MALICIOUS — d96ab58f07cd94c3381f9be5e45c9a9f7ce8b8cf8b28aa3d35e45b650e8565fd.bin
Verdict: malicious (71/100) · Family: AgentTesla
File type: script · SHA-256: d96ab58f07cd94c3381f9be5e45c9a9f7ce8b8cf8b28aa3d35e45b650e8565fd
Source: MalShare · first seen 2026-07-30T16:14:45.756Z · SHA-256 verified
MITRE ATT&CK
YARA
Dynamic analysis (linux)
860 behavior events · 0 ATT&CK techniques · 1 dropped files.
Runtime network
- _dosvc._tcp.local
- desktop-hsgcbep._dosvc._tcp.local
- desktop-hsgcbep(1)._dosvc._tcp.local
- desktop-hsgcbep(2)._dosvc._tcp.local
- ntp.ubuntu.com
- desktop-hsgcbep(3)._dosvc._tcp.local
- desktop-hsgcbep(4)._dosvc._tcp.local
- desktop-hsgcbep(5)._dosvc._tcp.local
- 10.240.0.1
- 224.0.0.251
- ff02::fb
- 203.26.79.13
- 185.125.190.56
- ff02::16
- 72.145.35.96
- 51.116.246.106
- 255.255.255.255
- ff02::1:ff12:3456
- 20.165.94.46
- ff02::2
Analyzed on MalwareAnalyzer by Cyble · Open interactive report