ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://185.76.243.96/frlb.odg.

Database Entry


IOC ID:1596292
IOC: http://185.76.243.96/frlb.odg
IOC Type :url
Threat Type :payload_delivery
Malware: Lumma Stealer
Malware alias:LummaC2 Stealer
Confidence Level : Confidence level is elevated (75%)
ASN:AS215540 GCS-AS
Country:- RU
First seen:2025-09-21 06:28:53 UTC
Last seen:never
UUID:7c2367bc-969c-11f0-bfa6-42010aa4000a
Reporter stopransom
Reward 5 credits from ThreatFox
Tags:Lumma