IOC Radar
SHA256MediumSignal 91/100

ffcbd47879e3a3e36b01e104636cb4947fa290ce60496054a7a32ecf3cecabf2

Location
PeruPeru
First Seen
Apr 17, 2026
Last Seen
Apr 17, 2026
Apr 17
First Seen
58d ago
Apr 17
Last Seen
58d ago
3
Reports
source reports
91%
Confidence
medium
Found in 3 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
SHA-256 Hash
SHA-256 file hash — primary identifier for malware samples.
MISP Category
Artifacts Dropped
Hash Algorithm
SHA256
Confidence
91%
Signal Score
91 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

8 techniques

Feed Intelligence Summary

3 reports91% confidence
3
Source reports
91%
Confidence score
Category tags
file-hashindicatorinvalid-signatureoverlaypeexeperuresearchedruntime-modulessignedsouth americat1018t1056t1071t1082t1095t1105t1497t1518windows

Activity Timeline

1 total obs
Apr 17Apr 17

Threat Activity Heatmap

· Peak: 2026-04-17
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated

This indicator of compromise (IOC) represents a significant and immediate threat to organizational security, demanding urgent attention. With an exceptionally high score of 90.92, this SHA-256 hash is strongly associated with malicious software, identified as `PowerBoost.exe`, which exhibits advanced capabilities for system compromise. If present within the environment, this malware could facilitate critical attack phases, including initial access, execution, persistence, and potentially lead to…

Threat ScoreHigh Risk
91
SIGNAL
Signal Score
91%
Confidence
3
Reports
First seenApr 17, 2026
Last seenApr 17, 2026

VirusTotal

Not checked

WHOIS

description
PE32 executable (console) Intel 80386, for MS Windows

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 month ago · Last seen 1 month ago
Appeared in 3 threat reports