MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8d680b87af1f053cf646eeeb6f79ce8b9225cc3dcb9171b81a3a5e441bc3a474. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 7


Intelligence 7 IOCs YARA File information Comments 1

SHA256 hash: 8d680b87af1f053cf646eeeb6f79ce8b9225cc3dcb9171b81a3a5e441bc3a474
SHA3-384 hash: 48ba7de3dde3e5fd8a1283ec52a2bc6ecdbf6a17239ec1ce59496efd439332ef794c6db5321b6fb8a423641fada5da99
SHA1 hash: 82835030bb8b06189c87629d258d5b0dbd49bb1f
MD5 hash: e4fb6b978590ee80ee1383d7f05ffee9
humanhash: timing-undress-stream-delta
File name:e4fb6b978590ee80ee1383d7f05ffee9
Download: download sample
Signature Mirai
File size:26'884 bytes
First seen:2021-10-16 13:53:10 UTC
Last seen:Never
File type: elf
MIME type:application/x-executable
ssdeep 768:zOg+As/tEf0mKpHexzEa224uVcqgw0RNWXfn:9+XVc0F2zHL4u+qgw0bWXfn
TLSH T19AC2D160E4978892DAFB9AF10D947EC2B7BC8FD777F284891514BF112A148823319F94
Reporter zbetcheckin
Tags:32 elf mirai powerpc

Intelligence


File Origin
# of uploads :
1
# of downloads :
139
Origin country :
n/a
Vendor Threat Intelligence
Verdict:
Likely Malicious
Threat level:
  7.5/10
Confidence:
100%
Tags:
anti-debug
Result
Verdict:
MALICIOUS
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
48 / 100
Signature
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Threat name:
Linux.Trojan.Mirai
Status:
Malicious
First seen:
2021-10-16 13:54:06 UTC
AV detection:
13 of 44 (29.55%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
linux
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

elf 8d680b87af1f053cf646eeeb6f79ce8b9225cc3dcb9171b81a3a5e441bc3a474

(this sample)

  
Delivery method
Distributed via web download

Comments



Avatar
zbet commented on 2021-10-16 13:53:11 UTC

url : hxxp://45.148.10.245/lx/apep.ppc