SHA256MediumSignal 89/100
0df00e880f7339a0fbc7b49a9a8d2dcd86a4856c09ef30968d18a1f941bf0717
Location
First Seen
Apr 16, 2026
Last Seen
Apr 23, 2026
Found in 4 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
SHA-256 Hash
SHA-256 file hash — primary identifier for malware samples.
MISP Category
Artifacts Dropped
Hash Algorithm
SHA256
Confidence
89%
Signal Score
89 / 100
IDS Rule
No
Threat Context
Tags
Feed Intelligence Summary
4 reports89% confidence
4
Source reports
89%
Confidence score
Category tags
abusealienvault_ransomwarebad reputationbobsoftcanadaentityfile-hashindicatornorth americaoverlaypeexeperupleaseransomwareresearchedsouth americawindows
Activity Timeline
Apr 23Apr 23
Threat Activity Heatmap
· Peak: 2026-04-23LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated
This indicator of compromise (IOC), identified as a SHA-256 file hash, represents a critical threat that warrants immediate attention. Its high-risk score of 88.7 indicates a strong likelihood of malicious intent, potentially signaling an active or recent compromise within the environment. If left unaddressed, the associated malware or malicious file could lead to severe organizational impacts, including system-wide compromise, data exfiltration, ransomware deployment, or disruption of critical …
Threat ScoreHigh Risk
89
SIGNAL
Signal Score
89%
Confidence
4
Reports
First seenApr 16, 2026
Last seenApr 23, 2026
VirusTotal
Not checked
WHOIS
- description
- PE32 executable (GUI) Intel 80386, for MS Windows
- references
- https://www.virustotal.com/gui/collection/989211d1a413946fe696650e0acd61b70db946329c3631bb6344b6ba2994f1e4, https://www.virustotal.com/graph/embed/gffa96af2da084a3e8f63fa483d305a7d12e73718254646f38ec1e3347738446f?theme=dark, http://hybrid-analysis.com/file-collection/69e5fbc9826655358b037df6
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 2 months ago · Last seen 2 months ago
Appeared in 4 threat reports