Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
3d182e2ae839f069222276d5dff92e749b6c325e
SHA1 ⚠ 2 PULSE HITS
↓ CSV ↓ JSON
45
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 45/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
10/30
2 pulses
VIRUSTOTAL
35/35
38/76 detected
ABUSEIPDB
/25
IPv4 only
URLHAUS
0/10
N/A
General Information
Hash3d182e2ae839f069222276d5dff92e749b6c325e
File TypeFileHash-SHA1
AlienVault OTX Analysis ↗ View on OTX
2
PULSE HITS
Pulse Hits 2
Indicator Type SHA1
Threat Level
ASSOCIATED PULSES
PULSE NAMEDATE
Detailed Analysis of DarkGate; Investigating new top-trend backdoor malware 2024-01-18
Detailed Analysis of DarkGate; Investigating new top-trend backdoor malware (MaaS) 2024-02-17
VirusTotal Analysis ↗ View on VirusTotal
38/76
DETECTIONS
MALICIOUS
Malicious 38
Suspicious 0
Harmless 0
Undetected 23
Reputation 0
File Name vbe.tmp
File Type VBA
File Size 1791.7 KB
TOP DETECTIONS
VENDORRESULT
ALYac Trojan.Script.agent
AVG VBS:Dropper-KL [Trj]
AhnLab-V3 Malware/VBS.Generic.SC177860
Antiy-AVL Trojan/VBS.Drknit
Arcabit GT:VB.Heur2.Arakan.1.958ECA2C
Avast VBS:Dropper-KL [Trj]
BitDefender GT:VB.Heur2.Arakan.1.958ECA2C
CAT-QuickHeal VBS.Dropper.33398
CTX vba.trojan.drknit
ClamAV Win.Trojan.VBAgent-6647888-1