s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

MB-e522228eb6c61a598be82b36d71b6ce454a6cca1fbe39f2ee9248190e771cc1c high

📛 Threat Title

Unknown: e522228eb6c61a598be82b36d71b6ce454a6cca1fbe39f2ee9248190e771cc1c

Category: Unknown Published: Source updated: First seen: Last updated: Source: Abuse.ch

Description

File type: dll. Size: 1207808 bytes. Tags: 184-95-51-188, dll. Reporter: JAMESWT_WT. First seen: 2026-05-15 06:22:29.

Indicators of Compromise (4)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

hash_imphash dae02f32a21e03ce65412f6e56942daa

IOC database

Type
hash_imphash
Value
dae02f32a21e03ce65412f6e56942daa
First seen
Last seen
Attached to this threat
Appears in
25 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha256 e522228eb6c61a598be82b36d71b6ce454a6cca1fbe39f2ee9248190e771cc1c 1 feed

IOC database

Type
hash_sha256
Value
e522228eb6c61a598be82b36d71b6ce454a6cca1fbe39f2ee9248190e771cc1c
First seen
Last seen
Attached to this threat
Appears in
2 threats
Description
Unknown

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

hash_sha1 5afb9d19cbf24b723127736819e669596b7b6d36 VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/5afb9d19cbf24b723127736819e669596b7b6d36
1 feed

IOC database

Type
hash_sha1
Value
5afb9d19cbf24b723127736819e669596b7b6d36
First seen
Last seen
Attached to this threat
Appears in
2 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/5afb9d19cbf24b723127736819e669596b7b6d36

hash_md5 d556e9e2e218c8d7a7b56f42ccc4c202 VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/d556e9e2e218c8d7a7b56f42ccc4c202
1 feed

IOC database

Type
hash_md5
Value
d556e9e2e218c8d7a7b56f42ccc4c202
First seen
Last seen
Attached to this threat
Appears in
2 threats

Open the full IOC page →

Threat Hunt — feed corroboration

Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/d556e9e2e218c8d7a7b56f42ccc4c202

References (1)

  • MalwareBazaar sample page Abuse.ch

    File type: dll. Size: 1207808 bytes. Tags: 184-95-51-188, dll. Reporter: JAMESWT_WT. First seen: 2026-05-15 06:22:29.

Remediations (10)

  • web:askubuntu.com

    9 Update: Kernel 6.8.-117.117 is released now and features a kernel-level fix for CVE-2026-31431. While the website may be down, the security email list continues to work apparently and they have emailed about a mitigation there in an email from 30.04.2026 18:06 CET. The issue should be mitigated for now thanks to USN-8226-1 and USN-8226-2.

  • web:learn.microsoft.com

    This article provides an overview of Microsoft Defender for Identity's certificate security posture assessment report.

  • web:p3ta00.github.io

    Complete technical walkthrough of CVE-2025-55182 React2Shell exploitation - critical unauthenticated RCE in React Server Components and Next.js via Flight protocol deserialization. CVSS 10.0 with PoC.

  • web:windowsforum.com

    Microsoft's February Patch Tuesday closed a dangerous loophole in the modern Notepad app that could let an attacker turn a simple Markdown (.md) file into a remote code execution (RCE) trap — a single click on a crafted link inside Notepad's Markdown view could launch unverified protocols and...

  • web:www.17track.net

    Enter your tracking number to track Unknown packages and get real-time updates on delivery status. Discover more about FQAs in this guide on Unknown tracking.

  • web:www.esd.whs.mil

    Ensure configuration, asset, remediation , and mitigation management supports vulnerability management within the DODIN in accordance with DoD Instruction (DoDI) 8510.01. Support all systems, subsystems, and system components owned by or operated on behalf of DoD with efficient vulnerability assessment techniques, procedures, and capabilities.

  • web:www.msn.com

    Government websites across Guam went dark this week after attackers exploited a previously unknown flaw in cPanel, the control-panel software that millions of web-hosting providers use to manage ...

  • web:www.reddit.com

    Pulling my hair out for this one. What's happening- When I deploy a VPP app (Microsoft Teams for example) and scope it to all users with user license…

  • web:www.toolsley.com

    Free browser tool to identify unknown files based on their contents. Recognizes over 2000 file formats using libmagic. No installation necessary. Just drag & drop!

  • web:www.windowsdigitals.com

    Can't install or run an app from unknown publisher? Here's how to allow unknown publisher in Windows 11/10, and how to disable the warning.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.