s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

MB-ed24821c2eb412dd4c58786990877e25545c4516fbc8f43f23add40fbbb7f5f8 high

📛 Threat Title

Mirai: pmpsl

Category: Mirai First seen: Last updated: Source: Abuse.ch

Description

File type: elf. Size: 85528 bytes. Tags: elf, Gafgyt, Mirai, upx. Reporter: abuse_ch. First seen: 2026-05-13 19:33:33.

Indicators of Compromise (3)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

hash_sha256 ed24821c2eb412dd4c58786990877e25545c4516fbc8f43f23add40fbbb7f5f8 VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/ed24821c2eb412dd4c58786990877e25545c4516fbc8f43f23add40fbbb7f5f8
1 feed

IOC database

Type
hash_sha256
Value
ed24821c2eb412dd4c58786990877e25545c4516fbc8f43f23add40fbbb7f5f8
First seen
Last seen
Attached to this threat
Appears in
2 threats
Description
Mirai

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/ed24821c2eb412dd4c58786990877e25545c4516fbc8f43f23add40fbbb7f5f8

hash_sha1 3f6a15a90d5a675265d05c727cb1432d26c51919 VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/3f6a15a90d5a675265d05c727cb1432d26c51919
2 feeds

IOC database

Type
hash_sha1
Value
3f6a15a90d5a675265d05c727cb1432d26c51919
First seen
Last seen
Attached to this threat
Appears in
2 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 2 threat-intel feed vendors: Abuse.ch, threatview.io. Open in Threat Hunt →

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/3f6a15a90d5a675265d05c727cb1432d26c51919

hash_md5 6219b899fb12925dec7d061287b7d1b6 VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/6219b899fb12925dec7d061287b7d1b6
2 feeds

IOC database

Type
hash_md5
Value
6219b899fb12925dec7d061287b7d1b6
First seen
Last seen
Attached to this threat
Appears in
2 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 2 threat-intel feed vendors: Abuse.ch, threatview.io. Open in Threat Hunt →

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/6219b899fb12925dec7d061287b7d1b6

References (1)

  • MalwareBazaar sample page Abuse.ch

    File type: elf. Size: 85528 bytes. Tags: elf, Gafgyt, Mirai, upx. Reporter: abuse_ch. First seen: 2026-05-13 19:33:33.

Remediations (10)

  • web:advisory.eventussecurity.com

    The active exploitation of undisclosed vulnerabilities in the wild prompted Akamai to caution the cybersecurity community. The blog refrains from divulging vendor names to allow for responsible disclosure, patching, and remediation . The Mirai -based botnet, named InfectedSlurs, spawned from this exploit campaign.

  • web:arxiv.org

    Angela Famera, Ben Hilger, Suman Bhunia, Patrick Heil Abstract—Mirai is undoubtedly one of the most significant Internet of Things (IoT) botnet attacks in history. In terms of its detrimental effects, seamless spread, and low detection rate, it surpassed its predecessors. Its developers released the source code, which triggered the development of several vari-ants that combined the old code ...

  • web:echoxec.com

    Mirai Malware in 2025: Variant Behavior, Exploit Chains, and Mitigation Insights This post explores the latest Mirai botnet variants actively exploiting critical vulnerabilities in Samsung MagicINFO, DVR devices, and Wazuh servers. It highlights key behaviors observed through sandbox analysis, exploitation techniques, and provides actionable recommendations to defend against these evolving ...

  • web:ellio.tech

    An open directory is serving a Mirai variant across 14 CPU architectures - all updated yesterday. It kills competitors by SHA256 hash, persists through six layers, and hides as a kernel thread. Here's what's inside.

  • web:panorays.com

    Discover the difference between remediation and mitigation in risk management and how each strategy impacts security and resilience.

  • web:quicksearch.dla.mil

    NOTE: It is recommended that you use Adobe Reader v7.0 or higher for optimal download performance; older versions should continue to work, but downloading large files may appear to take longer, so please be patient in those cases.

  • web:westoahu.hawaii.edu

    Practicing proper mitigation techniques and being proactive can help reduce device vulnerabilities, and prevent the creation of more bots and limit the resources botnet operators have. References [1] Cloudflare. (2017, December 14). Inside the Infamous Mirai IoT Botnet: A Retrospective.

  • web:www.joesandbox.com

    Malicious sample detected (through community Yara rule) Antivirus / Scanner detection for submitted sample Multi AV Scanner detection for submitted file Yara detected Mirai python3.8 dpkg started dash rm

  • web:www.quorumcyber.com

    Mirai initially infected and weaponised devices such as smart cameras and Realtek routers2. The botnet variant was created in a racketeering attempt by the cofounders of Protraf Solutions, an organisation offering DDoS mitigation services.

  • web:www.semanticscholar.org

    This article summarizes the common vulnerabilities targeted by these variants and analyzes the infection mechanism through vulnerability analysis and provides an overview of possible defense solutions. Mirai is undoubtedly one of the most significant Internet of Things (IoT) botnet attacks in history. In terms of its detrimental effects, seamless spread, and low detection rate, it surpassed ...

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.