MB-67d1aeae3da2eea072c9f6bec6693a26c797ca372a2c6f2e58b804d9a063f7f8
high
📛 Threat Title
Unknown: ?????.exe
Description
File type: exe. Size: 1136640 bytes. Tags: 45-115-27-4, exe, SunWukong, VorishkaStealer. Reporter: iamaachum. First seen: 2026-08-04 19:46:42.
Indicators of Compromise (4)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
hash_sha256
67d1aeae3da2eea072c9f6bec6693a26c797ca372a2c6f2e58b804d9a063f7f8
IOC database
- Type
- hash_sha256
- Value
67d1aeae3da2eea072c9f6bec6693a26c797ca372a2c6f2e58b804d9a063f7f8- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Unknown
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_sha1
98037984692f5f92651b7009ee0573900ba6a654
IOC database
- Type
- hash_sha1
- Value
98037984692f5f92651b7009ee0573900ba6a654- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_md5
eb310863c1235677d04d6038d03a917c
IOC database
- Type
- hash_md5
- Value
eb310863c1235677d04d6038d03a917c- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_imphash
853a8c2cca7aee080da03665735756a7
IOC database
- Type
- hash_imphash
- Value
853a8c2cca7aee080da03665735756a7- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
References (1)
-
MalwareBazaar sample page
Abuse.ch
File type: exe. Size: 1136640 bytes. Tags: 45-115-27-4, exe, SunWukong, VorishkaStealer. Reporter: iamaachum. First seen: 2026-08-04 19:46:42.
Remediations (9)
-
web:learn.microsoft.com
Learn how to deal with unwanted mitigations in Windows Security, including a process to remove all mitigations and import a baseline configuration file instead.
-
web:learn.microsoft.com
Microsoft Defender Vulnerability Management allows you to remediate vulnerabilities discovered in your environment through actionable security recommendations. You can create remediation requests that your IT administrator team can use to remediate vulnerabilities using Microsoft Intune.
-
web:malwaretips.com
This guide teaches you how to remove Unknown.exe virus for free by following easy step-by-step instructions.
-
web:malwaretips.com
Learn why the Windows Remediation Service process is running in Task Manager and its significance. Find out more in this informative guide.
-
web:panorays.com
Discover the difference between remediation and mitigation in risk management and how each strategy impacts security and resilience.
-
web:www.bugcrowd.com
Mitigation solutions include isolating a set of vulnerable resources from the rest of the network with segmentation, temporarily disabling an application, or blocking a port that could provide access to a vulnerable resource. Your choice usually isn't a straightforward either/or decision between vulnerability remediation and mitigation .
-
web:www.dell.com
About once a day I see in the Windows 11 Diagnostic Data viewer that the Dell. Remediation .Agent. exe program has crashed. No other problems detected. Do I need to worry about this and is there a fix...
-
web:www.majorgeeks.com
Windows Defender may try to remove a virus, trojan, or other malware and return a message stating Remediation incomplete. Remediation incomplete leads one to assume that a virus, trojan or malware was found, but not removed.
-
web:www.vicarius.io
📜This script mitigates potential vulnerabilities in systems running older versions of 7-Zip (e.g., those affected by CVE-2025-0411) by completely disabling 7-Zip to prevent users from manually opening and extracting potentially malicious archives. It does so by removing 7-Zip from the context menu, blocking execution, and removing Start Menu shortcuts to ensure it cannot be accessed through ...
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.