ThreatFox IOC Database

You are viewing the ThreatFox database entry for url https://ownmbaego.com/index.php.

Database Entry


IOC ID:1590671
IOC: https://ownmbaego.com/index.php
IOC Type :url
Threat Type :botnet_cc
Malware: SmokeLoader
Malware alias:Dofoil, Sharik, Smoke, Smoke Loader
Confidence Level : Confidence level is moderate (49%)
Is compromised? : False
ASN:AS62082 HOSTLAND
Country:- RU
First seen:2025-09-16 06:48:35 UTC
Last seen:2025-09-17 05:56:14 UTC
UUID:abaadfb3-9254-11f0-bfa6-42010aa4000a
Reporter johannes
Reward 5 credits from ThreatFox
Reference: https://www.zscaler.com/blogs/security-research/smokeloader-rises-ashes

Avatar
johannes
SmokeLoader C2, from the ZScaler report "SmokeLoader Rises From the Ashes". See all IOC from that report at https://rosti.bin.re/reports/r5BsP9eH