ThreatFox IOC Database

You are viewing the ThreatFox database entry for url https://yuzhno-sahalinsk.xn----7sbbk0auidbf2b5a.xn--p1ai/.

Database Entry


IOC ID:1790070
IOC: https://yuzhno-sahalinsk.xn----7sbbk0auidbf2b5a.xn--p1ai/
IOC Type :url
Threat Type :payload_delivery
Malware: Vidar
Confidence Level : Confidence level is elevated (75%)
Is compromised? : True
ASN:AS49505 SELECTEL
Country:- RU
First seen:2026-04-14 13:18:40 UTC
Last seen:2026-05-04 06:50:01 UTC
UUID:743069dd-3804-11f1-8759-42010aa4000a
Reporter Anonymous
Reward 5 credits from ThreatFox
Tags:ClickFix compromised etherhiding Polygon Vidar WordPress

Avatar
Anonymous
Compromised WordPress site distributing Vidar Stealer via Polygon ClickFix campaign.