MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 f8e8bdd8583ad31b0934486b7b5984b2ecb6a3d62f9c5e2b76881c099753667d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Mirai


Vendor detections: 8


Intelligence 8 IOCs YARA File information Comments

SHA256 hash: f8e8bdd8583ad31b0934486b7b5984b2ecb6a3d62f9c5e2b76881c099753667d
SHA3-384 hash: e8501efee62abbfc3f0679742f5a3dfa9f79e7108d91b73e625a390e39c8630a7de4cb8122e9c513dc9becba9e7e020f
SHA1 hash: 174f76c09732f14b5e07c54ae015bebd8dd74d8d
MD5 hash: b163d5f1637bff81d151ca3f2eaad442
humanhash: three-artist-utah-don
File name:weed
Download: download sample
Signature Mirai
File size:4'572 bytes
First seen:2024-12-17 11:48:17 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 96:1xol7TLBfcnwS5kN/fz9zgDM1BphYQCO7FzTFv:QNLS5kN/fz9kDM1B3YQCO7FzTFv
TLSH T11591E09839A38BB30F11EF28F2618575A657E0850CE08F19ACED74FCA5BED44B51468F
Magika shell
Reporter abuse_ch
Tags:Hailbot HailCock HailCockBotnet mirai sh

Intelligence


File Origin
# of uploads :
1
# of downloads :
80
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
anti-debug busybox expand lolbin remote
Result
Verdict:
MALICIOUS
Threat name:
Win32.Trojan.Generic
Status:
Malicious
First seen:
2024-12-17 12:11:06 UTC
File Type:
Text (Shell)
AV detection:
12 of 24 (50.00%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Mirai

sh f8e8bdd8583ad31b0934486b7b5984b2ecb6a3d62f9c5e2b76881c099753667d

(this sample)

  
Delivery method
Distributed via web download

Comments