ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain press-shuttle.gl.at.ply.gg.

Database Entry


IOC ID:1742289
IOC: press-shuttle.gl.at.ply.gg
IOC Type :domain
Threat Type :botnet_cc
Malware: XWorm
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS400519 PLAYIT-GG
Country:- US
First seen:2026-02-06 06:32:02 UTC
Last seen:2026-02-14 16:01:32 UTC
UUID:136cba55-02e9-11f1-ac94-42010aa4000a
Reporter Neiki
Reward 5 credits from ThreatFox
Tags:AUTO-REG AUTO-STARTUP evasion RAT trojan XWorm
Reference: https://www.threat.rip/file/32ecc91b0533b62976a6859616f842e1b1bf01446689ad370c64c8f1b450f9f0/config