DuckIntel / Security Tools
Free file hash analyzer. Compute MD5, SHA-1, SHA-256 hashes from files or text. Drag-and-drop file support. Links to VirusTotal and MalwareBazaar for threat lookup.
The Hash Analyzer computes MD5, SHA-1, and SHA-256 cryptographic hashes from files or text entirely in your browser. Files are hashed using the Web Crypto API (SubtleCrypto) and never leave your machine. Drag and drop any file — executables, documents, scripts, disk images — and get all three hashes instantly.
File hashes are the fingerprints of digital evidence. In malware analysis and incident response, a hash uniquely identifies a file regardless of its name or location. If a suspicious file on a compromised host has the same SHA-256 hash as a known malware sample in VirusTotal, that is conclusive evidence. If it does not match any known sample, that tells you something too — the attacker may have customized or recompiled it.
After computing the hash, the tool provides direct links to VirusTotal and MalwareBazaar so you can immediately check the hash against their databases of known malicious files. This one-click pivot is a standard part of the malware triage workflow for Tier 1 and Tier 2 SOC analysts.
Related tools
IOC Bulk ScannerAttachment Risk ScorerDuck DecoderOSINT Pivot
Part of DuckIntel.io — 59 free browser-based security tools for SOC analysts. No login. No tracking. 100% client-side.