ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://128.199.46.58/~hgyf/?search=7fc6d4827ac02405f2c6678cac581550.

Database Entry


IOC ID:375430
IOC: http://128.199.46.58/~hgyf/?search=7fc6d4827ac02405f2c6678cac581550
IOC Type :url
Threat Type :botnet_cc
Malware: Loki Password Stealer (PWS)
Malware alias:Burkina, Loki, LokiBot, LokiPWS
Confidence Level : Confidence level is high (100%)
ASN:AS14061 DIGITALOCEAN-ASN
Country:- US
First seen:2022-02-02 06:06:34 UTC
Last seen:never
UUID:464066b4-83ee-11ec-a824-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:Loki

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-02-06 08:29:51 c5fc4b85610131a73ed687423dfb23363d187e19a3fa9d7a2f2b8d73478e085b
2022-02-02 06:06:37 26a01f78fce25a11bbe6f34f3c898fb8d334b4766be29ce5f9fddb077718edbf