ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://cy52165.tw1.ru/L1nc0In.php.

Database Entry


IOC ID:1369171
IOC: http://cy52165.tw1.ru/L1nc0In.php
IOC Type :url
Threat Type :botnet_cc
Malware: DCRat
Malware alias:DarkCrystal RAT
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS9123 TimeWeb-AS
Country:- RU
First seen:2024-12-29 08:53:34 UTC
Last seen:never
UUID:502f2ad4-c5c2-11ef-91ae-42010aa4000a
Reporter ggpabuk
Reward 5 credits from ThreatFox
Tags:RAT
Reference: https://app.any.run/tasks/dcb5173e-76a7-4804-9d04-781b54bbc800

Avatar
ggpabuk
abuse mail ignored twice

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-01-02 06:45:18 9c351c1e11a2e25b53edd78ca7bf03bd0c6afd2d0bfbeb5dad6cbe8f24edbd5c