################################################################ # ThreatFox IOCs: recent SHA256 hashes - CSV format # # Last updated: 2024-03-28 06:30:22 UTC # # # # Terms Of Use: https://threatfox.abuse.ch/faq/#tos # # For questions please contact threatfox [at] abuse.ch # ################################################################ # # "first_seen_utc","ioc_id","ioc_value","ioc_type","threat_type","fk_malware","malware_alias","malware_printable","last_seen_utc","confidence_level","reference","tags","anonymous","reporter" "2024-03-28 06:30:22", "1250234", "d9674f4ece2b65ed5f0c305e2d208d69381cbf56c47251a1af279c5d8e73c388", "sha256_hash", "payload", "win.nova", "Malicord", "Nova Stealer", "", "100", "", "gamerforyou.com,Malicord,Nova Stealer,www.gamerforyou.com", "0", "Xev" "2024-03-27 15:12:32", "1249914", "1ddead5d6964c8e382d3b2ea694774ff58486bcfb7996015561cc9a03c61b536", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:12:31", "1249917", "2df0ef78fe988af2fd1e46eb8332ff678e43b1ee52b29ef69098851b99883dd0", "sha256_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:12:30", "1249920", "3f756a83cc26f83550f25a526816879b5c086dcbe824612f0ae2f514853302a7", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:12:27", "1249923", "f1ac86388ffe376b99f91b580e0d31128f385954d790121561717ed6bbb6561b", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:12:26", "1249926", "3b0cab6b9a7d8e8693074f6354a2ddba688ba6b0b4ef01d04c08082fa54355a4", "sha256_hash", "payload", "win.coinminer", "None", "Coinminer", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:12:25", "1249929", "b9b4d87c84f6baf4e71845c26c43e70b7c1c6d06a94e4a87df17a7e8dcf5530a", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:12:24", "1249932", "0dbd99dde1de7165ccde4c0b87b7c533fb79fb3c99e59356a23f74f939d7a32d", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:12:22", "1249935", "0409163681798c7dc104320e5cc50a45826e1aac81b858fb426779745f322d3a", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:12:21", "1249938", "9120566b5096fc5643a1b64c2ef29fd034c245d52ec244cdf06b6e312e299acf", "sha256_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:12:18", "1249941", "778749a81db3f2e9653456c3b1241d4a2f17f1c16ebf18496c46eb31a9418836", "sha256_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:12:16", "1249944", "326cd3ed29e56d54e045a0bc9ba0a85fb6d39f6d01dcd553754295556827d3f6", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:12:15", "1249947", "d9626d89b255a1226c4abe2d59a56f9dd6e720a90461591e0434c0ed2ddd3e05", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:06:29", "1249950", "9c49bbe71a875101949fd0ddf980825c8ac09d566c9e55c2ac94caf8052f5e2e", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:06:28", "1249953", "ea81cdeba0b369e1e569612f98fd470a3727d5452c98d828010647c5ac9d0534", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:06:15", "1249956", "4f7824c1dee1a075898e66126a9f6678c41d77507e6510ca88a597ccc8a05b55", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:06:13", "1249959", "f6386e0d3724eb32912521c957a1108862892dcf473f5ab73cbbbaaf29955e9c", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:06:10", "1249962", "0e3829a03b5d78e96c929e089ef91ca74c2e3bf3bdc1b263c9409c0d35b5166a", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:06:09", "1249965", "4150a9254130775146e1973ba461ffacc7d51365da70db48becba50fbfc1e39d", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:06:08", "1249968", "24565cd1781c0378bf33859bddd21713cf1b624d2ab697921341ffb2c995e456", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 