MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8dd83c3be5b6dae93dcf16de52d80a83e5f7783004b0ef0a66646191b9e5fb2b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 9


Intelligence 9 IOCs YARA File information Comments 1

SHA256 hash: 8dd83c3be5b6dae93dcf16de52d80a83e5f7783004b0ef0a66646191b9e5fb2b
SHA3-384 hash: 4e8984d40dc2ba2b5a78618d6f7eb08d58aa1505983936ea6bd7a50ad05a3d45761e49560ea839b1aa14d504809ae009
SHA1 hash: a34ab9c8166b47a7860dd0c261d10e1349d28395
MD5 hash: eedafd17c645eb7984d6e30272109190
humanhash: delta-echo-asparagus-low
File name:eedafd17c645eb7984d6e30272109190
Download: download sample
Signature Mirai
File size:140'636 bytes
First seen:2023-12-16 21:52:26 UTC
Last seen:Never
File type: elf
MIME type:application/x-executable
ssdeep 1536:DbVuWzPpVDXheFCSdrxpbvT3NCsJJLXgaGnMfgvAuIcF40lPp/q8Krk64Dyl1dOk:DPGHdrxV73rrgPnM9uP64Dqsk
TLSH T135D32906B31C0B43D1632EF43E3F67D093EF9A8121E8FA41255FAA8A91B1D325545ECE
Reporter zbetcheckin
Tags:32 elf mirai powerpc

Intelligence


File Origin
# of uploads :
1
# of downloads :
116
Origin country :
FR FR
Vendor Threat Intelligence
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
anti-debug lolbin mirai remote
Result
Verdict:
MALICIOUS
Result
Threat name:
Detection:
malicious
Classification:
troj
Score:
80 / 100
Signature
Antivirus / Scanner detection for submitted sample
Detected Mirai
Malicious sample detected (through community Yara rule)
Snort IDS alert for network traffic
Yara detected Mirai
Behaviour
Behavior Graph:
Threat name:
Linux.Trojan.Mirai
Status:
Malicious
First seen:
2023-12-16 17:31:00 UTC
File Type:
ELF32 Big (Exe)
AV detection:
24 of 37 (64.86%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
linux
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

elf 8dd83c3be5b6dae93dcf16de52d80a83e5f7783004b0ef0a66646191b9e5fb2b

(this sample)

  
Delivery method
Distributed via web download

Comments



Avatar
zbet commented on 2023-12-16 21:52:27 UTC

url : hxxp://103.178.235.42/skyljne.ppc