newinit.sh

Classification: Malicious

newinit.sh is a malicious file sample. Linked to Kinsing malware. Reported by 2 threat sources, last seen 2026-06-04. Detected by 33 antivirus engines.

Detection summary

  • 33 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: KINSING (S0599)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Xmrig_linux Triage 2026-06-04 07:14:14 2026-06-04 07:14:14 malicious-activity
Kinsing MalwareBazaar Abuse.ch 2026-06-04 07:12:00 2026-06-04 07:12:00 malicious-activity S0599 Kinsing

Tags

xmrig_linux antivm defense_evasion discovery execution linux miner persistence privilege_escalation rootkit

Sample information

Filenames
newinit.sh, _8abd78ff9af10b15c13d81069748286528939e62fe125d64ddb113d3c2561606.sh
MD5
7b880fbc13863e984e110f3eb5879221
SHA-1
c7f71666822bae98936d64b151f1accbad532f58
SHA-256
8abd78ff9af10b15c13d81069748286528939e62fe125d64ddb113d3c2561606
First indexed
2026-06-04 07:12:00
Last updated
2026-07-07 01:39:31

Antivirus detections

EngineDetection
ALYacApplication.Linux.Miner.77
AVGBV:Agent-BRO [Trj]
AhnLab-V3CoinMiner/Shell.Generic.S2077
ArcabitApplication.Linux.Miner.77
AvastBV:Agent-BRO [Trj]
AviraTR/BAT.Agent.BRO
BitDefenderApplication.Linux.Miner.77
CAT-QuickHealShellScript.Miner.44639
CTXshell.trojan.bash
ClamAVUnix.Downloader.Rocke-6826000-0
CynetMalicious (score: 99)
ESET-NOD32Linux/CoinMiner.UD trojan
EmsisoftApplication.Linux.Miner.77 (B)
F-SecureTrojan.TR/BAT.Agent.BRO
FortinetBASH/CoinMiner.UW!tr
GDataApplication.Linux.Miner.77
GoogleDetected
KasperskyHEUR:Trojan-Downloader.Shell.Miner.gen
LionicTrojan.Script.Shell.4!c
McAfeeDti!8ABD78FF9AF1
MicroWorld-eScanApplication.Linux.Miner.77
MicrosoftTrojan:Linux/CoinMiner.M!MTB
NANO-AntivirusRiskware.Script.Miner.ixvqme
RisingTrojan.[TeamTNT]YellowDye/BASH!9.732A7 (XSE:WFNFX0JBVDpovcOyvC/SdH2KOiGHGHiB)
SangforTrojan.Generic-Bash.Save.1b44d042
SkyhighArtemis!Trojan
SymantecTrojan.Gen.NPE
TencentWin32.Trojan.Shell.Tdkl
VIPREApplication.Linux.Miner.77
VaristUnix/Coinminer.O
XcitiumMalware@#296rrt2ex5q2s
alibabacloudMiner:Linux/CoinMiner.UF
huorongTrojan/Linux.CoinMiner.dn