ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://a1000056.xsph.ru/L1nc0In.php.

Database Entry


IOC ID:1290403
IOC: http://a1000056.xsph.ru/L1nc0In.php
IOC Type :url
Threat Type :botnet_cc
Malware: DCRat
Malware alias:DarkCrystal RAT
Confidence Level : Confidence level is high (100%)
ASN:AS35278 SPRINTHOST
Country:- RU
First seen:2024-06-28 16:20:12 UTC
Last seen:never
UUID:4bc44e24-356a-11ef-8261-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:dcrat

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2024-06-29 01:40:11 2891ed67cda3644765fd94fce012ff41aa4e32fc4c2857e63648803884d76c6f
2024-06-29 00:35:10 8fc9056ebee5adcd70c3d96e53885fcb355030869137a6f1977a463759f15d86
2024-06-28 16:20:14 f9dc41ab7a043cf887b9737060be951dd11571c5774a8b6ca004b503c1995c72