ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://nestell.cyberhost.ml/HttpcpuUpdatepublicuploads.php.

Database Entry


IOC ID:387781
IOC: http://nestell.cyberhost.ml/HttpcpuUpdatepublicuploads.php
IOC Type :url
Threat Type :botnet_cc
Malware: DCRat
Malware alias:DarkCrystal RAT
Confidence Level : Confidence level is high (100%)
Is compromised? : False
First seen:2022-02-15 01:46:08 UTC
Last seen:never
UUID:0c05049b-8e01-11ec-a022-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:dcrat

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-02-15 01:46:11 c45a624b560c7b5aed57c94ac89d90d5056a2b50ba813a8b152c5e7cebba6a7b