15:06:06", "1249971", "b85123da03ee5c76a1a98d7b8a5c56cc07efe444b9cbf9f2c1f8813fa324ce6a", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:52:16", "1249974", "d2a44cec8dbbd996cc4b5780f907f33fd4040c44519653503f4b17f3288149a6", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:52:14", "1249977", "b089fa2bc45c847783b8eb957d9d1023f707a96073f2657d6a838eaf5619949b", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:52:13", "1249980", "bf97d8ee1b61a6699e0a1ff3cda31252cfbd154804673d83dd68b1fee155f953", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:52:12", "1249983", "dcb8d73a60b84dc0f10048cd00f013fd81601e9b0a47ecf5df32ddc0cb117f06", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:51:09", "1249986", "301271b7db09d4769df8953807ea16c44578a4c4b92ef50f24da27c144f95522", "sha256_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:51:08", "1249989", "a1a3b72b78d6726532a64b61813ef174039c3f8b0efa987cfa635cfd807d5e03", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:51:06", "1249992", "31aeeb6ce979eed704ead00a328df97e2d26690a02e5a29a1d2070dff1ab27b6", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:51:05", "1249995", "1ed60fc77b07f949a7cc3ced2dd0e0de84ce806a5ebb71d7fc51f31323f2b928", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:50:15", "1249998", "ad5c519df39152112b96cbd80417dbdfeb0a90f98f23e49511e6b9d08981894a", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:50:14", "1250001", "15d2a43a0424b074f4e9f306f95bd04f9a3c33561b021364a8edaa78767c631c", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:50:12", "1250004", "411217082847be5939620211887564a0eb9bce1ba6f5cc20fc73423448270762", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:50:11", "1250007", "d1bdeb7bcad474dc621ccaf3e266c0fb31edea844d574f802f27090ac04574c6", "sha256_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:21", "1250010", "c2a6bcd8a0594ef65687fad97e30f52c0a6995efd5739c1a431376de5ad2857a", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:20", "1250013", "71e762ecac0d40f0f0dd22638eba76ad746059678409cd94aaaea8719aa42fc7", "sha256_hash", "payload", "win.zgrat", "None", "zgRAT", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:19", "1250016", "d47176bd3fb6a8779edf3fafc9682acec2cd6af96a826c900e3b713269a1a8a3", "sha256_hash", "payload", "win.salgorea", "BadCake", "Salgorea", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:18", "1250019", "2a82243697e2eec45bedc754adcdc1f6f41724a40c6d7d96fd41ad144899b6f7", "sha256_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:17", "1250022", "76bd7d4ab00c260d021b928207d2617b19784eedfe615c1352419512e62fb8cf", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:16", "1250025", "da6572812314662cf364e04dc4db580245e4598063fe952cb509575ca88392f6", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:14", "1250028", "378a5373cb0cdab87777f9864381aaeca5bb38f6bd97108feaeedef6f46ea512", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:12", "1250031", "1ad2e5df626723bca2bf7ac89733392b1a44849e1345e90f3cc6d3d034873bd4", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:11", "1250034", "c0411ae869eeeaf9bce9b7044dcaa2ed931100da22b133ae85ccad45f7499f54", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:10", "1250037", "6610e3f433a1a54fff1dcb16ca8d08137481d19cd706d1cd73e75030be8ff720", "sha256_hash", "payload", "win.vidar", "None", "Vidar", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:09", "1250040", "02bec171956fcf41f4314275a9209d49c29f91ffe9993718665bdd93f6be6429", "sha256_hash", "payload", "win.amadey", "None", "Amadey", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:08", "1250043", "75a3b244b2b04f3c91ef5ab41cd870e173ef65eeb12236b31c39a87b62d4d0b8", "sha256_hash", "payload", "win.troystealer", "None", "troystealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:48:07", "1250046", "4404db31fa92a0ed3c3f8578f3f1d3992428f84b5b5aba4572acd39d194e8a22", "sha256_hash", "payload", "win.amadey", "None", "Amadey", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:47:53", "1250049", "85bd3d8d2f06d586119584c8eef9071fcb0e42452082fb22b9960f220cc3b5a6", "sha256_hash", "payload", "win.troystealer", "None", "troystealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:47:52", "1250052", "d55fb8e7c9a17d0ce05c431075a332d234d90c3a1ccb79b21004d1477288f16f", "sha256_hash", "payload", "win.troystealer", "None", "troystealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:47:51", "1250055", "f78ea486369251e0879a5189503f607ba3168081171f6f7ee848b38009a24439", "sha256_hash", "payload", "win.vidar", "None", "Vidar", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:47:49", "1250058", "4ac227785c3f1cdd4b05a9d2ebb94e88a4af65303833c4dbfc35113dc21c97aa", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