ThreatFox IOC Database

You are viewing the ThreatFox database entry for sha256_hash a876f648991711e44a8dcf888a271880c6c930e5138f284cd6ca6128eca56ba1.

Database Entry


IOC ID:1767061
IOC: a876f648991711e44a8dcf888a271880c6c930e5138f284cd6ca6128eca56ba1
IOC Type :sha256_hash
Threat Type :payload
Malware: BEARDSHELL
Confidence Level : Confidence level is high (90%)
Is compromised? : False
First seen:2026-03-15 16:31:29 UTC
Last seen:never
UUID:b547804c-2086-11f1-9af6-42010aa4000a
Reporter Lenard
Reward 5 credits from ThreatFox
Tags:APT28 BeardShell EhStoreShell GRU Sednit
Reference: https://www.trellix.com/blogs/research/apt28-operation-phantom-net-voxel/