Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
cb9da672613decdc800849a45f21c0b8
MD5 ⚠ 1 PULSE HITS
↓ CSV ↓ JSON
45
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 45/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
10/30
1 pulses
VIRUSTOTAL
35/35
29/76 detected
ABUSEIPDB
/25
IPv4 only
URLHAUS
0/10
NOT LISTED
General Information
Hashcb9da672613decdc800849a45f21c0b8
File TypeFileHash-MD5
AlienVault OTX Analysis ↗ View on OTX
1
PULSE HITS
Pulse Hits 1
Indicator Type MD5
Threat Level
ASSOCIATED PULSES
PULSE NAMEDATE
Nearly undetectable Qarallax RAT spreading via spam 2018-01-04
VirusTotal Analysis ↗ View on VirusTotal
29/76
DETECTIONS
MALICIOUS
Malicious 29
Suspicious 0
Harmless 0
Undetected 34
Reputation -163
File Name cb9da672613decdc800849a45f21c0b8.virus
File Type JAR
File Size 535.1 KB
TOP DETECTIONS
VENDORRESULT
AVG Java:Malware-gen [Trj]
Ad-Aware Java.Trojan.GenericGB.20261
Alibaba Trojan:JAVA/Adwind.c23c4f98
Avast Java:Malware-gen [Trj]
Avira EXP/JAVA.Agnet.F.Gen
Baidu Java.Trojan.Agent.a
BitDefender Java.Trojan.GenericGB.20261
Cynet Malicious (score: 99)
DrWeb Java.Jrat.45
ESET-NOD32 a variant of Generik.MLSINOH
URLhaus (abuse.ch) ↗ View on URLhaus
✓ NOT LISTED No malicious activity found in URLhaus database.