################################################################ # ThreatFox IOCs: recent MD5 hashes - CSV format # # Last updated: 2024-07-02 03:50:33 UTC # # # # Terms Of Use: https://threatfox.abuse.ch/faq/#tos # # For questions please contact threatfox [at] abuse.ch # ################################################################ # # "first_seen_utc","ioc_id","ioc_value","ioc_type","threat_type","fk_malware","malware_alias","malware_printable","last_seen_utc","confidence_level","reference","tags","anonymous","reporter" "2024-07-02 03:50:33", "1292267", "a2d17406ca0d23c20989e6fefe9e4739", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:50:28", "1292264", "5f86d94893b47e542cf857749dfcd185", "md5_hash", "payload", "win.rokrat", "DOGCALL", "RokRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:50:24", "1292261", "2c2e04484f2c8317df24936703c2b146", "md5_hash", "payload", "win.rokrat", "DOGCALL", "RokRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:50:13", "1292258", "9cfd62fc26438eeb8a50922265ad0ea7", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:50:00", "1292255", "7cf002ea425739f1cae19423a4db5be1", "md5_hash", "payload", "win.xworm", "None", "XWorm", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:49:56", "1292252", "cabeb02d14a76418addc20a3943681c8", "md5_hash", "payload", "win.luca_stealer", "None", "Luca Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:49:47", "1292249", "cb98320171d36e2b913c56a4cddfad44", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:49:43", "1292246", "aa9d475bc02429a35578c7c7495391c0", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:49:17", "1292243", "64a5e155baded9185ecd1fa9946c13aa", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:49:13", "1292240", "13f185b9be00ec3608deed136ee006a6", "md5_hash", "payload", "win.strelastealer", "None", "StrelaStealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:48:42", "1292237", "258b043e478474b4278d8e1f785a2748", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:48:28", "1292234", "251fbed59bfea87dc028bec0355660f8", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:48:24", "1292231", "f04b548bd822341fb5d4940dfc2c2498", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:48:21", "1292228", "b9b6988c0a0bbc68f566bec556fce46e", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:48:17", "1292225", "119685d67c747bc9fe473e98d4f37f48", "md5_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:48:14", "1292222", "0551dcf55adc23a07d56580729730d50", "md5_hash", "payload", "win.rokrat", "DOGCALL", "RokRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:48:10", "1292219", "272ee395c230d7b0a5a7e0f3a032e968", "md5_hash", "payload", "win.barbie", "None", "Barb(ie) Downloader", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:48:07", "1292216", "1b5b62e15509efce8bb5379b28a5210b", "md5_hash", "payload", "win.xworm", "None", "XWorm", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:48:03", "1292213", "38aabd243e82893611c3499e0426f826", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:48:00", "1292210", "3b1a4595328f7a92df02b7a116bc4f40", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:56", "1292207", "b6a667d8ba9928e083e1dc3be2e3db9e", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:53", "1292204", "6e3b5be6595853f08ecab9fcb1650d2e", "md5_hash", "payload", "win.vadokrist", "None", "Vadokrist", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:50", "1292201", "f362e538a7ba343bc0b263549c105623", "md5_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:46", "1292198", "1bf19b9cf38e2316c53af9ecfdf2142b", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:43", "1292195", "6a62e4ca839d3f2b01d7f088b4551166", "md5_hash", "payload", "win.njrat", "Bladabindi,Lime-Worm", "NjRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:39", "1292192", "19c0bb3b7e9c41e5d47b78566e04d3de", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:36", "1292189", "6acb710d5827fee18ad8936b31f12e32", "md5_hash", "payload", "win.njrat", "Bladabindi,Lime-Worm", "NjRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:32", "1292186", "88932ab33c38072946abc06b426d33b8", "md5_hash", "payload", "win.stop", "KeyPass,Djvu", "STOP", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:29", "1292183", "677b2d2d3a54e0c1d8e416b276093fb3", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:25", "1292180", "6dd4f871c7d18b3f1b45a7112c21ced3", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:21", "1292177", "ea0d00b95a91c801893b5526347170bb", "md5_hash", "payload", "win.remcos", "RemcosRAT,Remvio,Socmer", "Remcos", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:17", "1292174", "cfa3c233dbdff5cf57692484c4e50e6a", "md5_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:14", "1292171", "46cd19e483d8b15e982d343814b5fd3d", "md5_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:10", "1292168", "b2e56a7b3dd03c8000e78544f540677d", "md5_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:06", "1292165", "3b2129194c379040d94f02260925b029", "md5_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:03", "1292162", "3fab44c211a6c5519aa034184aca3fdb", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:47:00", "1292159", "7d50650cd2ba63482d4caf875ae65a8e", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:56", "1292156", "9cc535dd1c20ebb196f2638f694bd77a", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:53", "1292153", "6e57d9369ffc5204d19477954c5daa61", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:49", "1292150", "76329ae46cc8e0f01ef274425f835369", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:45", "1292147", "935bf9717629fa17f24856e6f395e09f", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:42", "1292144", "bb1b8864e1d82735205d07d202c5d864", "md5_hash", "payload", "win.lokipws", "Burkina,Loki,LokiBot,LokiPWS", "Loki Password Stealer (PWS)", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:38", "1292141", "e97620420d37596704d9f4fa70303453", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:34", "1292138", "70921b4a6f2b97263e1a1f48efe7763b", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:31", "1292135", "00af1a53860550f8db3f1b250436b78a", "md5_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:27", "1292132", "974e76d4b0ddb3706cf174819d200516", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:23", "1292129", "1b898df684811054d405e9c31fddd80a", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:20", "1292126", "d16418fbada8f2a6f41b58b0666c2bda", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:16", "1292123", "5ad5e4f1f3126c5d6cfdbfbbe5597c84", "md5_hash", "payload", "win.amadey", "None", "Amadey", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:12", "1292120", "e671a39ffdad8e262a45ef77d97a14f4", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:08", "1292117", "eaa443f37443cb7221d63e0891243384", "md5_hash", "payload", "win.amadey", "None", "Amadey", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:04", "1292114", "9ab4de8b2f2b99f009d32aa790cd091b", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:46:00", "1292111", "48d87e281c7d316d72677c80ecd02e29", "md5_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:45:56", "1292108", "148ec472df90b0fb274c3ce2ad2e811f", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:45:52", "1292105", "e9a886374becfb0a5b1dc0ffcee1a04a", "md5_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:45:48", "1292102", "e295671d8a71cd7a1ae699a2d47fa176", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:45:43", "1292099", "65485b0475b6c8a3b4f35bba541938a6", "md5_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:45:40", "1292096", "eb48500860ece87bc7a169118c929fb3", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:45:35", "1292093", "0390341ae8b5cfb1776b5ade742c5c9f", "md5_hash", "payload", "win.njrat", "Bladabindi,Lime-Worm", "NjRAT", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:45:31", "1292090", "9f259b3c899293bc12c9397e010f9e40", "md5_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:45:26", "1292087", "58972b34ce77f8d7bbaa3f5b5344db20", "md5_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:45:19", "1292084", "3871bbbefaf123ebba9f9206f883b745", "md5_hash", "payload", "win.remcos", "RemcosRAT,Remvio,Socmer", "Remcos", "", "95", "None", "None", "0", "Grim" "2024-07-02 03:45:12", "1292081", "a8a7ded2a82dc5650d018a55944ed7f6", "md5_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:36:08", "1291990", "3ce5798ab1e89a0b8fb1018e24f86e1d", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:35:58", "1291987", "314109f86e3618d81ba66e18e77afdd1", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:35:53", "1291984", "5d2dee9f4e6deadfa94566a5174cd4af", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:35:49", "1291981", "5b7d69cfb454d980807ff3621f93dc0e", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:35:44", "1291978", "c317677f514414b3c82e5dd2015d92c7", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:35:38", "1291975", "4bfe7a656d28f578ca10aba4c225ff41", "md5_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:35:33", "1291972", "a6d026ed6d34720275d8d6fd98ad5113", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:35:28", "1291969", "a273d142217177ab8013d6ebeafbc22f", "md5_hash", "payload", "win.remcos", "RemcosRAT,Remvio,Socmer", "Remcos", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:35:23", "1291966", "52f103ffbf6510895d831eddd2e57b84", "md5_hash", "payload", "win.ghost_rat", "Farfli,Gh0st RAT,PCRat", "Ghost RAT", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:35:13", "1291963", "246238533bb596d52737946aaf4b4d37", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:35:03", "1291960", "53af3ee8086ade525f0e6de306732181", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:58", "1291957", "5245e885034ad00adf09b4e8ad03c5f1", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:53", "1291954", "375a7c8575a28440c4e4f0b72df2f759", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:44", "1291951", "61892612c6e00ea0df4b49338aca144f", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:37", "1291948", "ca3eb964a153ee205b42a58827ed7121", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:33", "1291945", "d299f9454bbcd4f38b61cce01fd4c7ea", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:28", "1291942", "ffd403a9e8f8342fc37865b623a25c15", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:24", "1291939", "158c5c0367c262694f3c44ae85b891b6", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:20", "1291936", "8c73ec89a8883397cf87b73f4e8a23e6", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:16", "1291933", "7e3694a4d525aecb407e7dfee160afee", "md5_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:13", "1291930", "cb45d49e68b2c594f6c9bcf7edd6481a", "md5_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:09", "1291927", "3fa2d76350df22a5286ecdc385a9d12c", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:05", "1291924", "e03cefcd99feaf7ca8fd37a4bec8280c", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:34:01", "1291921", "2065a9f7f62658d08ff35f5ad4624261", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:57", "1291918", "a45de4191ab20f3a4c96cb77374a4be9", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:54", "1291915", "74306ff01db05a602a39c5da423b8d00", "md5_hash", "payload", "win.remcos", "RemcosRAT,Remvio,Socmer", "Remcos", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:50", "1291912", "2e7f73530b2e1838c10cce04b32a9efc", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:46", "1291909", "7d46fab950aba821fb72c0cfa8b9020c", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:43", "1291906", "7209b128b0d497a53b590440f4584365", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:40", "1291903", "9e95a8760a865511ba43df2f5ed94758", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:36", "1291900", "b16699f8fd5e68de16d8904ec7cd3ed2", "md5_hash", "payload", "win.remcos", "RemcosRAT,Remvio,Socmer", "Remcos", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:33", "1291897", "d1506fb79fe157864b5f1deb19d08505", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:29", "1291894", "66800cae69c4278c8a33921d624b7528", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:25", "1291891", "a7d19fbc517a5715df9b7f808c7dad0d", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:21", "1291888", "6d16dcf1423b30677d2918ae11fe2bc3", "md5_hash", "payload", "win.remcos", "RemcosRAT,Remvio,Socmer", "Remcos", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:18", "1291885", "d1a2cbab1475901a3cf28257b7a2e3a7", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:12", "1291882", "e3ed377ab14e39f0c07d9b201622e861", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:09", "1291879", "5d611c1a4fac892152b22dddcc0d5633", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:05", "1291876", "37f3b2a7f84422ea9fce13bcc170461b", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:33:02", "1291873", "f44bc4e0027f0f44d75fed04b8416be2", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:58", "1291870", "cfe45abfe40b8061a44641d33d4d1f2c", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:55", "1291867", "d25f3ee44bb814147d9dfcd6dc2edb24", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:51", "1291864", "654250ecc760dba28b9cfb21eb82f95e", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:48", "1291861", "8951c491b26675b308464af7a29567bd", "md5_hash", "payload", "win.lokipws", "Burkina,Loki,LokiBot,LokiPWS", "Loki Password Stealer (PWS)", "2024-07-02 03:50:39", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:45", "1291858", "99cb0eaed43875839b9198f5e0508ae6", "md5_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "2024-07-02 03:50:36", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:41", "1291855", "70b599f67e97cb878ca7be88e069a82d", "md5_hash", "payload", "win.lazarloader", "None", "LazarLoader", "2024-07-02 03:50:18", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:37", "1291852", "e7402bd65e8bff7c8776f808f48b4bee", "md5_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "2024-07-02 03:50:06", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:34", "1291849", "41305a03ab13c04d20212eee8e4bc06a", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "2024-07-02 03:49:53", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:30", "1291846", "5d42b6f5c9ba52b536aa485bd1f70b81", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "2024-07-02 03:49:50", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:27", "1291843", "f5b72b219b9dc802075066951e0f5aad", "md5_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "2024-07-02 03:49:40", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:23", "1291840", "ce48ccb415f96a4d2e427cd800383067", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "2024-07-02 03:49:37", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:19", "1291837", "944a0048e334fd1cf24f880bf0d17702", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "2024-07-02 03:49:33", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:15", "1291834", "1e91dfed225f5056190e2217c5e59c1b", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "2024-07-02 03:49:30", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:11", "1291831", "6ce6e6804881ee247359904ac6500caf", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "2024-07-02 03:49:27", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:07", "1291828", "28f77c9af8cb3ea886714bbfc8326635", "md5_hash", "payload", "win.remcos", "RemcosRAT,Remvio,Socmer", "Remcos", "2024-07-02 03:49:23", "95", "None", "None", "0", "Grim" "2024-07-01 14:32:04", "1291825", "61b864cefd119277bdf87210e1624c2f", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "2024-07-02 03:49:20", "95", "None", "None", "0", "Grim" "2024-07-01 14:31:59", "1291822", "27af175b8006ce6c2376748b21748412", "md5_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "2024-07-02 03:49:10", "95", "None", "None", "0", "Grim" "2024-07-01 14:31:55", "1291819", "bc864bf3e7bf03bf665eb4e782989471", "md5_hash", "payload", "win.sigloader", "None", "SigLoader", "2024-07-02 03:49:07", "95", "None", "None", "0", "Grim" "2024-07-01 14:31:52", "1291816", "583010534e14bdb977607c366a280120", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "2024-07-02 03:49:04", "95", "None", "None", "0", "Grim" "2024-07-01 14:31:48", "1291813", "9e16214ee163b3f8bed83fd25b5d793b", "md5_hash", "payload", "win.sombrat", "None", "SombRAT", "2024-07-02 03:49:00", "95", "None", "None", "0", "Grim" "2024-07-01 14:31:45", "1291810", "1ef35ac48ac0a224d1a3fb301054bc1c", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "2024-07-02 03:48:56", "95", "None", "None", "0", "Grim" "2024-07-01 14:31:41", "1291807", "05b4a13a3d126cdd799e10c41b4b5af0", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "2024-07-02 03:48:52", "95", "None", "None", "0", "Grim" "2024-07-01 14:31:38", "1291804", "e78d43a26913cf101b98d1d04839eee2", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "2024-07-02 03:48:47", "95", "None", "None", "0", "Grim" "2024-07-01 14:31:35", "1291801", "2fdfaca974428d2f6b1d88ee7d66409c", "md5_hash", "payload", "win.agent_tesla", "AgenTesla,AgentTesla,Negasteal", "Agent Tesla", "2024-07-02 03:48:39", "95", "None", "None", "0", "Grim" "2024-07-01 14:31:31", "1291798", "657278fd67cfa173ce3bcf668b4a86d0", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "2024-07-02 03:48:34", "95", "None", "None", "0", "Grim" "2024-06-30 