MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4d9bec5daf011b0bc7b39dae9d6c69ef8f697e0330885fd26f739cdd8d13e1ed. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 4d9bec5daf011b0bc7b39dae9d6c69ef8f697e0330885fd26f739cdd8d13e1ed
SHA3-384 hash: 5f44c2cd9deb5ac462b23c871c6c992489a0bd79879c7db62f4f2940c2d66e6eb522ae83b9bd5d79cdd868356b60a893
SHA1 hash: cacfce8432106545657c94b564d50afdea227ab5
MD5 hash: fc56b3d26a4155e8dca226723d66cde3
humanhash: tango-december-pennsylvania-south
File name:r.sh
Download: download sample
File size:2'098 bytes
First seen:2024-10-20 21:45:50 UTC
Last seen:Never
File type: sh
MIME type:text/plain
ssdeep 24:2YHmob/gF1nCNXXvQ88vhXMmDZL69YN6R2Y2iC+2v245aX0gJdRdFdidpcmOS9Cn:Hxx4dO9YxDhOR
TLSH T1C34170C461E00D73849E551F3D29AE98BC99ACB71A2B8B4C2C7C55B99DCCCA5B0E3358
Magika txt
Reporter abuse_ch
Tags:sh

Intelligence


File Origin
# of uploads :
1
# of downloads :
98
Origin country :
DE DE
Vendor Threat Intelligence
Result
Verdict:
UNKNOWN
Threat name:
Win32.Trojan.Generic
Status:
Suspicious
First seen:
2024-10-20 21:46:04 UTC
File Type:
Text
AV detection:
7 of 24 (29.17%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
discovery
Behaviour
Modifies registry class
Suspicious behavior: GetForegroundWindowSpam
Suspicious use of SetWindowsHookEx
Suspicious use of WriteProcessMemory
Enumerates physical storage devices
System Location Discovery: System Language Discovery
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

sh 4d9bec5daf011b0bc7b39dae9d6c69ef8f697e0330885fd26f739cdd8d13e1ed

(this sample)

  
Delivery method
Distributed via web download

Comments