ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://91.92.252.146:8008/aioy/five/fre.php.

Database Entry


IOC ID:1332969
IOC: http://91.92.252.146:8008/aioy/five/fre.php
IOC Type :url
Threat Type :botnet_cc
Malware: Loki Password Stealer (PWS)
Malware alias:Burkina, Loki, LokiBot, LokiPWS
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS2914 NTT-DATA-2914
Country:- JP
First seen:2024-10-02 16:30:20 UTC
Last seen:never
UUID:0a9c9eb4-80da-11ef-894b-42010aa4000a
Reporter Gi7w0rm
Reward 5 credits from ThreatFox