ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://cu08926.tw1.ru/d777d38d.php.

Database Entry


IOC ID:1570628
IOC: http://cu08926.tw1.ru/d777d38d.php
IOC Type :url
Threat Type :botnet_cc
Malware: DCRat
Malware alias:DarkCrystal RAT
Confidence Level : Confidence level is high (100%)
ASN:AS9123 TimeWeb-AS
Country:- RU
First seen:2025-08-18 05:40:22 UTC
Last seen:never
UUID:d54ec5f3-7bf5-11f0-b2c6-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:dcrat RAT

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-08-18 08:45:23 d623ebd387e46bf8cb0f970d6238d95e5e3226ffce22a987e9565e65753ac603
2025-08-18 06:15:29 ed29ad4d8d35bc2559a44196300367ef6b073847f7174f61dfa421c9a6d296ac
2025-08-18 05:40:25 5fce6e4fd13c8a457e073744d51094c40b6bb50b87b3fcad75d14c373eeab9dd