MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 e083ec595f258035cf101128e39a9266d31c7c5c8545216c1e5ba02259926ae8. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 11


Intelligence 11 IOCs YARA File information Comments

SHA256 hash: e083ec595f258035cf101128e39a9266d31c7c5c8545216c1e5ba02259926ae8
SHA3-384 hash: ae99a408962bb30afb3a56e9d14c3cb2bec323ddc6df91101bf66ab9c9f7236fb1c5555c7284c1471234a5914f018af4
SHA1 hash: 1769eae31cc21b09a35b21a870cac18fddf1258e
MD5 hash: 480620d0b50c901b74fdc8ba7002d85c
humanhash: bluebird-johnny-illinois-missouri
File name:morte.m68k
Download: download sample
Signature Mirai
File size:132'320 bytes
First seen:2025-03-11 01:11:21 UTC
Last seen:Never
File type: elf
MIME type:application/x-executable
ssdeep 3072:Y26mVtCe1TFyQo5LJiHVWjbi+LXudqSYyivWP:skN1TFyQmJikLw8yieP
TLSH T133D308C7FD00DAF9F80AE73648530405B130BBA649925E377257353EED3A199057BE8A
Magika elf
Reporter abuse_ch
Tags:elf mirai

Intelligence


File Origin
# of uploads :
1
# of downloads :
117
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
lolbin masquerade remote
Result
Verdict:
UNKNOWN
Result
Threat name:
n/a
Detection:
malicious
Classification:
n/a
Score:
56 / 100
Signature
Antivirus / Scanner detection for submitted sample
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
behaviorgraph top1 dnsIp2 2 Behavior Graph ID: 1634664 Sample: morte.m68k.elf Startdate: 11/03/2025 Architecture: LINUX Score: 56 14 176.65.134.62, 2025, 51966, 51968 DIOGELO-ASGB Germany 2->14 16 Antivirus / Scanner detection for submitted sample 2->16 18 Multi AV Scanner detection for submitted file 2->18 8 morte.m68k.elf 2->8         started        signatures3 process4 process5 10 morte.m68k.elf 8->10         started        process6 12 morte.m68k.elf 10->12         started       
Threat name:
Linux.Backdoor.Mirai
Status:
Malicious
First seen:
2025-03-11 01:12:12 UTC
File Type:
ELF32 Big (Exe)
AV detection:
15 of 38 (39.47%)
Threat level:
  5/5
Result
Malware family:
Score:
  10/10
Tags:
family:mirai botnet:lzrd linux
Verdict:
Malicious
Tags:
Unix.Trojan.Mirai-6981989-0
YARA:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

elf e083ec595f258035cf101128e39a9266d31c7c5c8545216c1e5ba02259926ae8

(this sample)

  
Delivery method
Distributed via web download

Comments