MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 e5e90cca883556911431493d1a8faf457836a4b56258a368bb59946f602b94c9. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: e5e90cca883556911431493d1a8faf457836a4b56258a368bb59946f602b94c9
SHA3-384 hash: 3ce2fc3d8754f46044aaa0ddfeb74fa813368ef92e127bc0c0cec35c5f9bd47dfcdbeedfe7febeaf077fa00c6a42a0a6
SHA1 hash: 2de0cd8d523540d90927121b76f7dbed170f9f68
MD5 hash: 56786e6a7415f859390a0f0376316194
humanhash: pizza-cup-pennsylvania-avocado
File name:a
Download: download sample
File size:875 bytes
First seen:2024-11-29 15:01:44 UTC
Last seen:2024-11-30 10:30:19 UTC
File type: sh
MIME type:text/x-shellscript
ssdeep 12:AGC9gfcy5QhyQhTxfQhRmKkOy52TWCjtx74lw4MzJhFZ3p4cVjDUZ9D0:AGWLy5QhyQh9QhNkO/xGGhzbXUY
TLSH T15811C0411900555542EDC4AD17CF200E758694AF7A047F10A3FF3A692B52C95B3E83DF
Magika shell
Reporter abuse_ch
Tags:sh

Intelligence


File Origin
# of uploads :
2
# of downloads :
73
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
busybox
Threat name:
Linux.Trojan.Multiverze
Status:
Malicious
First seen:
2024-11-29 15:02:04 UTC
File Type:
Text (Shell)
AV detection:
8 of 24 (33.33%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  7/10
Tags:
defense_evasion discovery linux
Behaviour
Reads runtime system information
File and Directory Permissions Modification
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

sh e5e90cca883556911431493d1a8faf457836a4b56258a368bb59946f602b94c9

(this sample)

  
Delivery method
Distributed via web download

Comments