SHA256HighVerifiedSignal 62/100
1cee85457eb31be126a41d4e332735957cf4a928fdf4b5253380b6c97605d069
First Seen
Jul 13, 2023
Last Seen
Feb 23, 2026
Found in 4 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
SHA-256 Hash
SHA-256 file hash — primary identifier for malware samples.
MISP Category
Artifacts Dropped
Hash Algorithm
SHA256
Confidence
62%
Signal Score
62 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
4 reports62% confidence
4
Source reports
62%
Confidence score
Category tags
abuseaccount brute forceactive scanningauthenticationauthentication attackbotnetbrute forcebrute force attackcommand and controlcommunication protocolcredential accesscredential brute forcecredential stuffingdata encryptiondata exfiltrationdenial of servicedistributed attacksenumerationfile-hashftpftp brute forcehttp brute forcehttp scannerimapimap brute forceindicatorlateral movementlogin attemptsmalicious softwaremalwarenetwork activitynetwork attacksnetwork enumerationnetwork intrusionnetwork probingnetwork protocolnetwork reconnaissancenetwork scanningnetwork securitynetwork service scanningpassword attackspop3 brute forcepossible reconnaissance activityprocess injectionprotocol exploitationreconnaissanceremote accessremote access attemptsremote servicesresearchedsmb scanningsmtpsmtp brute forcessh attacksuspected compromisesyn scant1016t1018t1021t1021.001t1021.002t1040t1046t1055t1059t1071.001t1076t1077t1078t1083t1110t1110.001t1110.002t1110.003t1110.004t1190t1486t1496t1499.002t1499.003t1563t1565t1589t1590t1595t1595.001t1595.002t1595.003tcp protocoltcp scantcp scanningtelnet threatudp scanunauthorized accessweb traffic
Activity Timeline
Feb 23Feb 23
Threat Activity Heatmap
· Peak: 2026-02-23LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreMedium Risk
62
SIGNAL
Signal Score
62%
Confidence
4
Reports
First seenJul 13, 2023
Last seenFeb 23, 2026
Verified IOC
VirusTotal
Not checked
WHOIS
- references
- https://labs.inquest.net/iocdb
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 3 years ago · Last seen 4 months ago
Appeared in 4 threat reports