ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain gestcular.cfd.

Database Entry


IOC ID:1628768
IOC: gestcular.cfd
IOC Type :domain
Threat Type :botnet_cc
Malware: HijackLoader
Malware alias:DOILoader, GHOSTPULSE, IDAT Loader, SHADOWLADDER
Confidence Level : Confidence level is moderate (50%)
Is compromised? : False
ASN:AS57043 HOSTKEY-AS
Country:- RU
First seen:2025-10-29 07:22:28 UTC
Last seen:2026-06-08 05:41:29 UTC
UUID:068f2b33-b498-11f0-894e-42010aa4000a
Reporter juroots
Reward 5 credits from ThreatFox
Tags:c2 HijackLoader