ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain malware.nangtamlonto.top.

Database Entry


IOC ID:1675885
IOC: malware.nangtamlonto.top
IOC Type :domain
Threat Type :botnet_cc
Malware: Quasar RAT
Malware alias:CinaRAT, QuasarRAT, Yggdrasil
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
First seen:2025-12-11 19:20:20 UTC
Last seen:2025-12-19 10:39:53 UTC
UUID:6f2e811d-d6c6-11f0-a341-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:quasar
Reference: https://bazaar.abuse.ch/sample/a0e52c62b620f7c7318fd87ec6d4d4a6e1141fab03e8f88e02cea45e2689fe95/

Avatar
abuse_ch
quasar (aka CinaRAT,QuasarRAT,Yggdrasil) botnet C2 on port 4444 TCP