MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 c9ffe162bcacddf6ca57ae828cb7b3644389896f95241cf5e75b7cc9c0b361c9. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: c9ffe162bcacddf6ca57ae828cb7b3644389896f95241cf5e75b7cc9c0b361c9
SHA3-384 hash: 14288382f74c80378e62a1f376ccda4786cb96a3eedd76c294d99c2ccbf7f34fb0603280eb491fd3a6b064a521d9774e
SHA1 hash: 532e8c19523e32cdf2b34b2dcaf6d2dbde9233e2
MD5 hash: bdcb0ec1bc0e9a3c8d5056e3dee8cc07
humanhash: missouri-high-lactose-spring
File name:x
Download: download sample
Signature Mirai
File size:94 bytes
First seen:2025-02-11 18:26:23 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 3:GRFXWgrzfPaGN3zSTASUKoS6wWX+v1FA:SXWgrzfyaqA5HwQGA
TLSH T172B0129C07137803042DECBB31B10FC93142B78C408BBBC05D41102ED0845813014344
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://193.143.1.32/zerarm7a1d4783a0f02214fea4f9554f62dd48a055a8578ed7084d9486989e8d2d807cd Miraielf mirai ua-wget

Intelligence


File Origin
# of uploads :
1
# of downloads :
85
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
evasive
Result
Verdict:
UNKNOWN
Threat name:
Linux.Downloader.SAgnt
Status:
Malicious
First seen:
2025-02-11 18:22:52 UTC
File Type:
Text (Shell)
AV detection:
2 of 24 (8.33%)
Threat level:
  3/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
discovery
Behaviour
Modifies registry class
Suspicious behavior: GetForegroundWindowSpam
Suspicious use of SetWindowsHookEx
Suspicious use of WriteProcessMemory
Enumerates physical storage devices
System Location Discovery: System Language Discovery
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh c9ffe162bcacddf6ca57ae828cb7b3644389896f95241cf5e75b7cc9c0b361c9

(this sample)

Comments