Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
2529f6eda28d54490119d2123d22da56783c704f
SHA1 ⚠ 5 PULSE HITS ⚡ CACHED
↓ CSV ↓ JSON
55
/100
HIGH
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
HIGH 55/100 confidence
Strong evidence of malicious activity across multiple sources. Prioritise investigation.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
20/30
5 pulses
VIRUSTOTAL
35/35
60/76 detected
ABUSEIPDB
/25
IPv4 only
URLHAUS
0/10
N/A
General Information
Hash2529f6eda28d54490119d2123d22da56783c704f
File TypeFileHash-SHA1
AlienVault OTX Analysis ↗ View on OTX
5
PULSE HITS
Pulse Hits 5
Indicator Type SHA1
Threat Level
Source ⚡ CACHED
ASSOCIATED PULSES
PULSE NAMEDATE
LoJax: First UEFI rootkit 2018-09-27
Lojack Becomes a Double-Agent 2018-05-01
Spyware | "skype.com" (Indicator: "skype.com"; File: "s.ashx") 2025-06-09
Rescure iocs 2023-12-06
Rescure iocs 2023-01-29
VirusTotal Analysis ↗ View on VirusTotal
60/76
DETECTIONS
MALICIOUS
Malicious 60
Suspicious 0
Harmless 0
Undetected 10
Reputation -55
File Name 060448ffd71fe2edbb5fe7c6298ad2b077e57fa6ed6d4250fbd799dd85488843.exe
File Type Win32 EXE
File Size 17.0 KB
TOP DETECTIONS
VENDORRESULT
ALYac Backdoor.DoubleAgent.A
APEX Malicious
AhnLab-V3 Trojan/Win32.Agent.C2487603
Alibaba Backdoor:Win32/Falojak.0f8f7089
Antiy-AVL Trojan[APT]/Win32.APT28
Arcabit Trojan.Lojack.Gen.1
Avira TR/AD.BDSRpcNet.vwvsu
BitDefender Trojan.Lojack.Gen.1
CAT-QuickHeal Trojan.Ghanarava.1733587606472710
CTX exe.trojan.doubleagent