ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://camsmartinverter.serveirc.com/QuniO/Panel/five/fre.php.

Database Entry


IOC ID:68394
IOC: http://camsmartinverter.serveirc.com/QuniO/Panel/five/fre.php
IOC Type :url
Threat Type :botnet_cc
Malware: Loki Password Stealer (PWS)
Malware alias:Burkina, Loki, LokiBot, LokiPWS
Confidence Level : Confidence level is high (100%)
First seen:2021-06-01 08:57:15 UTC
Last seen:never
UUID:5c9993e9-c2b7-11eb-b17b-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:Loki

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-06-01 14:17:09 a9b0173e087fa0c22544734ea476afba2ac75d32b22d88abcfea206517dded8e
2021-06-01 08:57:17 321e7fea6ceb5255c592162c7781c524b7569c3f1244274a247f5f0c97702c49