MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 c044d196147f01f97c485b0a25d32617a98436978b1e48bb139a019f0eae6116. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: c044d196147f01f97c485b0a25d32617a98436978b1e48bb139a019f0eae6116
SHA3-384 hash: 6f6847a11caf448c339ea02c50c31a61d7f146ae62f0dfb365b02a4a3569c0fec491a9c841d9fdd2b4d21daa0bd0ce48
SHA1 hash: d3d4a8088b58eeb0305c32d806d963b7f068fa87
MD5 hash: a21f30a714a393954b8ce98adeb95411
humanhash: friend-ohio-vegan-saturn
File name:linux.rar
Download: download sample
File size:342'704 bytes
First seen:2022-04-14 05:22:23 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 6144:stAXYtNMj7SdI8MQmpRnYXH0DJ0YRfsKs7hSUW/jcSBd8cS:siXYtUSdaQm8XUF0YxQ7/W/Rde
TLSH T1DA74226BFE13FA981FD15A8EFC7A829C1A0215391EE15BC95EC883635D4B0CC06B61B5
Reporter adm1n_usa32
Tags:hacktool linux rar ssh terminal


Avatar
adm1n_usa32
readme.md >

This Terminal was developed and made by [Riyzz]

Really simple and easy to use, Literally made this in my spare time for those [COM-SKIDS] who struggle to load bots and make a good list.

To run the ssh terminal || ./terminal

<--[Features]-->

- [List-Maker] | Auto List-Maker that makes a very nice and huge list and gets every single ip in the range and every range in the ASN with IPv6 filter to filter out unwanted IPv6 **YOU CAN PUT ANY ASN FOR ANY EXPLOIT OR LOADER YOU HAVE TO MAKE A LIST BTW NOT JUST FOR SSH, OTHER FEATURES IS THO**.

- [zmap|brute|load] | Auto SSH-Scanner that will auto load to your Net. Remeber SKIDS and SKIDLETS put your payload in the [payload.txt]

- [AUTO-INSTALLATION] | Auto-Installations for those who do not know who to install dependencies and packages, This will auto install them with the options of installing it either on CentOS or Ubuntu operating systems.

- [Credits] | This is to ensure people know who made it with the mark [FREE] stamped on it so people do not sell this and scam niggas as they are a typical broke retard thirsty for money, skids will be skids lol.

- [EXIT] | This feature is simply to exit out of the terminal **If you [ctrl c] there will be some running pids from this program running in the background so exit will kill all pids from this program and full exit & close the program.**

- [NOTE] | `Everything is compiled to ensure that skids and skidlets do not take my code and skid rip it, Only thing that is not compiled is the loader.py simply cause i just dont give a fuck about it no more. If the program does not run then install this | yum install gcc -y | yum install libcurl-devel -y | apt install gcc -y | apt install curl -y | chmod 777 *`

found being distributed via infected website

Intelligence


File Origin
# of uploads :
1
# of downloads :
297
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
MALICIOUS
Threat name:
Linux.Trojan.Phonzy
Status:
Malicious
First seen:
2022-03-07 11:56:24 UTC
File Type:
Binary (Archive)
Extracted files:
8
AV detection:
16 of 42 (38.10%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
linux
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

rar c044d196147f01f97c485b0a25d32617a98436978b1e48bb139a019f0eae6116

(this sample)

  
Delivery method
Distributed via web download

Comments