ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://cr39969.tw1.ru/47f8d9e3.php.

Database Entry


IOC ID:1369489
IOC: http://cr39969.tw1.ru/47f8d9e3.php
IOC Type :url
Threat Type :botnet_cc
Malware: DCRat
Malware alias:DarkCrystal RAT
Confidence Level : Confidence level is high (100%)
ASN:AS9123 TimeWeb-AS
Country:- RU
First seen:2024-12-29 19:40:15 UTC
Last seen:never
UUID:b9d120cb-c61c-11ef-91ae-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:dcrat

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2024-12-29 20:55:13 cf2af3301f31bae02df162a5287f7671b353a4d7c704235e84661778a92c0b67
2024-12-29 19:40:17 b003517c275f4ceb2bc2b54f77849c64818c7d37439201cab1cc2d91e8c66efd