PULSE NAME
OSINT Volley 2026-02-05 - Unknown malware/Unknown Stealer/Cobalt Strike
WHITE pduggusa 2026-02-05 Modified: 2026-03-07
111
IOCs
HIGH VOLUME
Automated OSINT sweep from ThreatFox. Top malware: Unknown malware(63), Unknown Stealer(28), Cobalt Strike(21), Remcos(18), Lumma Stealer(17). Source: abuse.ch ThreatFox API. SSL enriched: 24 IPs with HTTPS, 19 self-signed (C2 candidates). Pattern 54: sweep→volley automation.
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
Unknown malware Unknown Stealer Cobalt Strike Remcos Lumma Stealer
Indicators of Compromise (15 / 111 total)
All URL domain hostname FileHash-SHA256 FileHash-MD5
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 d47261e52335b516a777da368208ee91 ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 e4a5c4b205e1b80dc20d9a2fb4126d06 ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 859c4b85ed85e6cc4eadb1a037a61e16 ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 2f7b4dca1c79e525aef8da537294a6c4 ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 337cecf067ecf0609b943b54fb246ed2 ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 41c51784f6d601ffd0e09b7d59ff6025 ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 4727582023cd8071a6f388ea3ba2feaa ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 58f517bdc9ba8de1b69829b0dcf86113 ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 6408276cdfd12a1d5d3ed7256bfba639 ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 7c396677848776f9824ebe408bbba943 ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 b6a86f44d0a3fa5a5ac979d691189f2d ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 c306e0a3ec528368f0b0332104148266 ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 1550ae7df233bb9a9c9e78bf8b236072 ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 0df3fde016f3c0974d4aa01b06724a33 ThreatFox: Unknown malware - payload 2026-02-05
FileHash-MD5 045d1e0686f8b4b49b2d9cf48ac821f8 ThreatFox: Unknown malware - payload 2026-02-05