ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain ttnznxatnj23395.com.

Database Entry


IOC ID:1137005
IOC: ttnznxatnj23395.com
IOC Type :domain
Threat Type :botnet_cc
Malware: FAKEUPDATES
Malware alias:FakeUpdate, GhoLoader, SocGholish
Confidence Level : Confidence level is high (100%)
First seen:2023-07-10 05:55:29 UTC
Last seen:never
UUID:d7b75c64-1eb2-11ee-b1e6-42010aa4000a
Reporter rmceoin
Reward 5 credits from ThreatFox
Tags:SocGholish

Avatar
rmceoin
Resolves to 45.77.195.105
Compromised site -> SocGholish Keitaro TDS -> SocGholish C2 -> asfgze.fun -> various DGA -> these Powershell beacon C2