🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for url https://raw.githubusercontent.com/willbill4/workspaceer/.

Database Entry


IOC ID:1310073
IOC: https://raw.githubusercontent.com/willbill4/workspaceer/
IOC Type :url
Threat Type :botnet_cc
Malware: RAWDOOR
Confidence Level : Confidence level is moderate (49%)
Is compromised? : False
ASN:AS54113 FASTLY
Country:- DE
First seen:2024-08-13 05:58:42 UTC
Last seen:2024-11-29 14:48:40 UTC
UUID:bc6947ef-58e5-11ef-bfcd-42010aa4000a
Reporter johannes
Reward 5 credits from ThreatFox
Reference: https://harfanglab.io/insidethelab/apt31-indictment-analysis/

Avatar
johannes
RAWDOOR C2 (hosted by legitimate service), from the HarfangLab report "Analysis of the APT31 indictment". See all IOC from that report at https://rosti.bin.re/reports/Q1IDy8V8