MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 886980d31a162f0eac439e086be0603bcf01c80c81b4768eec433386e7e5779a. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Gafgyt


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 886980d31a162f0eac439e086be0603bcf01c80c81b4768eec433386e7e5779a
SHA3-384 hash: 3297981fa39299d47709af59f3257d1aaccd5fcae8dff31944309facbf2ec9101311c841aead78553430c4726c2d0681
SHA1 hash: 4185252ec70ef49b7e32c875060c7530a46b61ab
MD5 hash: 77b17e50fcb01f2bc73c987759b6d273
humanhash: november-oven-sink-william
File name:SecuriteInfo.com.Linux.Mirai.12357.983
Download: download sample
Signature Gafgyt
File size:40'544 bytes
First seen:2020-05-22 08:03:15 UTC
Last seen:Never
File type: elf
MIME type:application/x-executable
ssdeep 768:/+AAMaui7foF752N4FNx5aW3VFdd7JNnpC5iTs6UbkPqgHmyG:/+hMQ7gW8J/3VFdZXo4I6UYyg0
TLSH 0E03F2625302455AE6E42DB149DD8F36B0C4E9B8370FB9D376B1281F57C14BD8F06299
Reporter SecuriteInfoCom
Tags:gafgyt

Intelligence


File Origin
# of uploads :
1
# of downloads :
76
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Linux.Trojan.Gafgyt
Status:
Malicious
First seen:
2020-02-18 18:52:19 UTC
File Type:
ELF32 Little (Exe)
AV detection:
13 of 47 (27.66%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Gafgyt

elf 886980d31a162f0eac439e086be0603bcf01c80c81b4768eec433386e7e5779a

(this sample)

  
Delivery method
Distributed via web download

Comments