MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 abcbf44e7547866b6f2fddd6dca1ac7bc32367c8d9e4f84106944fb48435d671. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Threat unknown
Vendor detections: 7
| SHA256 hash: | abcbf44e7547866b6f2fddd6dca1ac7bc32367c8d9e4f84106944fb48435d671 |
|---|---|
| SHA3-384 hash: | a5a1e7cc2e386f9c0f29bcf7aa743c42b783f99a74a65b5f14c4216c4e4cf6e8c177a1f53b99b6c5cf57a64b5398bd5d |
| SHA1 hash: | e2d4f8a2bde7a5d1681ab1575a19222f69ca8328 |
| MD5 hash: | d299253a39c00d421a3ecb42655ec59b |
| humanhash: | angel-triple-snake-magazine |
| File name: | massload |
| Download: | download sample |
| File size: | 1'324 bytes |
| First seen: | 2025-10-18 22:02:01 UTC |
| Last seen: | Never |
| File type: | sh |
| MIME type: | text/x-shellscript |
| ssdeep | 24:6rM6WBCQhBh9Mk8Qoe6CZKCyk/TU5k/qzoz4k/GN3k/d0k/Ek/H:A/GzhL8Qoe6CZKCyk/TU5k/2k/Ok/Skh |
| TLSH | T1E121D6CF41C0126568C0BE84B1E3881DB8A8B6C63CD01EDDEB6D25A13758B94B41EF37 |
| Magika | shell |
| Reporter | |
| Tags: | sh |
Intelligence
File Origin
# of uploads :
1
# of downloads :
50
Origin country :
DEVendor Threat Intelligence
Detection(s):
Verdict:
Malicious
Threat level:
10/10
Confidence:
100%
Tags:
busybox evasive
Verdict:
Malicious
Labled as:
TrojanDownloader/Linux.Agent
Verdict:
Malicious
File Type:
unix shell
First seen:
2025-10-18T19:10:00Z UTC
Last seen:
2025-10-19T10:15:00Z UTC
Hits:
~10
Detections:
HEUR:Trojan-Downloader.Shell.Agent.p HEUR:Trojan-Downloader.Shell.Agent.a
Status:
terminated
Behavior Graph:
Score:
98%
Verdict:
Malware
File Type:
SCRIPT
Verdict:
Malicious
Threat:
Trojan-Downloader.Shell.Agent
Gathering data
Detection(s):
Suspicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Legit
Score:
0.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Web download
sh abcbf44e7547866b6f2fddd6dca1ac7bc32367c8d9e4f84106944fb48435d671
(this sample)
Delivery method
Distributed via web download
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.