MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 a2928bcff73aa7a6cea2085cd8e1942786f83f43719634960c762873f6130529. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: a2928bcff73aa7a6cea2085cd8e1942786f83f43719634960c762873f6130529
SHA3-384 hash: ed4797ac11b3699c0504b92847cb88dabc35e970bb5ca17bba724d005d41b7568e70bac5dff7aff8e91d7c26a56af493
SHA1 hash: a722b39f90ccb3458cccb5a1652d4f0873492710
MD5 hash: ffcf5350344cef2a668221a76af159c1
humanhash: red-potato-five-uranus
File name:o.xml
Download: download sample
Signature Mirai
File size:553 bytes
First seen:2025-04-07 17:22:52 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 12:FE8i9pAC7ykxGWi2jIvKTkYBjtx51n5h5n:FE8G/sWi2jIv0kstP15rn
TLSH T155F084DCA238CB124DDECA8EF2B0560480C3C0C8F2F0ABD6E2808820EE0498E326034D
Magika xml
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://193.32.162.27/bins/px86a2d91163eeefbc033b7f4aad57635df36c770a8a2f7864e78d8831739c1d9da6 Miraielf mirai

Intelligence


File Origin
# of uploads :
1
# of downloads :
65
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
masquerade opendir opendir
Threat name:
Script.Trojan.Heuristic
Status:
Malicious
First seen:
2025-04-07 18:09:10 UTC
File Type:
Text
AV detection:
2 of 24 (8.33%)
Threat level:
  2/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Behaviour
Modifies registry class
Suspicious use of SetWindowsHookEx
Enumerates physical storage devices
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh a2928bcff73aa7a6cea2085cd8e1942786f83f43719634960c762873f6130529

(this sample)

  
Delivery method
Distributed via web download

Comments