MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 af141483064e11a715a0ad54ee0ed5a58cb8aed3faa0844cac1befdab3555fee. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: af141483064e11a715a0ad54ee0ed5a58cb8aed3faa0844cac1befdab3555fee
SHA3-384 hash: 7035027178f3d06ebae60277d08509ae26e728ada575cd087328c4f5010e1465d6d6193ffc9b3d3f1c68c4cd8ad9855f
SHA1 hash: 204ac721979577f45194713d9d5e75b2ebf7ee5a
MD5 hash: 920f757ec49146da1bb984f7f956ae88
humanhash: spring-tennis-tennessee-stream
File name:l
Download: download sample
Signature Mirai
File size:427 bytes
First seen:2025-11-28 18:34:19 UTC
Last seen:2025-11-29 09:22:32 UTC
File type: sh
MIME type:text/x-shellscript
ssdeep 6:hYVJXOpkYoANcfQapeRijAHIrnDF9aqYehKPLmlYyD7zVHz16GIYWa531B+4n:+nXOprDD5RBIbEecDxyxzsGVW4vn
TLSH T172E05CAC95B08C3CF05AC43870FA5140B415CF538935DA1874575CDE94EC506B12CE67
TrID 70.0% (.SH) Linux/UNIX shell script (7000/1)
30.0% (.) Unix-like shebang (var.3) (gen) (3000/1)
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://185.241.208.197/xd/dropbear9e092f88fc7871f4417fa24b682919c2e6e8fd807edad4a8cd8da656b522da23 Miraielf mirai ua-wget
http://185.241.208.197/xd/sshd3364bdb131f8fa1da1a4c910ae7605bcdd6cc57d780d11432f0010008948ebc1 Miraielf mirai ua-wget

Intelligence


File Origin
# of uploads :
2
# of downloads :
22
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Labled as:
Trojan[Downloader]/Shell.Agent
Verdict:
Malicious
File Type:
unix shell
First seen:
2025-11-28T15:45:00Z UTC
Last seen:
2025-11-29T09:12:00Z UTC
Hits:
~10
Detections:
HEUR:Trojan-Downloader.Shell.Agent.p
Verdict:
Malicious
Threat:
Trojan-Downloader.Shell.Agent
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh af141483064e11a715a0ad54ee0ed5a58cb8aed3faa0844cac1befdab3555fee

(this sample)

  
Delivery method
Distributed via web download

Comments