MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 10c3b6b03a9bf105d264a8e7f30dcab0a6c59a414529b0af0a6bd9f1d2984459. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 10c3b6b03a9bf105d264a8e7f30dcab0a6c59a414529b0af0a6bd9f1d2984459
SHA3-384 hash: a706861503fe8f8c849799c520050ae8037b1db162628c3367aae84013858b865524a8cc3c78a4464716cb0f3c1b8cf2
SHA1 hash: e603944aceb5c0885a8627de12f36b159bbf2f05
MD5 hash: d0d36f169f1458806053aae482af5010
humanhash: magnesium-louisiana-snake-california
File name:10c3b6b03a9bf105d264a8e7f30dcab0a6c59a414529b0af0a6bd9f1d2984459
Download: download sample
File size:3'685 bytes
First seen:2023-02-04 16:56:23 UTC
Last seen:Never
File type: sh
MIME type:text/x-shellscript
ssdeep 96:BsBwsYLuB+o6Kq/1IFozRu92EFqGaX1u0:aBwnLuB+oad1g92wqG/0
TLSH T15E71CFC7F141EDB45C8C94B6AFA6BC5CE44A61481C097B04B64FB129F7CCB8B369A11E
Reporter petikvx
Tags:ESXi Ransomware sh

Intelligence


File Origin
# of uploads :
1
# of downloads :
507
Origin country :
FR FR
Vendor Threat Intelligence
Result
Verdict:
UNKNOWN
Threat name:
Win32.Ransomware.EsxiArgs
Status:
Malicious
First seen:
2023-02-04 16:16:57 UTC
File Type:
Text (Shell)
AV detection:
13 of 26 (50.00%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  9/10
Tags:
linux
Behaviour
Reads runtime system information
Writes file to tmp directory
Reads CPU attributes
Writes file to system bin folder
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments