ThreatFox Database
Indicators of Compromise (IOCs) on ThreatFox are associated with a certain malware fas. A malware sample can be associated with only one malware family. The page below gives you an overview on indicators of compromise associated with js.fakeupdates.
You can also get this data through the ThreatFox API.
Database Entry
| Malware: | FAKEUPDATES |
|---|---|
| Malware alias: | FakeUpdate, GhoLoader, SocGholish |
| First seen: | 2022-06-24 13:04:26 UTC |
| Last seen: | 2025-10-24 06:15:58 UTC |
| Number of IOCs: | 5'197 |
| Malpedia: | https://malpedia.caad.fkie.fraunhofer.de/details/js.fakeupdates |
Indicators Of Compromise
The table below shows all indicators of compromise (IOCs) that are associated with this particulare malware family (max 1000).
| Date (UTC) | IOC | Malware | Tags | Reporter |
|---|