MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8f09fa2cb79edc929f62c5edde333f5f6f34b858760b9ef701bc0baeb1d060ce. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Gafgyt


Vendor detections: 8


Intelligence 8 IOCs YARA File information Comments

SHA256 hash: 8f09fa2cb79edc929f62c5edde333f5f6f34b858760b9ef701bc0baeb1d060ce
SHA3-384 hash: 23dacbf22891ce509f8f0553c46da411c4f270302978a27687f90ccd615305afbc863a19aeeaaa6c629566c7f6c3f245
SHA1 hash: e389bb360cd956ac277ea2ebc67a2efc0c79c346
MD5 hash: 88890acf74e1d28a2f9d0d6d4e260fc6
humanhash: earth-hamper-pip-sweet
File name:t
Download: download sample
Signature Gafgyt
File size:283 bytes
First seen:2025-01-20 19:56:41 UTC
Last seen:Never
File type: sh
MIME type:text/x-shellscript
ssdeep 6:h0J8JaiGHMFhHoFhExWY3Fqj/q4YFNT5NDGb:iGJ/GsFhHoFh+WfDYjGb
TLSH T13FD02B5E4552061B1C458F9CD1330C21BB2571C508731B99BE4EA17F77A9821A4A15A4
Magika shell
Reporter abuse_ch
Tags:gafgyt sh

Intelligence


File Origin
# of uploads :
1
# of downloads :
99
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Score:
99.9%
Tags:
phishing gafgyt mirai
Verdict:
Likely Malicious
Threat level:
  7.5/10
Confidence:
100%
Result
Verdict:
MALICIOUS
Threat name:
Script-Shell.Trojan.Dakkatoni
Status:
Malicious
First seen:
2025-01-20 19:49:15 UTC
File Type:
Text (Shell)
AV detection:
14 of 38 (36.84%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Gafgyt

sh 8f09fa2cb79edc929f62c5edde333f5f6f34b858760b9ef701bc0baeb1d060ce

(this sample)

  
Delivery method
Distributed via web download

Comments