ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://mamabearcoffee.com/wp-content/plugins/weglot/dist/css/rah.php.

Database Entry


IOC ID:346335
IOC: http://mamabearcoffee.com/wp-content/plugins/weglot/dist/css/rah.php
IOC Type :url
Threat Type :payload_delivery
Malware: Hancitor
Malware alias:Chanitor
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS398101 GO-DADDY-COM-LLC
Country:- US
First seen:2022-01-27 03:49:19 UTC
Last seen:never
UUID:1b7521df-7f24-11ec-a824-42010aa4000a
Reporter Cryptolaemus1
Reward 5 credits from ThreatFox
Tags:doc Hancitor html