IOC LOOKUP
// SEARCH IP, DOMAIN, HASH, OR URL AGAINST OTX THREAT INTELLIGENCE
Indicator of Compromise Search
✦ IPv4 Address
✦ Domain
✦ MD5/SHA1/SHA256 Hash
✦ URL
INDICATOR
5a2f2b1ddd7c8a29dedfcdcfbdbc81e8
65
/100
HIGH
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
HIGH
65/100 confidence
Strong evidence of malicious activity across multiple sources. Prioritise investigation.
CLEAN
LOW
MED
HIGH
CRIT
0
25
50
75
100
OTX
20/30
3 pulses
VIRUSTOTAL
35/35
41/76 detected
ABUSEIPDB
—/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
| Hash | 5a2f2b1ddd7c8a29dedfcdcfbdbc81e8 |
| File Type | FileHash-MD5 |
AlienVault OTX Analysis
↗ View on OTX
3
PULSE HITS
| Pulse Hits | 3 |
| Indicator Type | MD5 |
| Threat Level |
ASSOCIATED PULSES
| PULSE NAME | DATE |
|---|---|
| 2024-12-01 | |
| 2024-10-10 | |
| 2024-11-04 |
VirusTotal Analysis
↗ View on VirusTotal
41/76
DETECTIONS
MALICIOUS
| Malicious | 41 |
| Suspicious | 0 |
| Harmless | 0 |
| Undetected | 24 |
| Reputation | -12 |
| File Name | 84003296.exe |
| File Type | ELF |
| File Size | 62.0 KB |
TOP DETECTIONS
| VENDOR | RESULT |
|---|---|
| ALYac | Gen:Variant.Trojan.Linux.Gafgyt.8 |
| AVG | ELF:CVE-2017-17215-A [Expl] |
| Antiy-AVL | Trojan[Backdoor]/Linux.Mirai.hj |
| Arcabit | Trojan.Trojan.Linux.Gafgyt.8 |
| Avast | ELF:CVE-2017-17215-A [Expl] |
| Avast-Mobile | ELF:Mirai-UM [Trj] |
| Avira | EXP/ELF.Mirai.Hua.c |
| BitDefender | Gen:Variant.Trojan.Linux.Gafgyt.8 |
| CAT-QuickHeal | cld.elf.trojan.1731348824 |
| CTX | elf.trojan.mirai |
URLhaus (abuse.ch)
↗ View on URLhaus
⚠ LISTED
URLHAUS
| URLs Found | 3 |
| First Seen | 2024-10-02 |
| File Type | elf |
ASSOCIATED URLs
| URL | STATUS / TYPE | DATE |
|---|---|---|
| http://178.215.224.173/tel.x86 | offline | — |
| http://45.88.88.43/tel.x86 | offline | — |
| http://45.88.88.43/x86 | offline | — |