ThreatFox IOC Database

You are viewing the ThreatFox database entry for url https://rhussois.su/tatr.

Database Entry


IOC ID:1583393
IOC: https://rhussois.su/tatr
IOC Type :url
Threat Type :botnet_cc
Malware: Lumma Stealer
Malware alias:LummaC2 Stealer
Confidence Level : Confidence level is elevated (75%)
ASN:AS14061 DIGITALOCEAN-ASN
Country:- US
First seen:2025-09-07 16:06:21 UTC
Last seen:2025-09-22 14:39:00 UTC
UUID:9870ae30-8c04-11f0-bfa6-42010aa4000a
Reporter abuse_ch
Reward 50 credits from anonymous
Tags:Lumma
Reference: https://bazaar.abuse.ch/sample/2646ca597f90c084f80741cf122b58e55767582135a7d90e93cd6ffd165e9d4b/

Avatar
abuse_ch
lumma (aka LummaC2 Stealer) botnet C2