:47:08", "1250061", "9b6287ed088ca9a4d43602c95f045bafb0f17214412a749d27a5b2c126c8edb7", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:47:06", "1250064", "ed70aaa765d3f4e890b381829f6ab14eef928f6fc9bc6207f83dec6695525924", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:47:05", "1250067", "a39d4b589dc608fa2dfc06259a2d15b9a7edd2ed8d0a3adde6b71151db0a7102", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:47:04", "1250070", "2eab6a48a08726441514655a1d84a3921af8139cd2e7b61f23a30c11785f28f2", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:47:03", "1250073", "83b34f0f0a0bdbc115ce0d7e44687ce16c35249650c9d242a646a5ed804fa2f1", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:47:01", "1250076", "8e1168d2a5b92eecae7005aaff5ed4dde8c6cabc09924c3f14665c4242350ef8", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:58", "1250079", "66411161faca1e2387d246ef7d69d73cf2f848725546f6cfcc87bb4c4851bb9b", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:58", "1250082", "f1966d8c36df489b3dbf5b888a502de7799b3ff66213806e4dd3633ed8ee2b80", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:55", "1250085", "084dba2ac2f51213068fd8a732250724889cccec08be6ca621b5182808ee22f4", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:54", "1250088", "94095bca33da33ad83f7b8d55b150cc79f646625002aeb595524c7defe2707c7", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:53", "1250091", "af4c8dace0ca65db170c11477a3794af2ad3feb706bda810988a22ce72af5a68", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:52", "1250094", "3a130b306b03d9d0d402d9bd69f4234e4e5edf0e72f3c4a6bf534dddb51f4da4", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:51", "1250097", "ee625298393efdd13cafa66081354c251e9d690146614c18d2e9225400d54cd7", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:50", "1250100", "b30369cdc0a8cda16ba0703777a423f601885ce02ec151349892b56d0e769fe7", "sha256_hash", "payload", "win.vidar", "None", "Vidar", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:48", "1250103", "eb234ba5cceaf5c22e7d59c0d5d6cda995da1129188f47a1c44523ab94f3cb58", "sha256_hash", "payload", "win.vidar", "None", "Vidar", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:47", "1250106", "3236459655ba0fe656a0315ff00f61c1f8f853ae73347abf8bccc630a044774b", "sha256_hash", "payload", "win.vidar", "None", "Vidar", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:44", "1250109", "627e36dea92cbdd49fcee34c18a29884010a72b5b004c89df90c19a50303a2b3", "sha256_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:42", "1250112", "5b494f1ff90dc1d527b8c1b301bdccef380ee9b0bc771486975c1f0075ba9243", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:41", "1250115", "417fb1a8808fd3e3071f68990eb63fee002ed084182e58d8a4eccf9f1a44f75e", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:38", "1250118", "58fce91551ddbdd915ed2cc71a2d7f2a5f354ea137365cba589affb21bfb5301", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:37", "1250121", "1108253a530f8fb6f78c3d84c6dda7268fd1653b9f4c10a7ca718b561b47fc11", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:36", "1250127", "6dfc4709646cc0158d0d015dfe37525037f3ad53295ec67da54d6eac666a4b5e", "sha256_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:34", "1250131", "2c286e5121fd51b65f2909943887b32b69c916dada2c73320d0e11592c9751bc", "sha256_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:32", "1250134", "2222a80b782ef6c2fc2c6a78e63f812b21c7767a81f3afc7f2eb81aee9f433fb", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:31", "1250137", "d545f5b27e90abc54cf5a37c35e866c08336a500cecd95e8267c0c729a6b9bbc", "sha256_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:30", "1250140", "1ace793de2813811af2c0442c7f11efc323c4b356f996058e1ab8a88a778c83b", "sha256_hash", "payload", "win.luca_stealer", "None", "Luca Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:27", "1250124", "407e7e3d97f1f8d07808c2ba486e9da37e6c823cc3276f4dad51a820ae9707c7", "sha256_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:25", "1250143", "dadff5f7199fd06f151dc1808c6a3e3a45447d19eb4f5639e47fe2f24cfd3b84", "sha256_hash", "payload", "win.strelastealer", "None", "StrelaStealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:46:24", "1250146", "08bd459fea5b2cc457194064afba3d3347e43c1bdc4b7cb792ad91e87152d7b8", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:45:39", "1250149", "f17b902f094220be7501fbf02ca5e258de6458939b097f60705f8872fc3c73b7", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:45:38", "1250152", "143255a5ba28e866c50698c6ba81c7aa37cc517dd3499754136be7cea093afb2", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 