🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 ba14419beb2ec0bb94cab6298c14d7fb3e1d819366fe378290c0c2a4d97f7e07. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: ba14419beb2ec0bb94cab6298c14d7fb3e1d819366fe378290c0c2a4d97f7e07
SHA3-384 hash: baa2990ad9a30a104584cc4c3787138dd297c843abd80c403ee3ef024dfad25bb1b6b0972553d87b8f77f980df315a4d
SHA1 hash: 96ef81fd75ccc9aa332a197714103b301ac46d89
MD5 hash: 7149a104d8e4a1287c7c390ada9bde01
humanhash: skylark-lake-burger-utah
File name:tunnel.jsp
Download: download sample
File size:19'992 bytes
First seen:2026-09-29 00:26:49 UTC
Last seen:Never
File type:
MIME type:text/plain
ssdeep 384:jRESXLq8ubm2wNae7Z02fGD44+CWmUa5Wq6BVWz7wR7Rh:jRESpuQN8D446jA7gFh
TLSH T1DC925F9EC3494A5CC7EC6F8990E9298E57E0C11B3C2C159DABF765C3E576A0D3034AE8
Magika xml
Reporter smica83
Tags:jsp ShinyHunters UNC6240

Intelligence


File Origin
# of uploads :
1
# of downloads :
8
Origin country :
HU HU
Vendor Threat Intelligence
No detections
Verdict:
Malicious
File Type:
text
First seen:
2023-10-27T01:22:00Z UTC
Last seen:
2026-09-30T19:16:00Z UTC
Hits:
~1000
Gathering data
Threat name:
ByteCode-JAVA.Backdoor.WebShell
Status:
Malicious
First seen:
2024-09-10 09:46:13 UTC
File Type:
Text (Java)
AV detection:
16 of 36 (44.44%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments