IOC LOOKUP
// SEARCH IP, DOMAIN, HASH, OR URL AGAINST OTX THREAT INTELLIGENCE
Indicator of Compromise Search
✦ IPv4 Address
✦ Domain
✦ MD5/SHA1/SHA256 Hash
✦ URL
INDICATOR
de3f49e68c45db2f31d1cc1d10ff09f8cfce302b92a1f5361c8f34c3d78544e5
55
/100
HIGH
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
HIGH
55/100 confidence
Strong evidence of malicious activity across multiple sources. Prioritise investigation.
CLEAN
LOW
MED
HIGH
CRIT
0
25
50
75
100
OTX
20/30
8 pulses
VIRUSTOTAL
35/35
40/79 detected
ABUSEIPDB
—/25
IPv4 only
URLHAUS
0/10
NOT LISTED
General Information
| Hash | de3f49e68c45db2f31d1cc1d10ff09f8cfce302b92a1f5361c8f34c3d78544e5 |
| File Type | FileHash-SHA256 |
AlienVault OTX Analysis
↗ View on OTX
8
PULSE HITS
| Pulse Hits | 8 |
| Indicator Type | SHA256 |
| Threat Level |
ASSOCIATED PULSES
| PULSE NAME | DATE |
|---|---|
| 2024-01-18 | |
| 2023-12-13 | |
| 2023-11-03 | |
| 2024-11-09 | |
| 2024-02-17 |
VirusTotal Analysis
↗ View on VirusTotal
40/79
DETECTIONS
MALICIOUS
| Malicious | 40 |
| Suspicious | 0 |
| Harmless | 0 |
| Undetected | 25 |
| Reputation | -2 |
| File Name | BXN1297KSH-OCT.msi |
| File Type | Windows Installer |
| File Size | 9288.0 KB |
TOP DETECTIONS
| VENDOR | RESULT |
|---|---|
| ALYac | Trojan.Agent.DarkGate |
| AVG | Win32:TrojanX-gen [Trj] |
| Antiy-AVL | Trojan[Spy]/Win32.Xegumumune |
| Arcabit | Trojan.Generic.D20D55B2 |
| Avast | Win32:TrojanX-gen [Trj] |
| Avira | TR/Spy.Xegumumune.ajxld |
| BitDefender | Trojan.Generic.34428338 |
| CAT-QuickHeal | OLE.Ransom.Darkgate.48306.GC |
| Cynet | Malicious (score: 99) |
| DrWeb | Trojan.Siggen21.51636 |
URLhaus (abuse.ch)
↗ View on URLhaus
✓ NOT LISTED
No malicious activity found in URLhaus database.