ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain tribadu.cyou.

Database Entry


IOC ID:1740786
IOC: tribadu.cyou
IOC Type :domain
Threat Type :botnet_cc
Malware: Lumma Stealer
Malware alias:LummaC2 Stealer
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS198953 proton66
Country:- RU
First seen:2026-02-03 17:13:21 UTC
Last seen:2026-02-25 18:19:09 UTC
UUID:a047a051-010f-11f1-ac94-42010aa4000a
Reporter Neiki
Reward 5 credits from ThreatFox
Tags:AutoIT discovery FINGERPRINTING Lumma persistence stealer
Reference: https://www.threat.rip/file/82d0a932141757041f855310a818ac577178c7d40cc00acea0c7e503d72862c6/config