MALICIOUS — 78d5460db4f6d3b4ea29595b7f8077d3aa73922fe33ce3a4f18547e73c02d60e.sh
Verdict: malicious (98/100) · Family: Bash
File type: shell · SHA-256: 78d5460db4f6d3b4ea29595b7f8077d3aa73922fe33ce3a4f18547e73c02d60e
Source: MalwareBazaar · first seen 2026-07-26T00:00:00.000Z · SHA-256 verified
MITRE ATT&CK
- T1105
- T1059.004
YARA
Dynamic analysis (linux)
882 behavior events · 0 ATT&CK techniques · 1 dropped files.
Runtime network
- ntp.ubuntu.com
- entropy.ubuntu.com
- _dosvc._tcp.local
- 94.154.43.80/hiddenbin/boatnet.x86
- 185.125.189.53:443
- 94.154.43.80:80
- 185.125.189.53
- 10.240.0.1
- 94.154.43.80
- 40.84.97.4
- 224.0.0.251
- ff02::fb
- ff02::16
- 255.255.255.255
- 185.125.190.58
- 4.150.223.110
- 52.168.112.67
- ff02::2
- ff02::1
- 135.234.160.245
Analyzed on MalwareAnalyzer by Cyble · Open interactive report