Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
5a2f2b1ddd7c8a29dedfcdcfbdbc81e8
MD5 ⚠ 3 PULSE HITS
↓ CSV ↓ JSON
65
/100
HIGH
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
HIGH 65/100 confidence
Strong evidence of malicious activity across multiple sources. Prioritise investigation.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
20/30
3 pulses
VIRUSTOTAL
35/35
41/76 detected
ABUSEIPDB
/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
Hash5a2f2b1ddd7c8a29dedfcdcfbdbc81e8
File TypeFileHash-MD5
AlienVault OTX Analysis ↗ View on OTX
3
PULSE HITS
Pulse Hits 3
Indicator Type MD5
Threat Level
ASSOCIATED PULSES
PULSE NAMEDATE
ACTIVIDAD MALICIOSA | Relacionada con Mirai 01-12-2024 2024-12-01
[GS-547] Mirai Botnet IOCs - SEC-1275-1 2024-10-10
ACTIVIDAD MALICIOSA | Relacionada con MIRAI 04-11-2024 2024-11-04
VirusTotal Analysis ↗ View on VirusTotal
41/76
DETECTIONS
MALICIOUS
Malicious 41
Suspicious 0
Harmless 0
Undetected 24
Reputation -12
File Name 84003296.exe
File Type ELF
File Size 62.0 KB
TOP DETECTIONS
VENDORRESULT
ALYac Gen:Variant.Trojan.Linux.Gafgyt.8
AVG ELF:CVE-2017-17215-A [Expl]
Antiy-AVL Trojan[Backdoor]/Linux.Mirai.hj
Arcabit Trojan.Trojan.Linux.Gafgyt.8
Avast ELF:CVE-2017-17215-A [Expl]
Avast-Mobile ELF:Mirai-UM [Trj]
Avira EXP/ELF.Mirai.Hua.c
BitDefender Gen:Variant.Trojan.Linux.Gafgyt.8
CAT-QuickHeal cld.elf.trojan.1731348824
CTX elf.trojan.mirai
URLhaus (abuse.ch) ↗ View on URLhaus
⚠ LISTED
URLHAUS
URLs Found 3
First Seen 2024-10-02
File Type elf
ASSOCIATED URLs
URL STATUS / TYPE DATE
http://178.215.224.173/tel.x86 offline
http://45.88.88.43/tel.x86 offline
http://45.88.88.43/x86 offline