IOC Radar Logo
IOCRadar
IOC Radar Logo
IOCRadar

4299ded6dbef95827a8c15e945848beff3ead111f3d6c7702e64815b79ed60de

Hash
18%
SIGNAL STRENGTHModerate Noise
FIRST SEEN2025-03-31 09:43:02
LAST SEEN2025-04-23 06:49:09
CATEGORY
malware
protocol spesific attack(rdp)
port scanning and brute force attempts
database spesific attack(postgresql)
port scan
database spesific attack(mysql)
operation system spesific attack(windows os)
win32 malware
telnet threat
ssh attack
MITRE
T1595 - Active Scanning
T1499.002 - Endpoint DoS
T1499.003 - Network DoS
T1496 - Resource Hijacking
T1190 - Exploit Public-Facing Application
T1059.003 - SQL Injection
T1505.002 - Server Software Component
T1110.002 - Brute Force
T1076 - Remote Desktop Protocol
T1563 - Remote Services
TAGS
vulnerability management
windows malware
credential stuffing
malicious software
server exploitation
credential access
protocol exploitation
distributed attacks
command and control
network security
Eye Icon
SOCRadar
AI Insight

The presence of SHA256 hash 4299ded6dbef95827a8c15e945848beff3ead111f3d6c7702e64815b79ed60de as an Indicator of Compromise (IOC) warrants immediate investigation and action. This hash is associated with potentially malicious files, as reported by multiple threat intelligence feeds, including SOCRadar Threat Exchange Services and AlienVault OTX Feeds, and its relatively high score of 18.0 suggests a significant level of confidence in its malicious nature. The related objects, including files mrt.exe and mrtstub.exe, coupled with the associated VirusTotal report, strongly suggest a link to malware activity. Failure to address this IOC could lead to system compromise, data breaches, or other detrimental security incidents. The creation date of 2025-03-31 indicates a relatively recent potential threat.

Summary

Hash Type:
sha256
MD5:
-
SHA-1:
-
SHA-256:
-
Files:
mrtstub.exe
File Type:
exe

Top Classifications

Campaign:
-
Industry:
-
Country:
-
Region:
-
Threat Actors:
-
Malware:
-

Feed Sources

Feed Source
Count
Date
SOCRadar Threat Exchange Services
3
2025-04-23
AlienVault OTX Feeds
3
2025-04-21

Threat Activity Timeline

Last 24 hours
Dormant
Last 7 Days
Minimal Activity
Last Month
Minimal Activity
Last 3 Months
Minimal Activity
Extended Threat Intelligence
Free Trial

Stay ahead with proactive cyber threat warnings

Discover how SOCRadar's all-in-one platform can help protect your digital assets with extended threat intelligence, digital risk protection, and attack surface management.