MB-3dbba0713091675bf142e8ff9ef92a5eee1732eae2af19ce65585b7616a670ac
high
📛 Threat Title
Mirai: bot.mips64
Description
File type: elf. Size: 1139180 bytes. Tags: elf, Gafgyt, Mirai. Reporter: abuse_ch. First seen: 2026-09-25 05:00:05.
Indicators of Compromise (3)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
hash_sha256
3dbba0713091675bf142e8ff9ef92a5eee1732eae2af19ce65585b7616a670ac
IOC database
- Type
- hash_sha256
- Value
3dbba0713091675bf142e8ff9ef92a5eee1732eae2af19ce65585b7616a670ac- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Mirai
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_sha1
398dde9cc059716fce901b0bc13a3a81b6ed348b
IOC database
- Type
- hash_sha1
- Value
398dde9cc059716fce901b0bc13a3a81b6ed348b- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_md5
52639fe89a6ebcc9a5b1d9bf14ec21d1
IOC database
- Type
- hash_md5
- Value
52639fe89a6ebcc9a5b1d9bf14ec21d1- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
References (1)
-
MalwareBazaar sample page
Abuse.ch
File type: elf. Size: 1139180 bytes. Tags: elf, Gafgyt, Mirai. Reporter: abuse_ch. First seen: 2026-09-25 05:00:05.
Remediations (10)
-
web:any.run
Mirai is a self-propagating malware that scans the internet for vulnerable IoT devices and infects them to create a botnet. Mirai variants utilize lists of common default credentials to gain access to devices. Mirai's primary use is for launching distributed denial-of-service (DDoS) attacks, but it has also been used for cryptocurrency mining.
-
web:dailysecurityreview.com
The Mirai botnet, a notorious piece of malware, launched devastating DDoS attacks in 2016. This blog post delves into its origins, spread, impact, and the ongoing threat it represents, providing crucial information on mitigating Mirai botnet risks.
-
web:github.com
Explore illusionsec DDOS Archive, featuring top-tier scanners, powerful botnets ( Mirai & QBot) and other variants, high-impact exploits, advanced methods, and efficient sniffers.
-
web:shhaos.github.io
These unique datasets enable us to conduct the first comprehensive analysis of Mirai and posit technical and non-technical defenses that may stymie future attacks. We track the outbreak of Mirai and find the botnet infected nearly 65,000 IoT devices in its first 20 hours before reaching a steady state population of 200,000- 300,000 infections.
-
web:westoahu.hawaii.edu
Practicing proper mitigation techniques and being proactive can help reduce device vulnerabilities, and prevent the creation of more bots and limit the resources botnet operators have. References [1] Cloudflare. (2017, December 14). Inside the Infamous Mirai IoT Botnet: A Retrospective.
-
web:www.cisecurity.org
The Mirai botnet soon spread to infect thousands of internet of things (IoT) devices and evolved to conduct full, large-scale attacks. After noticing an increase in infections, Mirai caught the attention of the nonprofit organization MalwareMustDie in August 2016, who then started to research, analyze, and track the botnet [2].
-
web:www.indusface.com
How to Mitigate the Mirai Botnet Along with addressing security weaknesses in your IoT devices and their usage, it's crucial to adopt best practices and technologies to safeguard your network against Mirai botnet attacks. Key recommendations include: Secure Device Credentials: Always change the default usernames and passwords on your IoT devices.
-
web:www.quorumcyber.com
Mirai initially infected and weaponised devices such as smart cameras and Realtek routers2. The botnet variant was created in a racketeering attempt by the cofounders of Protraf Solutions, an organisation offering DDoS mitigation services.
-
web:www.sciencedirect.com
In the specific context of Mirai botnet detection and mitigation , several approaches have been presented in the literature. Some works focus on studying the behavior of the Mirai botnet, examining and monitoring its propagation and impact within networked systems [85], [86], [87].
-
web:www.threatintelreport.com
YARA rule Mirai_Malware_IOCs_1 detects strings including "bruh why again", "mamakmukekkontol" and the listed domains and hashes. Mitigation Recommendations Upgrade n8n immediately to version 1.122.0 or later. Update Tenda AC1206 firmware or isolate devices from the internet. Block all listed IOCs at network perimeter and endpoint layers.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.