MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8bf079dcd5e37f38fd5e2b3226c1d412497bc4a00807355a3295ba5d3076f953. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 8bf079dcd5e37f38fd5e2b3226c1d412497bc4a00807355a3295ba5d3076f953
SHA3-384 hash: e895aade0e9847b8c1532e0f38ab222d22ad32822be0177e1593ea09018e77cfcc5278a5804e7534b8782c9f77431dfe
SHA1 hash: 979f7e29bf69ba75d12f5ab4ad4180ec2c6b2a69
MD5 hash: e85460152a7f046a036c00ba0cc85d8e
humanhash: pip-nine-early-paris
File name:usw.sh
Download: download sample
Signature Mirai
File size:324 bytes
First seen:2025-12-05 18:22:24 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 6:LA5/nfiAK6iqLGmRDA5/pFGNIvF+6FakDA5/laLaNgoCKDA5/rHzaQ7:shfLK6nyxhSNIE6FakUhlaLaNgoCthfZ
TLSH T1DBE0CDBD002BCF17C1129D00A03B30333033DBE660A0CE0AAEC5F836A19CA203332E05
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://213.209.143.64/splarm716363496c05fe7ba8373d58f349a1dc8d037ac665942ead0fec348dd9df7a500 Miraicensys elf mirai ua-wget
http://213.209.143.64/splarm62e8928cc1c43c7074aaf2e7863e4fd5243705477345f40df4c51beeec9022497 Miraielf mirai ua-wget
http://213.209.143.64/splarm574667b2147b1c66d8d72fa2ea8a92e8403617f2d8cdb26e17b30a5da51aa0d58 Miraielf mirai ua-wget
http://213.209.143.64/splarmb63742c8030b3522e94c94dc5f646ffc03fb813b16376ff2ac479c8b9f1e5ef9 Miraielf mirai ua-wget

Intelligence


File Origin
# of uploads :
1
# of downloads :
28
Origin country :
DE DE
Vendor Threat Intelligence
No detections
Verdict:
Malicious
File Type:
text
First seen:
2025-12-05T20:50:00Z UTC
Last seen:
2025-12-07T12:32:00Z UTC
Hits:
~10
Threat name:
Document-HTML.Downloader.Heuristic
Status:
Malicious
First seen:
2025-12-05 18:25:54 UTC
File Type:
Text (Shell)
AV detection:
9 of 38 (23.68%)
Threat level:
  2/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Behaviour
Modifies registry class
Suspicious use of SetWindowsHookEx
Enumerates physical storage devices
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 8bf079dcd5e37f38fd5e2b3226c1d412497bc4a00807355a3295ba5d3076f953

(this sample)

  
Delivery method
Distributed via web download

Comments