MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 257009eadc06eab6add3a72ee9b5f0dfcfda01a7336c7a4828fd79e9df25efc9. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 257009eadc06eab6add3a72ee9b5f0dfcfda01a7336c7a4828fd79e9df25efc9
SHA3-384 hash: de4af71997e948979cd9c8078d36124d58fd6f1a63eedae60bf52e31a897e4110d16c9220c82d277600f5cb6e8566bab
SHA1 hash: 34e0e0a15d208931b104e3d32ee34849da2ef4ed
MD5 hash: 89a522ffb162378f8d541ba0a019b9ba
humanhash: december-mars-thirteen-network
File name:a
Download: download sample
File size:910 bytes
First seen:2025-04-10 14:08:05 UTC
Last seen:Never
File type: sh
MIME type:text/x-shellscript
ssdeep 12:A5C9hNQfFg4hIPhmaf5hbyLmK+J3vySA2ojt+74/4MEv6xZRsp4cl/lUZ9EY:A5Wb0g4hIPhmaBhbyjWKSM+DyfcdUMY
TLSH T12D1190061901552541B9C05D17CB500DFA82849F7A646F10B7FF39592B75D87F2E82AE
Magika shell
Reporter abuse_ch
Tags:sh

Intelligence


File Origin
# of uploads :
1
# of downloads :
83
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
busybox
Threat name:
Win32.Trojan.Vigorf
Status:
Malicious
First seen:
2025-04-10 14:09:09 UTC
File Type:
Text (Shell)
AV detection:
8 of 24 (33.33%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
linux
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

sh 257009eadc06eab6add3a72ee9b5f0dfcfda01a7336c7a4828fd79e9df25efc9

(this sample)

  
Delivery method
Distributed via web download

Comments