s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

MB-6aea4283005ee43b6569e21c84be24f0dc2593ffa28cebe7830457a2cac32d0e high

📛 Threat Title

Unknown: 6aea4283005ee43b6569e21c84be24f0dc2593ffa28cebe7830457a2cac32d0e

Category: Unknown Published: Source updated: First seen: Last updated: Source: Abuse.ch

Description

File type: exe. Size: 8721920 bytes. Tags: exe, Gansu-Shishida-Information-Technology-Co-Ltd, signed. Reporter: JAMESWT_WT. First seen: 2026-05-15 06:39:53.

Indicators of Compromise (4)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

hash_imphash dddd95789c6d117404c7c3c56ab141f3

IOC database

Type
hash_imphash
Value
dddd95789c6d117404c7c3c56ab141f3
First seen
Last seen
Attached to this threat
Appears in
10 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha256 6aea4283005ee43b6569e21c84be24f0dc2593ffa28cebe7830457a2cac32d0e 1 feed

IOC database

Type
hash_sha256
Value
6aea4283005ee43b6569e21c84be24f0dc2593ffa28cebe7830457a2cac32d0e
First seen
Last seen
Attached to this threat
Appears in
2 threats
Description
Unknown

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha1 4f7332b8cd401d11b820791ece361edbe3a2615f VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/4f7332b8cd401d11b820791ece361edbe3a2615f
1 feed

IOC database

Type
hash_sha1
Value
4f7332b8cd401d11b820791ece361edbe3a2615f
First seen
Last seen
Attached to this threat
Appears in
2 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/4f7332b8cd401d11b820791ece361edbe3a2615f

hash_md5 6156e105acd672bb7c1a421437b44d73 VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/6156e105acd672bb7c1a421437b44d73
1 feed

IOC database

Type
hash_md5
Value
6156e105acd672bb7c1a421437b44d73
First seen
Last seen
Attached to this threat
Appears in
2 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/6156e105acd672bb7c1a421437b44d73

References (1)

  • MalwareBazaar sample page Abuse.ch

    File type: exe. Size: 8721920 bytes. Tags: exe, Gansu-Shishida-Information-Technology-Co-Ltd, signed. Reporter: JAMESWT_WT. First seen: 2026-05-15 06:39:53.

Remediations (10)

  • web:access.redhat.com

    Remediation Timeline Given the interest in how this vulnerability was disclosed and remediated, the following timeline outlines the key events. 2026-03-23 Reporter privately contacts upstream 2026-03-24 Upstream acknowledges receiving the report 2026-03-25 Upstream/Reporter propose and review patches 2026-04-01 Upstream commits patch to ...

  • web:askubuntu.com

    9 Update: Kernel 6.8.-117.117 is released now and features a kernel-level fix for CVE-2026-31431. While the website may be down, the security email list continues to work apparently and they have emailed about a mitigation there in an email from 30.04.2026 18:06 CET. The issue should be mitigated for now thanks to USN-8226-1 and USN-8226-2.

  • web:learn.microsoft.com

    This article provides an overview of Microsoft Defender for Identity's certificate security posture assessment report.

  • web:malwaretips.com

    Scam Overview What the "Tax Resolution Team" scam is, in plain English This scam is a fraudulent phone outreach campaign where callers, robocalls, or voicemails claim to represent a "tax resolution team," "IRS resolution department," "tax debt relief unit," or a similarly named group. They suggest you've been "flagged," "marked," or "selected" for special IRS ...

  • web:patchmypc.com

    Clients stuck in unknown ? Use these steps to troubleshoot and validate update state in SCCM.

  • web:securew2.com

    Resolve the 'X.509 Certificate Signed by Unknown Authority' error, often caused by untrusted certificate authorities.

  • web:www.17track.net

    Enter your tracking number to track Unknown packages and get real-time updates on delivery status. Discover more about FQAs in this guide on Unknown tracking.

  • web:www.kodemsecurity.com

    CVE-2026-31431, the Copy Fail Linux kernel LPE, lets authenticated users gain root. See affected kernels, exploit details, IOCs and patches.

  • web:www.reddit.com

    Pulling my hair out for this one. What's happening- When I deploy a VPP app (Microsoft Teams for example) and scope it to all users with user license…

  • web:www.windowsdigitals.com

    Can't install or run an app from unknown publisher? Here's how to allow unknown publisher in Windows 11/10, and how to disable the warning.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.