MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 fb9c12e77740743369ddc08aff9380654ab4aa450d4cd58819efaa8b7cc3332e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: fb9c12e77740743369ddc08aff9380654ab4aa450d4cd58819efaa8b7cc3332e
SHA3-384 hash: ba5eecdaa19e7176a69280efc83108831efab39d9d7d0e92b89edc649a8e5c0ff9898d9bde6d1ba846da84efd8e9442e
SHA1 hash: 1fce7ec50665d08c91f9500c96b0a96f01a21a79
MD5 hash: e6cc9aa76bc57f3fd9eebc61419b5240
humanhash: twelve-lemon-august-lake
File name:mpsl
Download: download sample
File size:14'213 bytes
First seen:2026-01-05 00:56:48 UTC
Last seen:2026-01-05 12:13:49 UTC
File type: elf
MIME type:application/x-executable
ssdeep 192:M+Q8JRYT0zWeAlKFTzMXoqMvAcKqgNkdi9wFwouzPZ8Gi1a3Watf:m0YxwV2M4czFI9BdzPJi15atf
TLSH T1CE52D915BB153FE7EA87CD378AA4371215CC751D21C29B3AB63AE84CB54B25A1AF3070
TrID 50.1% (.) ELF Executable and Linkable format (Linux) (4022/12)
49.8% (.O) ELF Executable and Linkable format (generic) (4000/1)
Magika elf
Reporter abuse_ch
Tags:elf

Intelligence


File Origin
# of uploads :
2
# of downloads :
101
Origin country :
DE DE
Vendor Threat Intelligence
No detections
Result
Verdict:
Malware
Maliciousness:
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
mirai
Verdict:
Unknown
File Type:
elf.32.le
First seen:
2026-01-05T01:01:00Z UTC
Last seen:
2026-01-05T01:08:00Z UTC
Hits:
~10
Status:
terminated
Behavior Graph:
%3 guuid=7cf832b9-1900-0000-b909-6091910c0000 pid=3217 /usr/bin/sudo guuid=be6018bb-1900-0000-b909-6091940c0000 pid=3220 /tmp/sample.bin guuid=7cf832b9-1900-0000-b909-6091910c0000 pid=3217->guuid=be6018bb-1900-0000-b909-6091940c0000 pid=3220 execve
Result
Threat name:
n/a
Detection:
clean
Classification:
n/a
Score:
1 / 100
Behaviour
Behavior Graph:
n/a
Threat name:
Linux.Trojan.Generic
Status:
Suspicious
First seen:
2026-01-05 00:57:15 UTC
File Type:
ELF32 Little (Exe)
AV detection:
7 of 24 (29.17%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

elf fb9c12e77740743369ddc08aff9380654ab4aa450d4cd58819efaa8b7cc3332e

(this sample)

  
Delivery method
Distributed via web download

Comments