TF-MAL-apk.carbonsteal
📛 Threat Title
Malware family: CarbonSteal
Description
ThreatFox malware family `apk.carbonsteal`. Printable name: CarbonSteal.
Indicators of Compromise (1)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
domain
apk.carbonsteal
VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/apk.carbonsteal
IOC database
- Type
- domain
- Value
apk.carbonsteal- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Extracted from Threat TF-MAL-apk.carbonsteal
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/apk.carbonsteal
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (9)
-
web:apt.etda.or.th
Last change to this tool card: 30 December 2022 Download this tool card in JSON format All groups using tool CarbonSteal
-
web:attack.cloudfall.cn
CarbonSteal is one of a family of four surveillanceware tools that share a common C2 infrastructure. CarbonSteal primarily deals with audio surveillance. [1] ID: S0529 ⓘ Type: MALWARE ⓘ Platforms: Android Version: 1.1 Created: 10 November 2020 Last Modified: 20 September 2021 ATT&CK® Navigator Layers Techniques Used Domain ID Name Use Mobile T1409 Access Stored Application Data ...
-
web:attack.mitre.org
CarbonSteal is one of a family of four surveillanceware tools that share a common C2 infrastructure. CarbonSteal primarily deals with audio surveillance. [1]
-
web:malpedia.caad.fkie.fraunhofer.de
Details for the CarbonSteal malware family including references, samples and yara signatures.
-
web:windowsforum.com
Microsoft's March cumulative update for Windows 11, KB5079473 (released March 10, 2026), is rolling out with a familiar mix of new features and security fixes — but a growing number of users now say the patch is also triggering severe instability on some machines, including hard freezes...
-
web:www.breachsense.com
Complete malware remediation now requires addressing both the infected endpoint and the stolen authentication data. Your malware incident response playbook must account for both.
-
web:www.cisa.gov
It highlights technical approaches to uncovering malicious activity and includes mitigation steps according to best practices. The purpose of this report is to enhance incident response among partners and network administrators along with serving as a playbook for incident investigation.
-
web:www.microsoft.com
Understand how this virus or malware spreads and how its payloads affects your computer. Protect against this threat, identify symptoms, and clean up or remove infections.
-
web:www.ncsc.gov.uk
How to defend organisations against malware or ransomware attacks.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.