MALICIOUS — 2bcb88f4c13902767dba8f908dbfce453d2ba230b1712585909fe2a945a8e438.sh
Verdict: malicious (73/100) · Family: GenericKD
File type: shell · SHA-256: 2bcb88f4c13902767dba8f908dbfce453d2ba230b1712585909fe2a945a8e438
Source: MalwareBazaar · first seen 2026-07-29T00:00:00.000Z · SHA-256 verified
MITRE ATT&CK
YARA
Dynamic analysis (linux)
869 behavior events · 0 ATT&CK techniques · 1 dropped files.
Runtime network
- _http._tcp.security.ubuntu.com
- _http._tcp.archive.ubuntu.com
- security.ubuntu.com
- archive.ubuntu.com
- _https._tcp.motd.ubuntu.com
- motd.ubuntu.com
- _https._tcp.esm.ubuntu.com
- esm.ubuntu.com
- 250.255.255.239.in-addr.arpa
- ntp.ubuntu.com
- security.ubuntu.com/ubuntu/dists/jammy-security/InRelease
- archive.ubuntu.com/ubuntu/dists/jammy/InRelease
- 172.172.255.218
- 4.247.188.233
- 34.253.181.30
- 91.189.91.83
- 8.8.8.8
- 172.215.188.232
- 224.0.0.251
- ff02::fb
Analyzed on MalwareAnalyzer by Cyble · Open interactive report