MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d9041a9db6389970915d18269c3bba204598d93cb1e9933436d8ed7208df1986. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 8


Intelligence 8 IOCs YARA File information Comments

SHA256 hash: d9041a9db6389970915d18269c3bba204598d93cb1e9933436d8ed7208df1986
SHA3-384 hash: bd4da265239bbe950cc690766f562f632d3b97808a7ce4f988a5d05427cf754a6dd505e1f2cbdb17ea8283cae6d17fad
SHA1 hash: 68b766f85cc23fb8e051d8460d485ba4ab8cdebe
MD5 hash: 1eab94e61fce59e66b4c4c274956dec6
humanhash: eleven-south-sink-echo
File name:ksh4
Download: download sample
Signature Mirai
File size:30'884 bytes
First seen:2025-01-23 17:36:20 UTC
Last seen:Never
File type: elf
MIME type:application/x-executable
ssdeep 768:1KqmNiIH6gewOVt6ILxpjKP7SFi7oYFoCb3N:KiIH6gewOHf9pjKP72QoCb3
TLSH T1F4D25AA2CD3D2E58E508E3B9B220CF7C6363D464A6575FB52926C2344083E8CF50E3B4
TrID 50.1% (.) ELF Executable and Linkable format (Linux) (4022/12)
49.8% (.O) ELF Executable and Linkable format (generic) (4000/1)
Magika elf
Reporter abuse_ch
Tags:elf gafgyt mirai

Intelligence


File Origin
# of uploads :
1
# of downloads :
102
Origin country :
DE DE
Vendor Threat Intelligence
Gathering data
Result
Verdict:
UNKNOWN
Result
Threat name:
n/a
Detection:
malicious
Classification:
n/a
Score:
48 / 100
Signature
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Threat name:
Linux.Backdoor.Gafgyt
Status:
Malicious
First seen:
2025-01-23 17:37:05 UTC
File Type:
ELF32 Little (Exe)
AV detection:
6 of 38 (15.79%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
linux
Verdict:
Malicious
Tags:
Unix.Trojan.Mirai-7138377-0
YARA:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

elf d9041a9db6389970915d18269c3bba204598d93cb1e9933436d8ed7208df1986

(this sample)

  
Delivery method
Distributed via web download

Comments