ThreatFox IOC Database

You are viewing the ThreatFox database entry for url https://nuco75srh4vta5zglxcp4ziabljitvr5yfeqcnwzdauufkzo3hd2w3qd.onion:35495/.

Database Entry


IOC ID:1346102
IOC: https://nuco75srh4vta5zglxcp4ziabljitvr5yfeqcnwzdauufkzo3hd2w3qd.onion:35495/
IOC Type :url
Threat Type :botnet_cc
Malware: Raspberry Robin
Malware alias:RaspberryRobin, QNAP-Worm, LINK_MSIEXEC
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
First seen:2024-11-19 21:56:17 UTC
Last seen:never
UUID:1a37d916-a6c1-11ef-91ae-42010aa4000a
Reporter Anonymous
Reward 5 credits from ThreatFox
Tags:RaspberryRobin
Reference: https://www.zscaler.com/blogs/security-research/unraveling-raspberry-robin-s-layers-analyzing-obfuscation-techniques-and