cd3b606d31c9d3c2ee972916f8de9a403caf00f00698fd6b9acece6ff30647c6.py

Classification: Malicious

cd3b606d31c9d3c2ee972916f8de9a403caf00f00698fd6b9acece6ff30647c6.py is a malicious file sample. Linked to Invisibleferret malware.

Detection summary

  • 0 antivirus detections
  • 3 IDS alerts
  • 0 processes observed
  • 5 contacted hosts
  • 3 DNS requests

MITRE ATT&CK associations

Malware families: INVISIBLEFERRET (S1245)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2026-07-17 07:45:03 2026-07-17 07:45:03 malicious-activity
InvisibleFerret ThreatFox Abuse.ch 2026-07-15 22:51:15 2026-07-15 23:25:04 S1245 InvisibleFerret

Tags

py.invisibleferret trojan

Sample information

Filenames
cd3b606d31c9d3c2ee972916f8de9a403caf00f00698fd6b9acece6ff30647c6.py
File type
Python script, ASCII text executable, with very lo ...
MD5
0a8db6a56bd1dc37b25daadb4de7764d
SHA-1
eb92b8ffcdb4c1631c2cd20a766f93c8fd83b558
SHA-256
cd3b606d31c9d3c2ee972916f8de9a403caf00f00698fd6b9acece6ff30647c6
First indexed
2026-07-15 23:25:04
Last updated
2026-07-17 07:45:03

Network contacts

151.101.128.223 167.82.48.223 208.95.112.1 95.216.64.240 69.197.164.135

DNS requests

files.pythonhosted.org ip-api.com pypi.org