MALICIOUS — 30a18c85fbf3beb4f8cd1940e9cc1dcd78f92f4e9e531f9f3cc615f67b53f582.sh

MALICIOUS — 30a18c85fbf3beb4f8cd1940e9cc1dcd78f92f4e9e531f9f3cc615f67b53f582.sh is a shell sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (96/100), attributed to the WebShell family. 3 of 51 detection engines flagged it, exhibiting 2 ATT&CK techniques.

Identification

Source: MalwareBazaar · first seen 2026-07-27T00:00:00.000Z · SHA-256 verified

Detections (3 of 51 engines)

MITRE ATT&CK

Why this verdict

The malicious score of 96/100 is the fusion of 9 weighted signals:

Dynamic analysis (linux)

893 behavior events · 0 ATT&CK techniques · 1 dropped files.

Runtime network

Dropped files

Embedded IP addresses

More WebShell samples · Latest analyzed threats · ATT&CK coverage

Analyzed on MalwareAnalyzer by Cyble · Open interactive report