ThreatFox IOC Database
You are viewing the ThreatFox database entry for domain deficulintersun.com.
Database Entry
This IOC expired
This IOC is an old IOC and hence has expired on 2026-02-04 01:15:01 UTC. We therefore refrain from exporting it into our datasets. As a result, this database entry is purely informational and has no impact.
| IOC ID: | 839979 |
|---|---|
| IOC: | deficulintersun.com |
| IOC Type : | domain |
| Threat Type : | botnet_cc |
| Malware: | IcedID Downloader |
| Confidence Level : | Confidence level is elevated (75%) |
| Is compromised? : | False |
| ASN: | AS51852 PLI-AS |
| Country: | PA |
| First seen: | 2022-07-28 16:05:06 UTC |
| Last seen: | 2023-09-29 09:39:34 UTC |
| UUID: | 0c6141cf-0e8f-11ed-8499-42010aa4000a |
| Reporter | |
| Reward | 5 credits from ThreatFox |
| Tags: | IcedID |
| Reference: | https://bazaar.abuse.ch/sample/97cee47dbde3ce0063fb5b930932aa8daa8d109e738984ecf61c05a04e76139f/ |
Malware Samples
The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).
| Time stamp (UTC) | SHA256 hash | Bazaar |
|---|---|---|
| 2022-07-30 17:50:35 | 6ab967f14ba295d42adedb115739100d3da6ed0e908f59c7e3189af62976329a |
PA