ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain billing.roofnrack.us.

Database Entry


IOC ID:1571637
IOC: billing.roofnrack.us
IOC Type :domain
Threat Type :botnet_cc
Malware: FAKEUPDATES
Malware alias:FakeUpdate, GhoLoader, SocGholish
Confidence Level : Confidence level is elevated (75%)
ASN:AS395092 SHOCK-1
Country:- US
First seen:2025-08-20 11:18:51 UTC
Last seen:2025-08-26 14:51:36 UTC
UUID:736889f5-7db7-11f0-bfa6-42010aa4000a
Reporter drb_ra
Reward 10 credits from anonymous
Tags:drb-ra SocGholish