14:45:37", "1250155", "056e7a95098e7305624a71ad3f8d31b9dac897064b3ca02bf349d121c02fb0e4", "sha256_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-03-27 12:27:16", "1249890", "4728b5eb6799fbe8850e03e7f7c73ceb7e530010b6179e157a016a6519cd1a31", "sha256_hash", "payload", "unknown", "None", "Unknown malware", "", "100", "", "EpsilonStealer,mariyel-therapy.com", "0", "Xev" "2024-03-27 07:40:44", "1249711", "208675a81b7ab8f99acdba1b59d5b134985003432e697bfbb98750a29c872413", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:43", "1249714", "bbd5434d44d406fa4b6b57a65248414e96a50b8000c2252552e2209fab06125d", "sha256_hash", "payload", "win.strelastealer", "None", "StrelaStealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:42", "1249717", "bbe03529b28557142c18ab676bbcf5c60d6609a641d09695096c61175688c064", "sha256_hash", "payload", "win.coinminer", "None", "Coinminer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:41", "1249720", "d3fe532dd98ebd8732a11a78ae670a6ebfba1702c1a36c26aa9aa22a799d8f02", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:40", "1249723", "67f529dd5840b8cfa3b8c08d4ff21f6767fda83343a508536ce7a9a643198f0f", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:39", "1249726", "867e991e42f4c6a92f4a160a5b0488b17f676fb6564bc7574b015aa368ae6fb5", "sha256_hash", "payload", "win.quasar_rat", "CinaRAT,QuasarRAT,Yggdrasil", "Quasar RAT", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:37", "1249729", "326a97291a3f81e3b1b9e96576add117922b946e04e119f22cdf08e2863f6d07", "sha256_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:36", "1249732", "5ad1b9c53c1d492d106be462c7c5bfb1293d12ccf430804add98a96d3a34adcc", "sha256_hash", "payload", "win.strelastealer", "None", "StrelaStealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:32", "1249708", "12fb27d7a59c168a82317baa0b127b8a826cc98dd108fc37fd022d8a842b06bc", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:31", "1249705", "fbed0af892e58c844c0d37e6c68e979b8dbb94b5d6a95876a7cd38e0f0172478", "sha256_hash", "payload", "win.lokipws", "Burkina,Loki,LokiBot,LokiPWS", "Loki Password Stealer (PWS)", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:27", "1249702", "770046d4a6f703dad79b1745b7913417f83201377915f7f3d0d85d2cf6efb335", "sha256_hash", "payload", "win.ghost_rat", "Farfli,Gh0st RAT,PCRat", "Ghost RAT", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:25", "1249699", "a47cff2825b81ebb3fd73114f85c07dc329fb276553bced4073284268b9a466c", "sha256_hash", "payload", "win.remcos", "RemcosRAT,Remvio,Socmer", "Remcos", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:23", "1249696", "c5e19b4aa3f82436910d009a5f36bdddf44314f6a68f6cd9314d6b958382d9fc", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:16", "1249693", "3d6012eb13b5a891571ea2d7c7bf120b9c12d479e5cb2c6ffc7e515e14c46866", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:14", "1249690", "73b31eec9b8189cf23f173e452bb41dd8b06e9ededff6b6df8cbb0c2caea61e1", "sha256_hash", "payload", "win.vidar", "None", "Vidar", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:40:11", "1249687", "5c00d919e3895f872959d16c8bf210da4f9e20c01791a88d7a0f60b13a22c968", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:57", "1249684", "f2fe3aa0d244d7f17610042ee41aaa3eff40b1a349b43f317ff92f6ec5b7608e", "sha256_hash", "payload", "win.remcos", "RemcosRAT,Remvio,Socmer", "Remcos", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:55", "1249681", "e95d5046970872f51ad1d86cef75cf697d06f3a6b16515aa2eef09f9145e5ef6", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:54", "1249678", "7afbe4fa7aad8ab6a257bc76e1583079d7b6b1e1590b39d7fdcfc27963a9260a", