ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain app.andredenault.com.

Database Entry


IOC ID:1391290
IOC: app.andredenault.com
IOC Type :domain
Threat Type :botnet_cc
Malware: FAKEUPDATES
Malware alias:FakeUpdate, GhoLoader, SocGholish
Confidence Level : Confidence level is high (100%)
ASN:AS13335 CLOUDFLARENET
Country:- US
First seen:2025-01-22 09:08:27 UTC
Last seen:never
UUID:3141cf13-d898-11ef-a6b5-42010aa4000a
Reporter monitorsg
Reward 10 credits from anonymous
Tags:SocGholish
Reference: https://infosec.exchange/@monitorsg/113870986540892122

Avatar
monitorsg
wildcard domain, C2