ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://136.144.41.76/contact/wins/inc/8eaf9c2923101a.php.

Database Entry


IOC ID:534237
IOC: http://136.144.41.76/contact/wins/inc/8eaf9c2923101a.php
IOC Type :url
Threat Type :botnet_cc
Malware: Agent Tesla
Malware alias:AgenTesla, AgentTesla, Negasteal
Confidence Level : Confidence level is high (100%)
ASN:AS14178 Megacable_Comunicaciones_de_Mexico_S.A._de_C.V.
Country:- MX
First seen:2022-04-26 10:56:42 UTC
Last seen:never
UUID:8e69f946-c54f-11ec-bfce-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:AgentTesla

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-04-27 09:40:14 bd1f6bdb6b8001be3c97da43ff8176ec48e88429a3d26821aa6a1d8e5bb7fbe6
2022-04-26 10:56:45 2123f1c10dac02ac6c2fe68531d4ac9f03b9dedf68bbf7988667c7938a1788f1