ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain crm.bestintownpro.com.

Database Entry


IOC ID:1390757
IOC: crm.bestintownpro.com
IOC Type :domain
Threat Type :botnet_cc
Malware: FAKEUPDATES
Malware alias:FakeUpdate, GhoLoader, SocGholish
Confidence Level : Confidence level is high (100%)
ASN:AS396982 GOOGLE-CLOUD-PLATFORM
Country:- US
First seen:2025-01-21 16:29:47 UTC
Last seen:never
UUID:549d224c-d812-11ef-a6b5-42010aa4000a
Reporter monitorsg
Reward 10 credits from anonymous
Tags:SocGholish
Reference: https://infosec.exchange/@monitorsg/113867218661101800

Avatar
monitorsg
wildcard domain, C2