MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b4d089c70ccd2bf0ea3eb9fa19e9dd232b40893c43b3b308e30eb1c1786961fe. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: b4d089c70ccd2bf0ea3eb9fa19e9dd232b40893c43b3b308e30eb1c1786961fe
SHA3-384 hash: 715ae1d3d217fd81fa615a31be27ecad6efa40225f4fdb8d4f19f96e1fde9bffaead72bd82580b5a47db19e6ba9340cf
SHA1 hash: b751a2623bdee6dea7f8b96c81d6e302aed0aa95
MD5 hash: f07686cbbcb47f23f4eb15403a5f287a
humanhash: december-network-muppet-beer
File name:164.90.195.107_1777394131172487_vendor_phpunit_phpunit_src_Util_PHP_eval-stdin.php.bin
Download: download sample
File size:2'494 bytes
First seen:2026-04-28 16:35:55 UTC
Last seen:Never
File type:php php
MIME type:text/x-php
ssdeep 48:C+jnat9/xU1948pcm3jnFYOve4UuHCC9eEVQsMosBAd4H:CkatIUi3jnF7veaeWQszsm4H
TLSH T152512C98C7421632FF57183FFAA1205847C6AC03D764505D5EFB5CCD01A0956A67CF16
Magika php
Reporter Blackdome

Intelligence


File Origin
# of uploads :
1
# of downloads :
66
Origin country :
DE DE
Vendor Threat Intelligence
No detections
Threat name:
Text.Trojan.Generic
Status:
Suspicious
First seen:
2026-04-28 16:36:57 UTC
File Type:
Text (PHP)
AV detection:
3 of 24 (12.50%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments