MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 936834af0e0ff6e564fba179a1c4ed490d263654e8332269769cc861750d1b6b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 936834af0e0ff6e564fba179a1c4ed490d263654e8332269769cc861750d1b6b
SHA3-384 hash: 610f6c191a29582c45456851cd04d36bb0140fc15fe052fae53d359b04f8cfe192bd8929ac13d60d79cf55b6048fefd2
SHA1 hash: 517293d99c9e8b3afd14f41e0c8740a9fd97bf85
MD5 hash: 4526d2f95b1b405ae200cff8c28f6218
humanhash: king-massachusetts-tango-football
File name:chk.sh
Download: download sample
File size:4'674 bytes
First seen:2025-08-14 16:54:26 UTC
Last seen:2025-08-14 23:04:46 UTC
File type: sh
MIME type:text/x-shellscript
ssdeep 96:McWYY+7Ez9tjJs0QyLQduODzc0QVZME2XJXuJTcviAkER0x0yqV49tEE+2xMjvWL:TQDJ5LQoODIZWQ6viZYw+fTje
TLSH T176A1C52B7C942B32152E82E4B49B60C2A74E802B623C7C34FFE091913745965AAFF12D
Magika shell
Reporter abuse_ch
Tags:sh

Intelligence


File Origin
# of uploads :
2
# of downloads :
21
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
fingerprint
Result
Malware family:
n/a
Score:
  6/10
Tags:
antivm discovery execution linux
Behaviour
Software Deployment Tools
Enumerates kernel/hardware configuration
Reads runtime system information
System Network Configuration Discovery
Writes file to tmp directory
Checks CPU configuration
Looks up external IP address via web service
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

sh 936834af0e0ff6e564fba179a1c4ed490d263654e8332269769cc861750d1b6b

(this sample)

  
Delivery method
Distributed via web download

Comments