× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: fd031a45749a68c7f0b7631c40cb952580fe15645097dd4e8758938fec8e95ab
File name: mal
Detection ratio: 18 / 60
Analysis date: 2018-06-04 07:46:02 UTC ( 10 months, 3 weeks ago ) View latest
Antivirus Result Update
Antiy-AVL Trojan[Backdoor]/Linux.Mirai.b 20180604
Avast ELF:Mirai-HU [Trj] 20180604
Avast-Mobile ELF:Mirai-ID [Trj] 20180603
AVG ELF:Mirai-HU [Trj] 20180604
DrWeb Linux.Mirai.793 20180604
ESET-NOD32 a variant of Linux/Mirai.AT 20180604
Fortinet ELF/Mirai.AT!tr 20180604
GData Linux.Trojan.Mirai.J 20180604
Ikarus Trojan.Linux.Mirai 20180603
Jiangmin Backdoor.Linux.arpg 20180604
Kaspersky HEUR:Backdoor.Linux.Mirai.ba 20180604
MAX malware (ai score=95) 20180604
Qihoo-360 Win32/Backdoor.805 20180604
Symantec Trojan.Gen.2 20180604
Tencent Trojan.Linux.Mirai.bd 20180604
TrendMicro Possible_MIRAI.SMLBO2 20180604
TrendMicro-HouseCall Possible_MIRAI.SMLBO2 20180604
ZoneAlarm by Check Point HEUR:Backdoor.Linux.Mirai.ba 20180604
Ad-Aware 20180604
AegisLab 20180604
AhnLab-V3 20180603
Alibaba 20180604
ALYac 20180604
Arcabit 20180604
Avira (no cloud) 20180604
AVware 20180604
Babable 20180406
Baidu 20180604
BitDefender 20180604
Bkav 20180604
CAT-QuickHeal 20180603
ClamAV 20180603
CMC 20180604
Comodo 20180604
CrowdStrike Falcon (ML) 20180202
Cybereason None
Cylance 20180604
Cyren 20180604
eGambit 20180604
Emsisoft 20180604
Endgame 20180507
F-Prot 20180604
F-Secure 20180604
Sophos ML 20180601
K7AntiVirus 20180604
K7GW 20180604
Kingsoft 20180604
Malwarebytes 20180604
McAfee 20180604
McAfee-GW-Edition 20180604
Microsoft 20180604
eScan 20180604
NANO-Antivirus 20180604
nProtect 20180604
Palo Alto Networks (Known Signatures) 20180604
Panda 20180603
Rising 20180604
SentinelOne (Static ML) 20180225
Sophos AV 20180604
SUPERAntiSpyware 20180604
Symantec Mobile Insight 20180601
TheHacker 20180531
TotalDefense 20180604
Trustlook 20180604
VBA32 20180601
VIPRE 20180604
ViRobot 20180604
Webroot 20180604
Yandex 20180529
Zillya 20180601
Zoner 20180604
The file being studied is an ELF! More specifically, it is a EXEC (Executable file) ELF for Unix systems running on Intel 80386 machines.
ELF Header
Class ELF32
Data 2's complement, little endian
Header version 1 (current)
OS ABI UNIX - System V
ABI version 0
Object file type EXEC (Executable file)
Required architecture Intel 80386
Object file version 0x1
Program headers 3
Section headers 10
ELF sections
ELF Segments
.init
.text
.fini
.rodata
.ctors
.dtors
.data
.bss
Segment without sections
ExifTool file metadata
MIMEType
application/octet-stream

CPUByteOrder
Little endian

CPUArchitecture
32 bit

FileType
ELF executable

ObjectFileType
Executable file

CPUType
i386

File identification
MD5 3e7cfea43c48a8122f07ea32956128a1
SHA1 af7ee4c9e56af1827e2ae3e6627a0b7dafcd0ee2
SHA256 fd031a45749a68c7f0b7631c40cb952580fe15645097dd4e8758938fec8e95ab
ssdeep
1536:4LInPCqAAXJLE7cxtdo8NCqBNM7vk9YXPSP0Hoa:FCqxpE7cxtdo0Cqvsvk9sSMHz

File size 48.6 KB ( 49752 bytes )
File type ELF
Magic literal
ELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), statically linked, stripped

TrID ELF Executable and Linkable format (Linux) (50.1%)
ELF Executable and Linkable format (generic) (49.8%)
Tags
elf

VirusTotal metadata
First submission 2018-06-04 03:46:19 UTC ( 10 months, 3 weeks ago )
Last submission 2019-01-24 21:29:56 UTC ( 3 months ago )
File names 12
13
25
11
31
Josho.x86
26
118
119
mal
27
28
1
2
24
bb4bf1c19751b0bc8252c2b9642af152631b8be1
3e7cfea43c48a8122f07ea32956128a1
34
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!