ThreatFox IOC Database
You are viewing the ThreatFox database entry for sha256_hash ca6a8a728a2b599df422964be3a580c616f4240dc4e09e65e424f7281c5c1b2e.
Database Entry
This IOC expired
This IOC is an old IOC and hence has expired on 2026-06-06 01:15:01 UTC. We therefore refrain from exporting it into our datasets. As a result, this database entry is purely informational and has no impact.
| IOC ID: | 1615495 |
|---|---|
| IOC: | ca6a8a728a2b599df422964be3a580c616f4240dc4e09e65e424f7281c5c1b2e |
| IOC Type : | sha256_hash |
| Threat Type : | payload |
| Malware: | Revenge RAT |
| Malware alias: | Revetrat |
| Confidence Level : | Confidence level is high (100%) |
| Is compromised? : | False |
| First seen: | 2025-10-14 12:41:51 UTC |
| Last seen: | never |
| UUID: | 2861983d-a8fb-11f0-894e-42010aa4000a |
| Reporter | |
| Reward | 5 credits from ThreatFox |
| Reference: | https://ptsecurity.com/ru-ru/research/pt-esc-threat-intelligence/dark-gaboon-rossijskie-kompanii-atakuet-ranee-ne-izvestnaya-apt-gruppirovka/ |