15:47:47", "1291239", "ff5735fd2989c4a287ab1224205aa5f8", "md5_hash", "payload", "win.phorpiex", "Trik,phorphiex", "Phorpiex", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:47:28", "1291236", "ad3893ee2a8e40f2700236672635f5aa", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:47:24", "1291233", "f87fe42f687b5960b4b1bd73e6a9aae9", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:47:21", "1291230", "f6bc727b25a9d6d15f62d459f2d875d0", "md5_hash", "payload", "win.xworm", "None", "XWorm", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:47:17", "1291227", "90a6868b7ce2020387d453aa38668584", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:47:13", "1291224", "6850a8c541b310a2f4a5cd88352856a3", "md5_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:47:09", "1291221", "199c0a43e18ed14aaeca53007d4c4f4d", "md5_hash", "payload", "win.meterpreter", "None", "Meterpreter", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:47:06", "1291218", "1aeb3a19d439d8a4a00313d12f463827", "md5_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:47:01", "1291215", "2bebcc27d5c495d9b776162968f42b07", "md5_hash", "payload", "win.formbook", "win.xloader", "Formbook", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:58", "1291212", "c6107dbd486b08126c43455536ca3478", "md5_hash", "payload", "win.xworm", "None", "XWorm", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:53", "1291209", "2f77b6ba0d6b4cf6cb232c0e5aa2f999", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:50", "1291207", "5bc392a75e9f0c3b36f344096f0183cc", "md5_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:46", "1291204", "19e47b9abf123f4502545a5fcb43c855", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:42", "1291201", "b88f61a7938ef8af011259c59efc3d3d", "md5_hash", "payload", "win.redline_stealer", "RECORDSTEALER", "RedLine Stealer", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:38", "1291198", "46019f266084534e1c19c1204e62a618", "md5_hash", "payload", "win.asyncrat", "None", "AsyncRAT", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:34", "1291195", "29c4f7618e72214116ae6e7c578a4dc9", "md5_hash", "payload", "win.cobalt_strike", "Agentemis,BEACON,CobaltStrike,cobeacon", "Cobalt Strike", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:30", "1291192", "5038e381411591332b285c540d4b6bef", "md5_hash", "payload", "win.nimgrabber", "None", "NimGrabber", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:27", "1291190", "23e15451f81dcb7b0f16e61635b21e8d", "md5_hash", "payload", "win.cobalt_strike", "Agentemis,BEACON,CobaltStrike,cobeacon", "Cobalt Strike", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:22", "1291187", "03ff3bba0065b0b29723f59c41890e45", "md5_hash", "payload", "win.phobos", "None", "Phobos", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:18", "1291185", "ec656f2e9d53e5c30ae03301cc4348ea", "md5_hash", "payload", "win.phobos", "None", "Phobos", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:14", "1291182", "3d3aedfaeaf39544ff74fe6fe4541fc2", "md5_hash", "payload", "win.younglotus", "DarkShare", "YoungLotus", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:10", "1291179", "18f5a3194d73e08d7d66b7a3b42568b3", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:06", "1291176", "5d66f215d88815d93ff3b29f204c276e", "md5_hash", "payload", "win.coinminer", "None", "Coinminer", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:46:01", "1291173", "428bdccd4c240a253810e1c2a4ff8b78", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:45:55", "1291170", "44af609614d408633bb7ef5f561776c8", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:45:49", "1291167", "48c2137034bee9bdfc2c9df1e71e9e04", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:45:43", "1291164", "44809186c26c6851b67bd98c5498f3ca", "md5_hash", "payload", "win.stealc", "None", "Stealc", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:45:36", "1291161", "4ff5332f95664c94649a67a3b0719cd1", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:45:26", "1291158", "587e1d2473fea9284918bfbcf9897de2", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:45:00", "1291155", "5973141a1645142524005a976300ad3a", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:44:59", "1291153", "617eb3b2bf0d4d853c5710304318a1ce", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:44:49", "1291150", "57cb0d1fbbe7e57e906d9bec624ff50f", "md5_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:44:44", "1291147", "0c5a964f9cbf2fec077302e6baa7316f", "md5_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:44:38", "1291144", "5e4f2d9678bad336f1d711b618dc673f", "md5_hash", "payload", "win.dcrat", "DarkCrystal RAT", "DCRat", "", "95", "None", "None", "0", "Grim" "2024-06-30 15:44:33", "1291141", "65e2a9349c75ee34280992ed2e7aa548", "md5_hash", "payload", "win.krakenkeylogger", "None", "KrakenKeylogger", "", "95", "None", "None", "0", "Grim" # Number of entries: 163