: 829555e6fa380def3f557b97cc60551c1df898f7dc82d3cfe611044585050f31
SHA3-384 hash: 3b33a8cbbd97a7c674427ca48f4569112a679c68714263e38b647e74787171213c2fb88e7a73db6f4216f22618da4879
SHA1 hash: b64b8831e41d0de2f0cd30299d3a73a83ed2f74c
MD5 hash: 882f588754d60d17eeb4714b304c0200
humanhash: mars-india-six-arizona
File name:garm6
Download: download sample
Signature Mirai
File size:21'456 bytes
First seen:2025-01-25 08:26:24 UTC
Last seen:Never
File type: elf
MIME type:application/x-executable
ssdeep 384:E4nBpfvwfJfNKETKUTv+GFhx3n2YKUXL9m3L+zGZ/wM3fNnJs:E4nBRvwxfNxTFtTxDt4+zGZ/8
TLSH T190A2F885BCA2866586D813BEB63D41CE331267B9C2DF3202DE214F1676CE95F0E77A41
TrID 50.1% (.) ELF Executable and Linkable format (Linux) (4022/12)
49.8% (.O) ELF Executable and Linkable format (generic) (4000/1)
Magika elf
Reporter abuse_ch
Tags:elf mirai

Intelligence


File Origin
# of uploads :
1
# of downloads :
108
Origin country :
DE DE
Vendor Threat Intelligence
Gathering data
Result
Verdict:
Clean
Maliciousness:
Verdict:
Malicious
Uses P2P?:
false
Uses anti-vm?:
false
Architecture:
arm
Packer:
not packed
Botnet:
unknown
Number of open files:
0
Number of processes launched:
0
Processes remaning?
false
Remote TCP ports scanned:
not identified
Behaviour
no suspicious findings
Botnet C2s
TCP botnet C2(s):
not identified
UDP botnet C2(s):
not identified
Result
Verdict:
UNKNOWN
Result
Threat name:
n/a
Detection:
malicious
Classification:
n/a
Score:
48 / 100
Signature
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Threat name:
Linux.Backdoor.Mirai
Status:
Malicious
First seen:
2025-01-25 08:27:05 UTC
File Type:
ELF32 Little (Exe)
AV detection:
5 of 38 (13.16%)
Threat level:
  5/5
Result
Malware family:
Score:
  10/10
Tags:
family:mirai
Verdict:
Suspicious
Tags:
n/a
YARA:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

elf 829555e6fa380def3f557b97cc60551c1df898f7dc82d3cfe611044585050f31

(this sample)

  
Delivery method
Distributed via web download

Comments