🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 1c2b09417c1a34bbbcb8366c2c184cf31353acda0180c92f99828554abf65823. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



DarkRadiation


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 1c2b09417c1a34bbbcb8366c2c184cf31353acda0180c92f99828554abf65823
SHA3-384 hash: f3f1eaabc5188b14ac7dc4511ceef03963982169674c4753560bc757f3c5609014eed70d64b70a6dc240462688c22f4d
SHA1 hash: 8afaeacd1e9cf91ad68f6444070a5024861b984d
MD5 hash: b018520ecac7ce6a3640a7a13d0549f0
humanhash: music-stream-fruit-vermont
File name:DarkRadiation
Download: download sample
Signature DarkRadiation
File size:19'941 bytes
First seen:2021-06-23 08:22:02 UTC
Last seen:Never
File type: sh
MIME type:text/x-shellscript
ssdeep 384:tnVp7wcw96cc666c06U6Ut04vo0Os6UP4vo0OB4vo0Oq6Th68:tVpcbMcRDcpJUt0vhUPvBvzTI8
TLSH 91923FB1C8E06B36358A481F7CB1FD58930572D6AEF24618F4EE69944FB9830E7118F8
Reporter JAMESWT_WT
Tags:DarkRadiation Ransomware sh

Intelligence


File Origin
# of uploads :
1
# of downloads :
333
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Linux.Ransomware.DarkRadiation
Status:
Malicious
First seen:
2021-05-29 05:32:20 UTC
File Type:
Text (Shell)
AV detection:
13 of 45 (28.89%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  9/10
Tags:
linux
Behaviour
Reads runtime system information
Writes file to tmp directory
Write file to user bin folder
Modifies hosts file
Writes DNS configuration
Deletes system logs
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments