MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 bb6f30027ef613b84650ee8dfb46d2e27a84d64ee4783ea0c54a06a88c559e90. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: bb6f30027ef613b84650ee8dfb46d2e27a84d64ee4783ea0c54a06a88c559e90
SHA3-384 hash: a98ae2482f14957d5f49249dae2fe01faed328926a7c2d029b1d07b30bfab205150447c3067aff681d7fbea9bfc6ca7a
SHA1 hash: 0c403b78086a81f79168d95e4929cd12b9bf0e0b
MD5 hash: f08e20ba0d320db7f9d9104ec47226c4
humanhash: sierra-wisconsin-indigo-winner
File name:a
Download: download sample
File size:875 bytes
First seen:2025-04-19 00:48:34 UTC
Last seen:2025-04-19 19:40:50 UTC
File type: sh
MIME type:text/x-shellscript
ssdeep 12:AGC9gfcy5QhyQhTxfQhRmKkOy52T+tx74lw4MzJhFZ3p4cVjDUZ9D0:AGWLy5QhyQh9QhNkO8xGGhzbXUY
TLSH T12F11C0412901195542EEC4AD17CF200E758694AF76087F1063FF3A6A2B52895B3E82DF
Magika shell
Reporter abuse_ch
Tags:sh

Intelligence


File Origin
# of uploads :
2
# of downloads :
107
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
busybox
Threat name:
Linux.Downloader.Generic
Status:
Suspicious
First seen:
2025-04-19 00:49:26 UTC
File Type:
Text (Shell)
AV detection:
5 of 24 (20.83%)
Threat level:
  3/5
Result
Malware family:
n/a
Score:
  7/10
Tags:
defense_evasion discovery linux
Behaviour
Reads runtime system information
File and Directory Permissions Modification
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

sh bb6f30027ef613b84650ee8dfb46d2e27a84d64ee4783ea0c54a06a88c559e90

(this sample)

  
Delivery method
Distributed via web download

Comments