MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8bf079dcd5e37f38fd5e2b3226c1d412497bc4a00807355a3295ba5d3076f953. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 8bf079dcd5e37f38fd5e2b3226c1d412497bc4a00807355a3295ba5d3076f953
SHA3-384 hash: e895aade0e9847b8c1532e0f38ab222d22ad32822be0177e1593ea09018e77cfcc5278a5804e7534b8782c9f77431dfe
SHA1 hash: 979f7e29bf69ba75d12f5ab4ad4180ec2c6b2a69
MD5 hash: e85460152a7f046a036c00ba0cc85d8e
humanhash: pip-nine-early-paris
File name:usw.sh
Download: download sample
Signature Mirai
File size:324 bytes
First seen:2025-12-05 18:22:24 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 6:LA5/nfiAK6iqLGmRDA5/pFGNIvF+6FakDA5/laLaNgoCKDA5/rHzaQ7:shfLK6nyxhSNIE6FakUhlaLaNgoCthfZ
TLSH T1DBE0CDBD002BCF17C1129D00A03B30333033DBE660A0CE0AAEC5F836A19CA203332E05
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://213.209.143.64/splarm79fe549c71c620f6572f5c8815dea0d4401af11397444ada0cda8bd2b0fbc1efe Miraicensys elf mirai ua-wget
http://213.209.143.64/splarm6fa9c55993474f595798a26c92346219f18341bc7ac8ead9effa655a2db87a6fe Miraielf mirai ua-wget
http://213.209.143.64/splarm52a9500af556d33ba63010baf25c7889f3820cfb3ae73bf1e8c9308c6687a3d86 Miraielf mirai ua-wget
http://213.209.143.64/splarm96f1feeb93c3a7452740a6f7914e10411b7f8bbc90a9560f4788f3c4ac61c4d0 Miraielf mirai ua-wget

Intelligence


File Origin
# of uploads :
1
# of downloads :
36
Origin country :
DE DE
Vendor Threat Intelligence
No detections
Verdict:
Malicious
File Type:
text
First seen:
2025-12-05T20:50:00Z UTC
Last seen:
2025-12-07T12:32:00Z UTC
Hits:
~10
Threat name:
Document-HTML.Downloader.Heuristic
Status:
Malicious
First seen:
2025-12-05 18:25:54 UTC
File Type:
Text (Shell)
AV detection:
9 of 38 (23.68%)
Threat level:
  2/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Behaviour
Modifies registry class
Suspicious use of SetWindowsHookEx
Enumerates physical storage devices
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh 8bf079dcd5e37f38fd5e2b3226c1d412497bc4a00807355a3295ba5d3076f953

(this sample)

  
Delivery method
Distributed via web download

Comments