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:53", "1249675", "0c4539463f6945654ba7fcca0c703040ebadcf29e5d3c89a2765e1369a6fe15f", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:46", "1249672", "b1105977986d60c7bb82b3344e84cebe00241ea7ade035ef394c87091cb79dff", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:40", "1249666", "b8fff426e70c180a0e4d37a8f6a0e4106cb9835fd5ee2de6dcfc9ad2882da9ee", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:40", "1249669", "36f58c438308195642e0e644692c2d287b85a473cdfe1434e44cfb62ec7d15b2", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:38", "1249662", "5e6dfdbc10d78f09f9fc9d4fd73ebc900efa6d3a397d04bfe264153bcd5513dc", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:36", "1249659", "7430d4ff91880ad8296ea94fe9c43aab5a92f1901386ffdc0c7a829359d210db", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:28", "1249650", "c1a42a7466f95415577084f66e18e6817e533c8f353c70e033048e4db90efadc", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:11", "1249653", "c541b775dc9e6b07c43b2d9f92fb1981aaec2a56c9075d55689915286d98eec1", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:10", "1249656", "1246236891905720fc1d4d84e230c81686df056c7bc4473c25f50310f71ab1a1", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:08", "1249647", "4d0b53acb1eae90edf6fdc610fd034e11b5ef7661060872f3f452b1f38cc8036", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:07", "1249644", "f1d8357d25a6bc505a61025161623fab6c2a432a3ce7e17ae4552beaa2f6d544", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:06", "1249641", "8e43c97e5bc62211b3673dee13e376a1f5026502ebe9fd9f7f455dc17c253b7f", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:04", "1249638", "daa3d1fa7525afcbb16140d999b685d5fe487b19e108171b4408135f3e36be9f", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:03", "1249635", "52f6e87fb26093278273b76242528123501209a796f152c12d45e92d85acbf12", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:39:01", "1249632", "4d4d1949eb5f7372aa0dcbc02c31de9d4ce3568553caa4bf13c9f1f9af151952", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:59", "1249629", "b72413dd57550c9bf645c4b258126cbbc12ff41573f2367446711a47416a72b4", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:57", "1249626", "893534d6ef00baca495f72ee980aa8b4de58afa9ebb9a4f05710db19c5454c33", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:56", "1249623", "7ecd16117bb6682410656713a135e8a49f1e56142f7c22cf203e9728679cc304", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:55", "1249620", "5b7c918bf324ff3b49cd17854731788c49bbbc120cd1a7dab2050467930e1a2d", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:53", "1249617", "f96f0402e5f6110bdb961a3750b1db0519bf810969f59e2d8d57ac51fc2cdd9e", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:51", "1249614", "8a01da98eeba99b47f851a452324f146654eb6f856705c6852220ecbc1aa0e83", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:50", "1249611", "5694acb35bf329fe0edfa6f8c2be13721da13ea03efbf186f59c5a4a1e3cd55c", "sha256_hash", "payload", "win.typhon_stealer", "Typhon Reborn V2", "Typhon Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:49", "1249608", "8108dd9d10c1a9dcd721a122976390864ca55b91a784eb9b841e6117b3b90f3e", "sha256_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:34", "1249605", "d38c0d55a08eaf025aa10acc369013f10031a2e09916e208d9c08aaae66f4e78", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:07", "1249602", "2112949c0d30d5a58f3cb4c0f304f7ffdba3d619387fb2041784d37a28134a35", "sha256_hash", "payload", "win.remcos", "RemcosRAT,Remvio,Socmer", "Remcos", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:06", "1249599", "cea1d7a2be59517bce14e1df4780758960ca9c2f2dd71f432dc4e957445be2ac", "sha256_hash", "payload", "win.amadey", "None", "Amadey", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:05", "1249596", "b5cf618624df43618a33e366aed44a39db6c92c6e4c9dbe7905e415307028aee", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:04", "1249593", "fe4b792ecc090ae8bcbef6fcff695cfdb39218a8407bcadb6dcbfabfc6109ca5", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:03", "1249590", "210759f49f