MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4815977c2577b66a15e6c056c9d426c9bc5dfa9289d646d8d89a6b1bcbd134c5. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 7


Intelligence 7 IOCs YARA File information Comments

SHA256 hash: 4815977c2577b66a15e6c056c9d426c9bc5dfa9289d646d8d89a6b1bcbd134c5
SHA3-384 hash: 5f9ed661b05f61a5aeeeb4eee3eed2b9fde2f6e8c05b2f44c88f61477f10408756743994a93f8d6b310400dd5d414f2b
SHA1 hash: 85abcd41a263d19d267c6dbc32fe65c34c82f10d
MD5 hash: 865137e62a85ba422a132935c654f81b
humanhash: east-nebraska-fix-tango
File name:ah
Download: download sample
File size:416 bytes
First seen:2025-02-26 19:48:53 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 12:/5949dJ3+Ky4gZesFrFBEGgbu+yfuT+JF8EpASLye:ha9X+IWrTBEGjTuyLpvR
TLSH T1CEE0ED1EC14C8BBFA816898E7EA839FD621E91581E8F1F45A9BC1D1A788992851C0022
Magika shell
Reporter abuse_ch
Tags:sh

Intelligence


File Origin
# of uploads :
1
# of downloads :
68
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Score:
99.9%
Tags:
phishing agent overt virus
Verdict:
Likely Malicious
Threat level:
  7.5/10
Confidence:
100%
Result
Verdict:
MALICIOUS
Threat name:
Script-Shell.Trojan.Geninst
Status:
Malicious
First seen:
2025-02-26 19:55:13 UTC
File Type:
Text (Shell)
AV detection:
13 of 24 (54.17%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

sh 4815977c2577b66a15e6c056c9d426c9bc5dfa9289d646d8d89a6b1bcbd134c5

(this sample)

Comments