ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain gohapel398-62132.portmap.host.

Database Entry


IOC ID:1738474
IOC: gohapel398-62132.portmap.host
IOC Type :domain
Threat Type :botnet_cc
Malware: Quasar RAT
Malware alias:CinaRAT, QuasarRAT, Yggdrasil
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS198134 GETWIFI-AS
Country:- RU
First seen:2026-01-28 10:16:17 UTC
Last seen:2026-02-21 11:00:39 UTC
UUID:6226c8c9-fc32-11f0-b7d0-42010aa4000a
Reporter DonPasci
Reward 5 credits from ThreatFox
Tags:c2 domain quasar RAT triage
Reference: https://tria.ge/260128-jqyggsf12f

Avatar