032d8823c360b0e6d609ccf2259b885e86a15a70a39c09124b9a60", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:38:01", "1249587", "19299c911d297fef582c50c022ef66afdfba6b761f329d7ffe05e96353cb8122", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:40", "1249584", "3510d84f8b7c07db80eaf1f190ff3727c3ae95921cab2d308a711b1e14f62099", "sha256_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:38", "1249581", "3bd968f2cff76757eb1bf75e19e8302ef97417c65ce9c0accf578eafae435c6a", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:37", "1249578", "8cb37e1ab48747e7fb63dd2ac1bffe1c9f0fa98c160613922a995935d6abd2cc", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:36", "1249575", "1c60bc833a05be736fd6734552cf56281db65a3cb0c8004b3f94d88cf6c31a84", "sha256_hash", "payload", "win.dbatloader", "ModiLoader,NatsoLoader", "DBatLoader", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:34", "1249572", "373859f19da9662cebadea97fe4acf12e811b72acb5490d80c7f0d8ff45353a3", "sha256_hash", "payload", "win.remcos", "RemcosRAT,Remvio,Socmer", "Remcos", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:32", "1249569", "3bcef269e37701fa26f27b3c759d1fddeeb96998e2f7aea05ea02acb15e53a3e", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:31", "1249566", "0385e72feabb9b4207ae2266774849feb9d5179d036b4292e5ffed33c27a5f4a", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:30", "1249563", "5e0297afd07492a109d03b5fad4c86d557de5d92aa1a04dbe350687f5e5baef6", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:29", "1249560", "a85976bdd24a41da90803addab193d17ea3cc75ece7dae783eb1d3cfcb6a46cd", "sha256_hash", "payload", "win.remcos", "RemcosRAT,Remvio,Socmer", "Remcos", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:27", "1249557", "5fd7aaecea93b94823aa67414bf4314bd1f19c8e8ca44ea569210bffbc623f55", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:13", "1249554", "96d8f946d4ba59979608136ba3117652705bfdca1365f5e5b8a148fa5a601e11", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:12", "1249551", "ac517064216de46a3c1ab91e2623170b89eef04b4e64b1c24149c1bb64b24ec8", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:11", "1249548", "fd62e09831ebcfa6b2fa8da868a3e6da9eac62580a7516633a8490bb6f7ea29f", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:09", "1249545", "ffd4e8b034ae025652b864be756effb0bbcde4042a7d9dff66c50631f3de6e9d", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:08", "1249542", "5f9c156ac89f910b527a71ae3395006cfe2c8d2fce6ba4712b324149f0707f1f", "sha256_hash", "payload", "win.troystealer", "None", "troystealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:07", "1249539", "636f2b1624573965b7fc093117d8927ebffdbc0d852c241aede59fe81fece84f", "sha256_hash", "payload", "win.quasar_rat", "CinaRAT,QuasarRAT,Yggdrasil", "Quasar RAT", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:04", "1249536", "2391648221057ae4454b46e4010db00fa25551df4835c916ad1cf1354077234f", "sha256_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:02", "1249533", "30e8530fe027064f03f21e5dfc5d560338f8781c8133885b223ff3456ff16b65", "sha256_hash", "payload", "win.luca_stealer", "None", "Luca Stealer", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:37:00", "1249530", "ddc5d1c80b07a16ba4a2d8d289dcfccaa1c2f25a525d96f223be8c8eedf9e9e6", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:36:58", "1249527", "acf05449c06970a54cc36fc7412f025f2c80c577d7ce3073b18fba70b39fb7f6", "sha256_hash", "payload", "win.darkcomet", "Breut,Fynloski,klovbot", "DarkComet", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:36:57", "1249524", "f6631cb0b90dad50436e54e1626d6684bb4188a451dd1168e72df5ca67583af7", "sha256_hash", "payload", "win.trat", "None", "tRat", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:36:56", "1249521", "eaa96c58f2e46c920ccca77cec3f195cb3be4b035df67eda3aef8a39176f532c", "sha256_hash", "payload", "win.njrat", "Bladabindi,Lime-Worm", "NjRAT", "", "95", "None", "None", "0", "Grim" "2024-03-27 07:36:54", "1249518", "4658db261066122d0f627ac3452a3dbc06dea0c458f706a7be9f615a0f00995d", "sha256_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" # Number of entries: 155