ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://194.180.48.211/frog/dnsJRjnsci193.sea.

Database Entry


IOC ID:1165610
IOC: http://194.180.48.211/frog/dnsJRjnsci193.sea
IOC Type :url
Threat Type :payload_delivery
Malware: CloudEyE
Malware alias:GuLoader, vbdropper
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS15440 Baltneta
Country:- LT
First seen:2023-09-21 15:11:19 UTC
Last seen:never
UUID:475b038a-588c-11ee-ab4a-42010aa4000a
Reporter Gi7w0rm
Reward 5 credits from ThreatFox
Reference: https://research.checkpoint.com/2023/unveiling-the-shadows-the-dark-alliance-between-guloader-and-remcos/