YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash fe326335c2ceb3918d7dc8cefa1589d85db3747ac91d359ff313d97a5b22cc8e.

Scan Results


SHA256 hash: fe326335c2ceb3918d7dc8cefa1589d85db3747ac91d359ff313d97a5b22cc8e
File size:23'432 bytes
File download: Original
MIME type:application/x-executable
MD5 hash: 4f79b465cb4518a9e5b57131825e6586
SHA1 hash: 981eef52e770fda827637c42fd4db73081b1f41a
SHA3-384 hash: 02b83688debdd20b3a06d04da98aa7089ad19eaf844ed5771372999f16fc1a51f08bce0cd0f760539065981043e00c21
First seen:2025-11-20 23:57:03 UTC
Last seen:2025-11-21 00:00:39 UTC
Sightings:5
imphash :n/a
ssdeep : 384:MYiiBi3f2PSrf64K5WFSlvNjJ6Bqg22JR3Ze5lkBBArl50YYl2S8piTv1RE:AiBiv2PSbePxNN9gfMkBo07uoE
TLSH :n/a
telfhash : tnull
gimphash :n/a
dhash icon :n/a

Tasks


There are 5 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:1d4169ce-c66d-11f0-adeb-42010aa4000b
File name:fe326335c2ceb3918d7dc8cefa1589d85db3747ac91d359ff313d97a5b22cc8e.elf
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:SecuriteInfo.com.Linux.Mirai-17.UNOFFICIAL
Signature:Unix.Trojan.Mirai-9957719-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:linux_generic_ipv6_catcher
Author:@_lubiedo
Description:ELF samples using IPv6 addresses
TLP:TLP:WHITE
Repository:Stratosphere
Rule name:upx_packed_elf_v1
Author:RandomMalware
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.

Task Information


Task ID:073dc406-c66d-11f0-adeb-42010aa4000b
File name:fe326335c2ceb3918d7dc8cefa1589d85db3747ac91d359ff313d97a5b22cc8e
Task parameters:ClamAV scan:True
Unpack:True
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:SecuriteInfo.com.Linux.Mirai-17.UNOFFICIAL
Signature:Unix.Trojan.Mirai-9957719-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:linux_generic_ipv6_catcher
Author:@_lubiedo
Description:ELF samples using IPv6 addresses
TLP:TLP:WHITE
Repository:Stratosphere
Rule name:upx_packed_elf_v1
Author:RandomMalware
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.

Task Information


Task ID:e38fe90b-c66c-11f0-adeb-42010aa4000b
File name:fe326335c2ceb3918d7dc8cefa1589d85db3747ac91d359ff313d97a5b22cc8e
Task parameters:ClamAV scan:True
Unpack:True
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:SecuriteInfo.com.Linux.Mirai-17.UNOFFICIAL
Signature:Unix.Trojan.Mirai-9957719-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:linux_generic_ipv6_catcher
Author:@_lubiedo
Description:ELF samples using IPv6 addresses
TLP:TLP:WHITE
Repository:Stratosphere
Rule name:upx_packed_elf_v1
Author:RandomMalware
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.

Task Information


Task ID:bf9cb206-c66c-11f0-adeb-42010aa4000b
File name:fe326335c2ceb3918d7dc8cefa1589d85db3747ac91d359ff313d97a5b22cc8e
Task parameters:ClamAV scan:True
Unpack:True
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:SecuriteInfo.com.Linux.Mirai-17.UNOFFICIAL
Signature:Unix.Trojan.Mirai-9957719-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:linux_generic_ipv6_catcher
Author:@_lubiedo
Description:ELF samples using IPv6 addresses
TLP:TLP:WHITE
Repository:Stratosphere
Rule name:upx_packed_elf_v1
Author:RandomMalware
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.

Task Information


Task ID:9c71320c-c66c-11f0-adeb-42010aa4000b
File name:fe326335c2ceb3918d7dc8cefa1589d85db3747ac91d359ff313d97a5b22cc8e
Task parameters:ClamAV scan:True
Unpack:True
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:SecuriteInfo.com.Linux.Mirai-17.UNOFFICIAL
Signature:Unix.Trojan.Mirai-9957719-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:linux_generic_ipv6_catcher
Author:@_lubiedo
Description:ELF samples using IPv6 addresses
TLP:TLP:WHITE
Repository:Stratosphere
Rule name:upx_packed_elf_v1
Author:RandomMalware
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.