MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 27257652132fa1deb30d9223d8b8e793fb467da4ac07a04b85c6c960b8d68daf. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 27257652132fa1deb30d9223d8b8e793fb467da4ac07a04b85c6c960b8d68daf
SHA3-384 hash: 2cfef970ac7ab92d3761e4f91d445d7503af91b7c50b004e09827251119ba295d6a379166635a3a8eacb1b8dfc0d20f0
SHA1 hash: 86c9557eba2d4fda53f3bebd798fdb00d6a4da83
MD5 hash: cb8a111e974edaf744e651f75f1dd8ad
humanhash: ink-bulldog-ceiling-oranges
File name:hmac.x86_64.o
Download: download sample
File size:4'456 bytes
First seen:2026-02-01 20:44:18 UTC
Last seen:Never
File type: elf
MIME type:application/x-object
ssdeep 96:bMmEKOxQ2aerH8QyQiNFrUoUuGcR0DQa1IURKSXLU4P9eC4:bRjr3tGmobR5LU4P934
TLSH T1639143339A50D109C597CA73A7E723ABBA2CBEB01520434FB758764DA933AF49F94141
telfhash t1efa0028c0102d74d15b45d20170c7f718484445791054185ba455f5806d53b13539d5c
Magika elf
Reporter abuse_ch
Tags:elf

Intelligence


File Origin
# of uploads :
1
# of downloads :
36
Origin country :
DE DE
Vendor Threat Intelligence
Gathering data
Verdict:
Unknown
Threat level:
  2.5/10
Confidence:
100%
Tags:
base64 masquerade
Status:
terminated
Behavior Graph:
%3 guuid=190fc1d1-1600-0000-9e8d-1bf47d0c0000 pid=3197 /usr/bin/sudo guuid=d5cc2ad4-1600-0000-9e8d-1bf47e0c0000 pid=3198 /tmp/sample.bin guuid=190fc1d1-1600-0000-9e8d-1bf47d0c0000 pid=3197->guuid=d5cc2ad4-1600-0000-9e8d-1bf47e0c0000 pid=3198 execve
Result
Threat name:
n/a
Detection:
clean
Classification:
n/a
Score:
0 / 100
Behaviour
Behavior Graph:
n/a
Threat name:
Linux.Trojan.Generic
Status:
Suspicious
First seen:
2026-02-01 20:46:03 UTC
File Type:
ELF64 Little (Relocatable)
AV detection:
3 of 37 (8.11%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
linux
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

elf 27257652132fa1deb30d9223d8b8e793fb467da4ac07a04b85c6c960b8d68daf

(this sample)

  
Delivery method
Distributed via web download

Comments