MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 cb35053d78f1023e2142b48716385764eab0bbaa1690194350d36c427b08eded. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: cb35053d78f1023e2142b48716385764eab0bbaa1690194350d36c427b08eded
SHA3-384 hash: c0fa9db128ddc8e6fe4659adc9cf3f0bb970f5d665d6e80d7fc88d0c21877df228cedcba0e2c389ec3b4d492705eb483
SHA1 hash: 5df1b600ac5da3fa77dbaee7cdd3ddde1b641934
MD5 hash: b18399e49b7d97b95d44efc66ff52270
humanhash: kitten-fourteen-nebraska-thirteen
File name:wget.sh
Download: download sample
Signature Mirai
File size:145 bytes
First seen:2025-02-21 14:17:26 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 3:JnFSXiLdjX4wgOOd+WEWoDjiLdjX41Le5OOdMa72:JoXoZX4wgboXoZX41Le54L
TLSH T14BC04CE554A01F54D0DEE54936968D2B504787ECACC7C79D6CA607260C45510FD94EC5
Magika shell
Reporter abuse_ch
Tags:sh
URLMalware sample (SHA256 hash)SignatureTags
http://94.156.227.74/mipsn/an/a32-bit elf mirai
http://94.156.227.74/mpsln/an/aelf mirai ua-wget

Intelligence


File Origin
# of uploads :
1
# of downloads :
76
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
evasive
Result
Verdict:
UNKNOWN
Result
Malware family:
n/a
Score:
  3/10
Tags:
discovery
Behaviour
Modifies registry class
Suspicious behavior: GetForegroundWindowSpam
Suspicious use of SetWindowsHookEx
Suspicious use of WriteProcessMemory
Enumerates physical storage devices
System Location Discovery: System Language Discovery
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh cb35053d78f1023e2142b48716385764eab0bbaa1690194350d36c427b08eded

(this sample)

  
Delivery method
Distributed via web download

Comments