ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://rafraystore.ru/index.php.

Database Entry


IOC ID:1274567
IOC: http://rafraystore.ru/index.php
IOC Type :url
Threat Type :botnet_cc
Malware: SmokeLoader
Malware alias:Dofoil, Sharik, Smoke, Smoke Loader
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
First seen:2024-05-23 18:20:10 UTC
Last seen:never
UUID:17560b16-1931-11ef-a571-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:smokeloader
Reference: https://bazaar.abuse.ch/sample/7be9ef61632edc0f2fc6ad59d64ad69dbffbd05013a80ab1dfbb6bd8a6090b66/

Avatar
abuse_ch
smokeloader (aka Dofoil,Sharik,Smoke,Smoke Loader) botnet C2