ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain zone.ebuilderssource.com.

Database Entry


IOC ID:1378969
IOC: zone.ebuilderssource.com
IOC Type :domain
Threat Type :botnet_cc
Malware: FAKEUPDATES
Malware alias:FakeUpdate, GhoLoader, SocGholish
Confidence Level : Confidence level is high (100%)
ASN:AS27553 TELNET
Country:- US
First seen:2025-01-06 09:31:54 UTC
Last seen:never
UUID:ec9d7ceb-cbfc-11ef-893f-42010aa4000a
Reporter monitorsg
Reward 10 credits from anonymous
Tags:SocGholish
Reference: https://infosec.exchange/@monitorsg/113780147008259116

Avatar
monitorsg
wildcard domain, C2