Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
b968d0da77e7ec00db63ebf5a33dc456bcae1868
SHA1 ⚠ 3 PULSE HITS ⚡ CACHED
↓ CSV ↓ JSON
55
/100
HIGH
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
HIGH 55/100 confidence
Strong evidence of malicious activity across multiple sources. Prioritise investigation.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
20/30
3 pulses
VIRUSTOTAL
35/35
32/76 detected
ABUSEIPDB
/25
IPv4 only
URLHAUS
0/10
N/A
General Information
Hashb968d0da77e7ec00db63ebf5a33dc456bcae1868
File TypeFileHash-SHA1
AlienVault OTX Analysis ↗ View on OTX
3
PULSE HITS
Pulse Hits 3
Indicator Type SHA1
Threat Level
Source ⚡ CACHED
ASSOCIATED PULSES
PULSE NAMEDATE
asp.net clone skocherhan 2026-04-12
aspnet_compiler 2026-04-11
ACTIVIDAD MALICIOSA | Relacionada con RemcosRAT 08-11-2025 2025-11-08
VirusTotal Analysis ↗ View on VirusTotal
32/76
DETECTIONS
MALICIOUS
Malicious 32
Suspicious 0
Harmless 0
Undetected 30
Reputation -12
File Name iieo9i34iiui4ieiu34djekri32iuer83rii4iudfgkfjfdruur9tdg4t4bgdg0vcvbwr4figd4dvvcw3.vbe
File Type VBA
File Size 2882.6 KB
TOP DETECTIONS
VENDORRESULT
ALYac GT:VB.AgentTesla.4.A43AA35C
AVG Script:SNH-gen [Trj]
AhnLab-V3 Downloader/VBS.Powershell
Arcabit GT:VB.AgentTesla.4.A43AA35C
Avast Script:SNH-gen [Trj]
BitDefender GT:VB.AgentTesla.4.A43AA35C
Bkav W32.MassiveVBS.TC.Worm
CTX vba.trojan.agenttesla
Cynet Malicious (score: 99)
DrWeb VBS.Starter.494