s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

MB-d64ac81c3240c53c93180b8da0e823a5b07b4d3620ee5d79000f21ea376d860a high

📛 Threat Title

Mirai: iran.sparc

Category: Mirai Published: Source updated: First seen: Last updated: Source: Abuse.ch

Description

File type: elf. Size: 43832 bytes. Tags: Mirai. Reporter: BlinkzSec. First seen: 2026-08-06 20:33:04.

Indicators of Compromise (3)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

hash_sha256 d64ac81c3240c53c93180b8da0e823a5b07b4d3620ee5d79000f21ea376d860a

IOC database

Type
hash_sha256
Value
d64ac81c3240c53c93180b8da0e823a5b07b4d3620ee5d79000f21ea376d860a
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Mirai

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha1 a8b6efd569f4f8298f5477b2afc34acfad3fd0c5

IOC database

Type
hash_sha1
Value
a8b6efd569f4f8298f5477b2afc34acfad3fd0c5
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_md5 8b14c7e328dbc8d09b84579b2c4cfbc2

IOC database

Type
hash_md5
Value
8b14c7e328dbc8d09b84579b2c4cfbc2
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

References (1)

  • MalwareBazaar sample page Abuse.ch

    File type: elf. Size: 43832 bytes. Tags: Mirai. Reporter: BlinkzSec. First seen: 2026-08-06 20:33:04.

Remediations (10)

  • web:dailysecurityreview.com

    The Mirai botnet, a notorious piece of malware, launched devastating DDoS attacks in 2016. This blog post delves into its origins, spread, impact, and the ongoing threat it represents, providing crucial information on mitigating Mirai botnet risks.

  • web:link.springer.com

    In this paper, we present a formalized analysis of Mirai's tactics, techniques, and procedures using the MITRE ATT&CK framework. Our work introduces a spatio-sequential analysis of Mirai's attack flow, correlating adversary techniques with impacted assets through D3FEND.

  • web:westoahu.hawaii.edu

    A botnet called Mirai infected hundreds of thousands of Internet of Things (IoT) devices, amassing a wide network of compromised devices. Mitigations against the Mirai botnet involve taking proactive security measures, properly hardening systems, and updating to the latest software to reduce the risk of compromise.

  • web:www.akamai.com

    Akamai has uncovered two zero-day vulnerabilities that are being actively exploited to spread a Mirai variant in the wild. Read on for details and mitigation .

  • web:www.joesandbox.com

    Signatures Antivirus / Scanner detection for submitted sample Multi AV Scanner detection for submitted file HTTP GET or POST without a user agent Sample has stripped symbol table Uses the "uname" system call to query kernel version information (possible evasion)

  • web:www.joesandbox.com

    General Information Joe Sandbox version: 44.0.0 Smoke Quartz Analysis ID: 1937823 Start date and time: 2026-07-06 13:16:48 +02:00 Joe Sandbox product: CloudBasic Overall analysis duration: 0h 10m 56s Hypervisor based Inspection enabled: false Report type: full Cookbook file name: defaultlinuxfilecookbook.jbs Analysis system description: Ubuntu Linux 20.04 x64 (Kernel 5.4.0-72, Firefox 91.0 ...

  • web:www.ndss-symposium.org

    As over 87% of these devices reside in broadband networks, this task will fall primarily to consumers and the Internet Service Providers. We present the first empirical study of IoT malware cleanup in the wild -- more specifically, of removing Mirai infections in the network of a medium-sized ISP.

  • web:www.researchgate.net

    The Mirai botnet, composed primarily of embedded and IoT devices, took the Internet by storm in late 2016 when it overwhelmed several high-profile targets with massive distributed denial-of ...

  • web:www.semanticscholar.org

    This article summarizes the common vulnerabilities targeted by these variants and analyzes the infection mechanism through vulnerability analysis and provides an overview of possible defense solutions. Mirai is undoubtedly one of the most significant Internet of Things (IoT) botnet attacks in history. In terms of its detrimental effects, seamless spread, and low detection rate, it surpassed ...

  • web:www.zero-day.cz

    Zero-day (0day) vulnerability tracking project database. All zero-day vulnerabilities since 2006.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.