s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

MB-4923391e869f3c4fc7eaadf223663225896867b64594c3678cffdc6068895e7d high

📛 Threat Title

Unknown: 4923391e869f3c4fc7eaadf223663225896867b64594c3678cffdc6068895e7d

Category: Unknown Published: Source updated: First seen: Last updated: Source: Abuse.ch

Description

File type: dll. Size: 1699848 bytes. Tags: dll, Gansu-Shishida-Information-Technology-Co-Ltd. Reporter: JAMESWT_WT. First seen: 2026-05-15 06:52:17.

Indicators of Compromise (4)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

hash_sha256 4923391e869f3c4fc7eaadf223663225896867b64594c3678cffdc6068895e7d 1 feed

IOC database

Type
hash_sha256
Value
4923391e869f3c4fc7eaadf223663225896867b64594c3678cffdc6068895e7d
First seen
Last seen
Attached to this threat
Appears in
2 threats
Description
Unknown

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha1 10ab22a347cdb0233515d9bd1ac7f3a059dc1e52 VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/10ab22a347cdb0233515d9bd1ac7f3a059dc1e52
1 feed

IOC database

Type
hash_sha1
Value
10ab22a347cdb0233515d9bd1ac7f3a059dc1e52
First seen
Last seen
Attached to this threat
Appears in
2 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/10ab22a347cdb0233515d9bd1ac7f3a059dc1e52

hash_md5 c9314cdb69695e97d8611ab7028b947b VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/c9314cdb69695e97d8611ab7028b947b
1 feed

IOC database

Type
hash_md5
Value
c9314cdb69695e97d8611ab7028b947b
First seen
Last seen
Attached to this threat
Appears in
2 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/c9314cdb69695e97d8611ab7028b947b

hash_imphash 933b536ebb0bd08844f376afc85b67fa

IOC database

Type
hash_imphash
Value
933b536ebb0bd08844f376afc85b67fa
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

References (1)

  • MalwareBazaar sample page Abuse.ch

    File type: dll. Size: 1699848 bytes. Tags: dll, Gansu-Shishida-Information-Technology-Co-Ltd. Reporter: JAMESWT_WT. First seen: 2026-05-15 06:52:17.

Remediations (10)

  • web:askubuntu.com

    9 Update: Kernel 6.8.-117.117 is released now and features a kernel-level fix for CVE-2026-31431. While the website may be down, the security email list continues to work apparently and they have emailed about a mitigation there in an email from 30.04.2026 18:06 CET. The issue should be mitigated for now thanks to USN-8226-1 and USN-8226-2.

  • web:bazaar.abuse.ch

    You are currently viewing the MalwareBazaar entry for SHA256 4923391e869f3c4fc7eaadf223663225896867b64594c3678cffdc6068895e7d . While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

  • web:github.com

    A public version to sync with SupportArticles-docs-pr - MicrosoftDocs/SupportArticles-docs

  • web:knowledge.broadcom.com

    This issue can occur due to the following causes: Network/DNS issue between vCSA and ESXi hosts Failure while validating nslookup for vCenter FQDN/IP from host and vice-versa: nslookup <VC-FQDN> connection timed out; no servers could be reached If inbound connection on port 9084 towards the vCenter server from the ESXi host was not allowed:

  • web:learn.microsoft.com

    This article provides an overview of Microsoft Defender for Identity's certificate security posture assessment report.

  • web:malwaretips.com

    Scam Overview What the "Tax Resolution Team" scam is, in plain English This scam is a fraudulent phone outreach campaign where callers, robocalls, or voicemails claim to represent a "tax resolution team," "IRS resolution department," "tax debt relief unit," or a similarly named group. They suggest you've been "flagged," "marked," or "selected" for special IRS ...

  • web:windowsforum.com

    Microsoft's March cumulative update for Windows 11, KB5079473 (released March 10, 2026), is rolling out with a familiar mix of new features and security fixes — but a growing number of users now say the patch is also triggering severe instability on some machines, including hard freezes...

  • web:www.17track.net

    Enter your tracking number to track Unknown packages and get real-time updates on delivery status. Discover more about FQAs in this guide on Unknown tracking.

  • web:www.reddit.com

    Pulling my hair out for this one. What's happening- When I deploy a VPP app (Microsoft Teams for example) and scope it to all users with user license…

  • web:www.thewindowsclub.com

    Learn how to identify and fix Unknown Device in Device Manager of Windows 11/10. Use Unknown Device Identifier to troubleshoot a device listed as Unknown Device Driver.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.