ThreatFox IOC Database
You are viewing the ThreatFox database entry for sha256_hash 02cf8c8aee9285ab4a5dfb41e00d366b04c594bd9dace9c50d45ea5c53078bfe.
Database Entry
This IOC expired
This IOC is an old IOC and hence has expired on 2026-06-06 01:15:01 UTC. We therefore refrain from exporting it into our datasets. As a result, this database entry is purely informational and has no impact.
| IOC ID: | 1615504 |
|---|---|
| IOC: | 02cf8c8aee9285ab4a5dfb41e00d366b04c594bd9dace9c50d45ea5c53078bfe |
| IOC Type : | sha256_hash |
| Threat Type : | payload |
| Malware: | Revenge RAT |
| Malware alias: | Revetrat |
| Confidence Level : | Confidence level is high (100%) |
| Is compromised? : | False |
| First seen: | 2025-10-14 12:41:51 UTC |
| Last seen: | never |
| UUID: | 288b33bd-a8fb-11f0-894e-42010aa4000a |
| Reporter | |
| Reward | 5 credits from ThreatFox |
| Reference: | https://ptsecurity.com/ru-ru/research/pt-esc-threat-intelligence/dark-gaboon-rossijskie-kompanii-atakuet-ranee-ne-izvestnaya-apt-gruppirovka/ |