s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

TF-MAL-elf.stantinko

📛 Threat Title

Malware family: Stantinko

Category: Stantinko First seen: Last updated: Source: ThreatFox Malwares

Description

ThreatFox malware family `elf.stantinko`. Printable name: Stantinko.

Indicators of Compromise (1)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

domain elf.stantinko VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/elf.stantinko

IOC database

Type
domain
Value
elf.stantinko
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Extracted from Threat TF-MAL-elf.stantinko

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/elf.stantinko

References (1)

Remediations (10)

  • web:malpedia.caad.fkie.fraunhofer.de

    Details for the Stantinko malware family including references, samples and yara signatures.

  • web:sensorstechforum.com

    Our article gives readers an in-depth look into the dangerous Stantinko Malware and offers removal and protection tips to the affected victims.

  • web:www.bleepingcomputer.com

    Please help - my pc is infected with Stantinko malware . - posted in Virus, Trojan, Spyware, and Malware Removal Help: My ISP sent me several messages informing me that my pc has been infected with ...

  • web:www.breachsense.com

    Complete malware remediation now requires addressing both the infected endpoint and the stolen authentication data. Your malware incident response playbook must account for both.

  • web:www.cisa.gov

    It highlights technical approaches to uncovering malicious activity and includes mitigation steps according to best practices. The purpose of this report is to enhance incident response among partners and network administrators along with serving as a playbook for incident investigation.

  • web:www.eset.com

    ESET, a global leader in cybersecurity, has investigated and identified a complex threat posed by a new strain of malware that has so far affected half a million users. Dubbed as Stantinko , ESET analyzes this highly inconspicuous malware which tricks victims into downloading pirated software from fake torrent sites, and that has continually morphed to avoid detection for the last five years ...

  • web:www.infosecinstitute.com

    The Stantinko Trojan, documented by ESET in a full whitepaper in 2017, is a recent variant (version: 2.17) of a Trojan that has been attacking Linux systems since 2012. In this article, we will discuss this threat, provide in-depth reversing details and explore how to protect our assets against malware of this nature.

  • web:www.malwarebytes.com

    Click Quarantine to remove the found threats. Reboot the system if prompted to complete the removal process. Business remediation How to remove Trojan.Stantiko with the Malwarebytes Nebula console You can use the Malwarebytes Anti- Malware Nebula console to scan endpoints. Nebula endpoint tasks menu Choose the Scan + Quarantine option.

  • web:www.microsoft.com

    Understand how this virus or malware spreads and how its payloads affects your computer. Protect against this threat, identify symptoms, and clean up or remove infections.

  • web:www.ncsc.gov.uk

    How to defend organisations against malware or ransomware attacks.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.