ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://83.149.87.220/0d54c1cf0e397eec256ecda040dea512.

Database Entry


IOC ID:730759
IOC: http://83.149.87.220/0d54c1cf0e397eec256ecda040dea512
IOC Type :url
Threat Type :botnet_cc
Malware: Raccoon
Malware alias:Mohazo, RaccoonStealer, Racealer, Racoon
Confidence Level : Confidence level is elevated (75%)
ASN:AS60781 LEASEWEB-NL-AMS-01
Country:- NL
First seen:2022-06-28 09:03:42 UTC
Last seen:2022-06-28 09:06:59 UTC
UUID:3585cd39-f6c1-11ec-9b75-42010aa4000a
Reporter sekoia_io
Reward 5 credits from ThreatFox
Tags:raccoon recordbreaker stealer
Reference: https://blog.sekoia.io/raccoon-stealer-v2-part-1-the-return-of-the-dead/

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-07-31 23:20:37 bb55d270dabacf3c508d57da491d4cbc7663add182c5b78e43e717b2c74a6897