ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://194.87.218.122/Jsserverdwa31.php.

Database Entry


IOC ID:390076
IOC: http://194.87.218.122/Jsserverdwa31.php
IOC Type :url
Threat Type :botnet_cc
Malware: DCRat
Malware alias:DarkCrystal RAT
Confidence Level : Confidence level is high (100%)
ASN:AS207713 GIR-AS
Country:- RU
First seen:2022-02-22 14:51:02 UTC
Last seen:never
UUID:dad6732c-93ee-11ec-a022-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:dcrat

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-02-22 14:56:08 bcede46445b13b3def4d8363b1365903a72f3ed6c09ff078bd3a090f65ed0937
2022-02-22 14:51:05 93c049876b916ec5034d9884338be59b11bce8a74f4d0bea329a3ed028c41b88