s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

MB-358346be7566fc2ffb13141eabc5af270a9e0e8f71fa99aebc6a5b5d6281a101 high

📛 Threat Title

Unknown: 358346be7566fc2ffb13141eabc5af270a9e0e8f71fa99aebc6a5b5d6281a101.js

Category: Unknown Published: Source updated: First seen: Last updated: Source: Abuse.ch

Description

File type: js. Size: 989094 bytes. Tags: 184-95-51-188, js, sterlingreservewealth-info. Reporter: JAMESWT_WT. First seen: 2026-05-14 19:53:33.

Indicators of Compromise (3)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

hash_sha256 358346be7566fc2ffb13141eabc5af270a9e0e8f71fa99aebc6a5b5d6281a101 1 feed

IOC database

Type
hash_sha256
Value
358346be7566fc2ffb13141eabc5af270a9e0e8f71fa99aebc6a5b5d6281a101
First seen
Last seen
Attached to this threat
Appears in
2 threats
Description
Unknown

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha1 96a3f5d910097886e0f12306dcc94935d5e9f754 VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/96a3f5d910097886e0f12306dcc94935d5e9f754
1 feed

IOC database

Type
hash_sha1
Value
96a3f5d910097886e0f12306dcc94935d5e9f754
First seen
Last seen
Attached to this threat
Appears in
2 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/96a3f5d910097886e0f12306dcc94935d5e9f754

hash_md5 6759aaf980bd76dba671000a98eb5046 VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/6759aaf980bd76dba671000a98eb5046
1 feed

IOC database

Type
hash_md5
Value
6759aaf980bd76dba671000a98eb5046
First seen
Last seen
Attached to this threat
Appears in
2 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/6759aaf980bd76dba671000a98eb5046

References (1)

  • MalwareBazaar sample page Abuse.ch

    File type: js. Size: 989094 bytes. Tags: 184-95-51-188, js, sterlingreservewealth-info. Reporter: JAMESWT_WT. First seen: 2026-05-14 19:53:33.

Remediations (10)

  • web:askubuntu.com

    9 Update: Kernel 6.8.-117.117 is released now and features a kernel-level fix for CVE-2026-31431. While the website may be down, the security email list continues to work apparently and they have emailed about a mitigation there in an email from 30.04.2026 18:06 CET. The issue should be mitigated for now thanks to USN-8226-1 and USN-8226-2.

  • web:bazaar.abuse.ch

    MalwareBazaar Database You are currently viewing the MalwareBazaar entry for SHA256 358346be7566fc2ffb13141eabc5af270a9e0e8f71fa99aebc6a5b5d6281a101. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious. Database Entry Threat unknown Vendor ...

  • web:blog.dreamfactory.com

    A complete technical analysis of the Axios npm supply chain attack of March 31, 2026. How the maintainer account was hijacked, how the cross-platform RAT worked, which organizations are affected, IOCs, and detailed remediation guidance.

  • web:cstromblad.com

    Cryptocurrency-stealing malware was injected into 20 critical NPM packages including debug and chalk—affecting over 2 billion weekly downloads—after a threat actor phished maintainer Josh Junon with a fake NPM 2FA reset email on September 8, 2025. The sophisticated malware targeted browser-based Web3 wallets across six blockchain networks, intercepting and redirecting cryptocurrency ...

  • web:learn.microsoft.com

    Problem Signature 02: 6.1.7600.16385 Problem Signature 03: unknown Problem Signature 04: 21199277 Problem Signature 05: AutoFailover Problem Signature 06: 15 Problem Signature 07: NoRootCause OS Version : 6.1.7600.2.0.0.256.1 Locale ID : 1033 See if this assists you with your Repair options. You can use the power button to restart your computer ...

  • web:stackoverflow.com

    We have an issue in our solution (we are using .net core) and the SNYK vulnerabilities scaner show us that we have a Server-Side Request Forgery (SSRF) vulnerability in the next code at the : public

  • web:virusvault.vercel.app

    VirusVault Browse, search and analyze malware samples from around the world. Access a comprehensive database of security threats with detailed analysis.

  • web:www.crowdstrike.com

    NPM is the package manager for the Node.js JavaScript platform, which allows developers to share and manage JavaScript libraries and tools. By compromising these packages, attackers are able to perform supply chain attacks that have widespread impact and can be challenging to identify.

  • web:www.reddit.com

    If you don't have the in house staff to perform the threat analysis or threat hunting, you need a SOC. You could look at black point cyber since your are a PAX 8 customer. You currently have the detection portion of EDR, but not the analysis and remediation piece. You can't compare Symantec to Sentinel One, they aren't the same. Sentinel One IMO, is a far superior product, and in the years we ...

  • web:www.wiz.io

    A compromised axios maintainer account led to malicious npm releases. Learn how to assess impact, detect compromise, and secure your development workflows.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.