Gridinsoft Logo

The ohshit.sh File Analysis

Technical Analysis

File Name ohshit.sh
File Type
Shell script
Magic Bytes Bourne-Again shell script, ASCII text executable
SSDEEP Hash
48:vn7q7N7hnJ6GnghzPn5KWn7oUn777o7Unfw3bn69Rn/cgn2pVnhSOn9+CnAfTn4K:vn7q7N7hnJ6GnghzPn5KWn7oUn777o7i
Scanner Version 1.0.228.174
Database Version 2025-11-08 21:00:24 UTC

Suspicious File Detected

Detected by 39 security engines - requires caution

This file requires additional checking for potential threats. Based on suspicious indicators, we will soon add it to our virus database.
63%
Detection Rate
2,940
File Size (bytes)
39/62
Engines Detected
2025-11-08
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
70054e7ea584c889759b2256cad05966
SHA1
e0de58f14ea8192ab1f4bc28e22890827f0d9df4
SHA256
7b137569d4481d484479fac6302fd1dfe64e42535f172a20b1e752c203ed99df
SHA512
2046e8880b6d77f301cec24d4750a6401c54f4820b45c18e0b51102674edd86d63b321430579ce737b7cd5523dba243d8d57eb4144601039ce88c79885c71c21

Security Engines with Detections (39 of 62)

Lionic
Trojan.Script.Medusa.a!c Malicious
MicroWorld-eScan
Generic.Linux.Medusa.C.592EC223 Malicious
CTX
shell.downloader.shell Malicious
CAT-QuickHeal
Trojan.Shell.Downloader.39008 Malicious
Skyhigh
Linux/Downloader.k Malicious
ALYac
Generic.Linux.Medusa.C.592EC223 Malicious
Sangfor
Virus.Generic-Script.Save.ba1 Malicious
K7GW
Trojan ( 004102a21 ) Malicious
Symantec
Downloader Malicious
ESET-NOD32
Linux/TrojanDownloader.SH.S Malicious
TrendMicro-HouseCall
ELF_MIRAILOD.SM Malicious
Avast
BV:Downloader-AAN [Drp] Malicious
Cynet
Malicious (score: 99) Malicious
Kaspersky
HEUR:Trojan-Downloader.Shell.Agent.p Malicious
BitDefender
Generic.Linux.Medusa.C.592EC223 Malicious
NANO-Antivirus
Trojan.Script.Downloader.fjajjs Malicious
Tencent
Unk.Win32.Script.404262 Malicious
Sophos
Mal/ShellDl-A Malicious
F-Secure
Malware.LINUX/Dldr.Agent.ZSE Malicious
DrWeb
Linux.DownLoader.664 Malicious
VIPRE
Generic.Linux.Medusa.C.592EC223 Malicious
TrendMicro
ELF_MIRAILOD.SM Malicious
Emsisoft
Generic.Linux.Medusa.C.592EC223 (B) Malicious
huorong
TrojanDownloader/Linux.Shell.a Malicious
GData
Generic.Linux.Medusa.C.592EC223 Malicious
Varist
SH/Mirai.A.gen!Camelot Malicious
Avira
LINUX/Dldr.Agent.ZSE Malicious
Xcitium
TrojWare.Script.TrojanDownloader.Agent.D@7qvmcx Malicious
Arcabit
Generic.Linux.Medusa.C.592EC223 Malicious
ZoneAlarm
Mal/ShellDl-A Malicious
Microsoft
TrojanDownloader:SH/SAgent.B!MTB Malicious
Google
Detected Malicious
AhnLab-V3
Shell/ElfDownloader.S1 Malicious
Rising
Downloader.Agent/BASH!1.DB4B (CLASSIC) Malicious
TrellixENS
Linux/Downloader.k Malicious
Ikarus
Win32.Outbreak Malicious
Fortinet
BASH/Dloader.P!tr Malicious
AVG
BV:Downloader-AAN [Drp] Malicious
alibabacloud
Trojan[downloader]:Linux/SAgent.B9OKG Malicious
23 engines reported no threats - Only engines with detections are shown above for clarity

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
39 antivirus engines detected potential threats. This could be a false positive, especially for system tools or packed software. Verify the file source and check if it's digitally signed by a trusted publisher.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Your Score for
/

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware