MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 6dc44a4ce4af3be8fc438b10a4efa979c2481d41947c6306e4f7873206744d57. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 6dc44a4ce4af3be8fc438b10a4efa979c2481d41947c6306e4f7873206744d57
SHA3-384 hash: f2f2fa148905d68ba9202fff007ba911e70ba0e5090848a07f3a13696f04c7a818b5595d01e61ca1cfd607d12a3d130e
SHA1 hash: e2a892b922b3055d75c4ab0b7e7952d7d7b27a71
MD5 hash: abbbeab63844ea9c4aa34e6dc8b69aef
humanhash: earth-salami-hawaii-solar
File name:bizy.mipss
Download: download sample
File size:1'194'811 bytes
First seen:2025-12-23 13:59:34 UTC
Last seen:Never
File type: elf
MIME type:application/x-executable
ssdeep 24576:RzOnel5KDZdILKFKxcKJ1ayxqFz3bhAGc0iYdUTdH9NydY46jxhny0:R9XKNdI+FKTxqd3bhg0iYIddNydYk0
TLSH T1BB45332B2522DA3A9BDC54E2A7DCD27E1065FF8B884CDBA521A0C041FB5722D610D7DF
Magika elf
Reporter abuse_ch
Tags:elf

Intelligence


File Origin
# of uploads :
1
# of downloads :
71
Origin country :
DE DE
Vendor Threat Intelligence
No detections
Verdict:
Unknown
File Type:
elf.32.be
First seen:
2025-12-23T14:20:00Z UTC
Last seen:
2025-12-23T14:46:00Z UTC
Hits:
~10
Status:
terminated
Behavior Graph:
%3 guuid=253e967a-1900-0000-f9cf-91b6a10b0000 pid=2977 /usr/bin/sudo guuid=041a157d-1900-0000-f9cf-91b6a90b0000 pid=2985 /tmp/sample.bin guuid=253e967a-1900-0000-f9cf-91b6a10b0000 pid=2977->guuid=041a157d-1900-0000-f9cf-91b6a90b0000 pid=2985 execve
Result
Threat name:
n/a
Detection:
clean
Classification:
n/a
Score:
2 / 100
Behaviour
Behavior Graph:
n/a
Threat name:
Linux.Trojan.Generic
Status:
Suspicious
First seen:
2025-12-23 14:00:37 UTC
File Type:
ELF32 Big (Exe)
AV detection:
3 of 24 (12.50%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  5/10
Tags:
discovery upx
Behaviour
System Network Configuration Discovery
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

elf 6dc44a4ce4af3be8fc438b10a4efa979c2481d41947c6306e4f7873206744d57

(this sample)

  
Delivery method
Distributed via web download

Comments