🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for url https://aldefix.com/aldefix.exe.

Database Entry


IOC ID:1959439
IOC: https://aldefix.com/aldefix.exe
IOC Type :url
Threat Type :payload_delivery
Malware: Unknown Stealer
Confidence Level : Confidence level is high (80%)
Is compromised? : True
ASN:AS13335 CLOUDFLARENET
Country:- US
First seen:2026-10-09 21:06:07 UTC
Last seen:never
UUID:3f3e06f0-c425-11f1-bd13-42010aa4000a
Reporter whack_sh
Reward 5 credits from ThreatFox
Tags:exe RustyStealer stealer

Avatar
whack_sh
Multi-vantage capture (datacenter/residential/mobile); payload SHA-256 029b9627303993756e3a7006c0ef7420a18fac1f43b11cf1e5b293a3197e94ae; MalwareBazaar classifies this hash as RustyStealer; 4 VirusTotal engines malicious; re-verified serving the same bytes at submission time