Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
a77becccca5571c00ebc9e516fd96ce8
MD5 ⚠ 10 PULSE HITS
↓ CSV ↓ JSON
75
/100
HIGH
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
HIGH 75/100 confidence
Strong evidence of malicious activity across multiple sources. Prioritise investigation.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
30/30
10 pulses
VIRUSTOTAL
35/35
38/76 detected
ABUSEIPDB
/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
Hasha77becccca5571c00ebc9e516fd96ce8
File TypeFileHash-SHA1
AlienVault OTX Analysis ↗ View on OTX
10
PULSE HITS
Pulse Hits 10
Indicator Type MD5
Threat Level
ASSOCIATED PULSES
PULSE NAMEDATE
A Social Engineering Tactic to Deploy Malware 2024-07-15
Warning Against Phishing Emails Prompting Execution of Commands via Paste 2024-06-06
Threatfox Recent Additions 2024-11-09
Malicious Object (IP / Hash / URL) 2024-06-28
Weekly OSINT Highlights, 15 July 2024 2024-07-15
VirusTotal Analysis ↗ View on VirusTotal
38/76
DETECTIONS
MALICIOUS
Malicious 38
Suspicious 0
Harmless 0
Undetected 24
Reputation -10
File Name ok.hta
File Type VBA
File Size 2.3 KB
TOP DETECTIONS
VENDORRESULT
ALYac Trojan.Downloader.Script.gen
AVG Script:SNH-gen [Drp]
AhnLab-V3 Downloader/HTA.DarkGate.SC199621
Antiy-AVL Trojan/VBS.DarkGate
Arcabit Trojan.Generic.D243E7C8
Avast Script:SNH-gen [Drp]
Avira VBS/Dldr.Agent.5c2042
BitDefender Trojan.Generic.38004680
CAT-QuickHeal PS.DARKGATE.48751
CTX txt.trojan.darkgate
URLhaus (abuse.ch) ↗ View on URLhaus
⚠ LISTED
URLHAUS
URLs Found 1
First Seen 2024-05-16
Malware DarkGate
File Type hta
ASSOCIATED URLs
URL STATUS / TYPE DATE
https://www.rockcreekdds.com/wp-content/1.hta offline