MALICIOUS — 42daf9a89197d5e4e4e7781ec492877b699b8207ee1f92cd86506bd08224df4c.sh

MALICIOUS — 42daf9a89197d5e4e4e7781ec492877b699b8207ee1f92cd86506bd08224df4c.sh is a shell sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (98/100), attributed to the WebShell family. 3 of 51 detection engines flagged it, exhibiting 2 ATT&CK techniques.

Identification

Source: MalwareBazaar · first seen 2026-07-26T00:00:00.000Z · SHA-256 verified

Detections (3 of 51 engines)

MITRE ATT&CK

Why this verdict

The malicious score of 98/100 is the fusion of 11 weighted signals:

Dynamic analysis (linux)

931 behavior events · 0 ATT&CK techniques · 1 dropped files.

Runtime network

Dropped files

Embedded domains

Embedded IP addresses

More WebShell samples · Latest analyzed threats · ATT&CK coverage

Analyzed on MalwareAnalyzer by Cyble · Open interactive report