s2
--:--:--UTC

Searching APEX

Starting…

  1. ○ Searching Threats, IOCs & Threat Intelligence locally
  2. ○ Querying external providers
  3. ○ Asking AI Forensic Validator
  4. ○ Creating new entry from validated hit

0s elapsed

MB-0df208f9dbd3be1eb968b7eb18ca44ad725589313e1ea046dd338a1454ddea31 high

📛 Threat Title

Unknown: AstraWare-v5-.jar.github-Course23sz

Category: Unknown Published: Source updated: First seen: Last updated: Source: Abuse.ch

Description

File type: zip. Size: 6305654 bytes. Reporter: GhostTypes. First seen: 2026-09-25 12:09:18.

Indicators of Compromise (3)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

hash_sha256 0df208f9dbd3be1eb968b7eb18ca44ad725589313e1ea046dd338a1454ddea31 VT 4 / 75

IOC database

Type
hash_sha256
Value
0df208f9dbd3be1eb968b7eb18ca44ad725589313e1ea046dd338a1454ddea31
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Unknown

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Flagged by 4 of 75 VirusTotal vendors

VendorVerdictDetection
ESET-NOD32 malicious Java/Agent.ADG trojan
Fortinet malicious Java/Agent.ADG!tr
Kaspersky malicious HEUR:Trojan.Java.Generic
Tencent malicious Java.Trojan.Generic.Cdhl

Details From VirusTotal

Basic Properties
MD5094dd0c8890662e6330126343c878d1e
SHA-18ea81f0dc75f1a5a6292df478b985a242a764fb3
SHA-2560df208f9dbd3be1eb968b7eb18ca44ad725589313e1ea046dd338a1454ddea31
VHash56125b0383588607d58569477c1c6fd5
SSDEEP98304:7Ka4aErHu75PCzQs3CxCaxiLZVL7fN8fnwUwmUKTYuVEXu+UjBM0z7ENlL:7KZvDC5WQ2Q67RYFwm+SqoNMa7alL
TLSHT1D2563332EF9D0124E527B33460554602BD2CA788F65EB49F2BB4145B7883EEF4B6639C
File typeJAR
File type tagjar
File extensionjar
MagicZip archive data, at least v2.0 to extract, compression method=deflate
File size6.0 MB
History
First seen on VirusTotal2026-09-25 14:38 UTC
Last submission2026-09-25 14:38 UTC
Last analysis2026-09-25 14:38 UTC
Last modified on VirusTotal2026-09-25 16:39 UTC
Known Names
  • xv95ewjbn.exe
  • AstraWare-v5-.jar.github-Course23sz.zip
hash_sha1 8ea81f0dc75f1a5a6292df478b985a242a764fb3 VT 4 / 75

IOC database

Type
hash_sha1
Value
8ea81f0dc75f1a5a6292df478b985a242a764fb3
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Flagged by 4 of 75 VirusTotal vendors

VendorVerdictDetection
ESET-NOD32 malicious Java/Agent.ADG trojan
Fortinet malicious Java/Agent.ADG!tr
Kaspersky malicious HEUR:Trojan.Java.Generic
Tencent malicious Java.Trojan.Generic.Cdhl

Details From VirusTotal

Basic Properties
MD5094dd0c8890662e6330126343c878d1e
SHA-18ea81f0dc75f1a5a6292df478b985a242a764fb3
SHA-2560df208f9dbd3be1eb968b7eb18ca44ad725589313e1ea046dd338a1454ddea31
VHash56125b0383588607d58569477c1c6fd5
SSDEEP98304:7Ka4aErHu75PCzQs3CxCaxiLZVL7fN8fnwUwmUKTYuVEXu+UjBM0z7ENlL:7KZvDC5WQ2Q67RYFwm+SqoNMa7alL
TLSHT1D2563332EF9D0124E527B33460554602BD2CA788F65EB49F2BB4145B7883EEF4B6639C
File typeJAR
File type tagjar
File extensionjar
MagicZip archive data, at least v2.0 to extract, compression method=deflate
File size6.0 MB
History
First seen on VirusTotal2026-09-25 14:38 UTC
Last submission2026-09-25 14:38 UTC
Last analysis2026-09-25 14:38 UTC
Last modified on VirusTotal2026-09-25 16:39 UTC
Known Names
  • xv95ewjbn.exe
  • AstraWare-v5-.jar.github-Course23sz.zip
hash_md5 094dd0c8890662e6330126343c878d1e VT: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/094dd0c8890662e6330126343c878d1e

IOC database

Type
hash_md5
Value
094dd0c8890662e6330126343c878d1e
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/094dd0c8890662e6330126343c878d1e

References (1)

Remediations (8)

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.