MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 f7b18a288190b01c993f6fc9b4736a78d61a508bae87f361f48d090d42614caa. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: f7b18a288190b01c993f6fc9b4736a78d61a508bae87f361f48d090d42614caa
SHA3-384 hash: a8009e174683ef67f8ed5e3461cb468ca095f1b78a191443fa2ccf8ec186d941c3c9ed14d669962c59289869ed7cb2dc
SHA1 hash: 77f6d7408130fe5f61625cbdc56f12f261f97c08
MD5 hash: ef21207c87363d68de67eb07dc3ed27d
humanhash: happy-stream-paris-red
File name:964f5d5f02fce99e3eea78d544fd78b843e0e39cb6994e0c77b2255c773f4617.zip
Download: download sample
File size:785 bytes
First seen:2025-12-10 18:29:56 UTC
Last seen:2025-12-10 18:30:17 UTC
File type: zip
MIME type:application/zip
ssdeep 12:5j6wHSeQ1rjAYgmJLt/rE/EDxd8SPS2RkPgbQBICmp+ti+ni30NC+IKnEkHmdGTo:96BxjAYZHrlDTLL3gAjYjk+IlxdGU
TLSH T10C012086D23695E0CC3B3B7E454A129CD218038C1079CBE6871D367168CBC858FA1697
Magika zip
Reporter JAMESWT_WT
Tags:jmpbowl-space zip

Intelligence


File Origin
# of uploads :
2
# of downloads :
37
Origin country :
IT IT
File Archive Information

This file archive contains 1 file(s), sorted by their relevance:

File name:964f5d5f02fce99e3eea78d544fd78b843e0e39cb6994e0c77b2255c773f4617.sh
File size:1'344 bytes
SHA256 hash: 964f5d5f02fce99e3eea78d544fd78b843e0e39cb6994e0c77b2255c773f4617
MD5 hash: 16716d14235973f0fcd277d3768f4529
MIME type:text/x-shellscript
Vendor Threat Intelligence
Verdict:
Malicious
File Type:
zip
First seen:
2025-12-11T04:50:00Z UTC
Last seen:
2025-12-11T05:13:00Z UTC
Hits:
~10
Verdict:
inconclusive
YARA:
2 match(es)
Tags:
Zip Archive
Threat name:
MacOS.Infostealer.Generic
Status:
Suspicious
First seen:
2025-12-10 18:30:28 UTC
File Type:
Binary (Archive)
Extracted files:
1
AV detection:
6 of 24 (25.00%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
linux
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments