MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 cf932ebbd2a2684dec9a823f2c223ef1666a18683dc342f45d71d99508624e88. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry

Intelligence File information 1 Yara Comments

SHA256 hash: cf932ebbd2a2684dec9a823f2c223ef1666a18683dc342f45d71d99508624e88
SHA3-384 hash: 8f58d2c82a6b721aac20df364e2c2540a92b848265f3a9158862951a88e2d3a34e5aefbfe13a46bbc6b099e9862dd380
SHA1 hash: 691662eb4675e7f31498c88e4debe423605ed014
MD5 hash: 38d265b93e68ca80abc7e766d3bea0bb
humanhash: nineteen-artist-don-social
Download: download sample
Signature n/a
File size:99 bytes
First seen:2020-04-13 05:53:50 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 3:GRF/cNMLWOFDOSaMFeiB49Sv:S/cNqDVvBd
TLSH 9AB0124E33315F0033028F1C36F14430E000C0C4515B024DD1FC541D519C53D312010D
Reporter @defconisov3r


Mail intelligence No data
# of uploads 1
# of downloads 1'797
Origin country US US
ClamAV No detection
CERT.PL MWDB Gathering data
ReversingLabs :Status:Malicious
Threat name:Script-Shell.Downloader.Generic
First seen:2020-04-13 17:48:25 UTC
AV detection:2 of 45 (4.44%)
Threat level:   2/5
VirusTotal:Virustotal results 3.39%

File information

The table below shows additional information about this malware sample such as delivery method and external references.

Delivery method