s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

MB-67d1aeae3da2eea072c9f6bec6693a26c797ca372a2c6f2e58b804d9a063f7f8 high

📛 Threat Title

Unknown: ?????.exe

Category: Unknown Published: Source updated: First seen: Last updated: Source: Abuse.ch

Description

File type: exe. Size: 1136640 bytes. Tags: 45-115-27-4, exe, SunWukong, VorishkaStealer. Reporter: iamaachum. First seen: 2026-08-04 19:46:42.

Indicators of Compromise (4)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

hash_sha256 67d1aeae3da2eea072c9f6bec6693a26c797ca372a2c6f2e58b804d9a063f7f8

IOC database

Type
hash_sha256
Value
67d1aeae3da2eea072c9f6bec6693a26c797ca372a2c6f2e58b804d9a063f7f8
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Unknown

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha1 98037984692f5f92651b7009ee0573900ba6a654

IOC database

Type
hash_sha1
Value
98037984692f5f92651b7009ee0573900ba6a654
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_md5 eb310863c1235677d04d6038d03a917c

IOC database

Type
hash_md5
Value
eb310863c1235677d04d6038d03a917c
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_imphash 853a8c2cca7aee080da03665735756a7

IOC database

Type
hash_imphash
Value
853a8c2cca7aee080da03665735756a7
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

References (1)

  • MalwareBazaar sample page Abuse.ch

    File type: exe. Size: 1136640 bytes. Tags: 45-115-27-4, exe, SunWukong, VorishkaStealer. Reporter: iamaachum. First seen: 2026-08-04 19:46:42.

Remediations (9)

  • web:learn.microsoft.com

    Learn how to deal with unwanted mitigations in Windows Security, including a process to remove all mitigations and import a baseline configuration file instead.

  • web:learn.microsoft.com

    Microsoft Defender Vulnerability Management allows you to remediate vulnerabilities discovered in your environment through actionable security recommendations. You can create remediation requests that your IT administrator team can use to remediate vulnerabilities using Microsoft Intune.

  • web:malwaretips.com

    This guide teaches you how to remove Unknown.exe virus for free by following easy step-by-step instructions.

  • web:malwaretips.com

    Learn why the Windows Remediation Service process is running in Task Manager and its significance. Find out more in this informative guide.

  • web:panorays.com

    Discover the difference between remediation and mitigation in risk management and how each strategy impacts security and resilience.

  • web:www.bugcrowd.com

    Mitigation solutions include isolating a set of vulnerable resources from the rest of the network with segmentation, temporarily disabling an application, or blocking a port that could provide access to a vulnerable resource. Your choice usually isn't a straightforward either/or decision between vulnerability remediation and mitigation .

  • web:www.dell.com

    About once a day I see in the Windows 11 Diagnostic Data viewer that the Dell. Remediation .Agent. exe program has crashed. No other problems detected. Do I need to worry about this and is there a fix...

  • web:www.majorgeeks.com

    Windows Defender may try to remove a virus, trojan, or other malware and return a message stating Remediation incomplete. Remediation incomplete leads one to assume that a virus, trojan or malware was found, but not removed.

  • web:www.vicarius.io

    📜This script mitigates potential vulnerabilities in systems running older versions of 7-Zip (e.g., those affected by CVE-2025-0411) by completely disabling 7-Zip to prevent users from manually opening and extracting potentially malicious archives. It does so by removing 7-Zip from the context menu, blocking execution, and removing Start Menu shortcuts to ensure it cannot be accessed through ...

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.