ThreatFox IOC Database

You are viewing the ThreatFox database entry for sha256_hash ca63d44dddc1d7bf2c118bca8b874b3fc06d7e71ba7eba2af6b34e072b9af128.

Database Entry


IOC ID:1775027
IOC: ca63d44dddc1d7bf2c118bca8b874b3fc06d7e71ba7eba2af6b34e072b9af128
IOC Type :sha256_hash
Threat Type :payload
Malware: Rugmi
Malware alias:Penguish
Confidence Level : Confidence level is high (100%)
Is compromised? : False
First seen:2026-03-24 19:58:07 UTC
Last seen:never
UUID:bb28e07a-27a0-11f1-9af6-42010aa4000a
Reporter Lenny_3BO
Reward 5 credits from ThreatFox
Tags:ClickFix powershell

Avatar
Lenny_3BO
ClickFix PS loader (binsai.txt). Reversed base64 with junk padding. Decodes to MSI download via wget. UA-gated.