ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://clamprite.ga/emma/inc/6bc6afbbcf388e.php.

Database Entry


IOC ID:841228
IOC: http://clamprite.ga/emma/inc/6bc6afbbcf388e.php
IOC Type :url
Threat Type :botnet_cc
Malware: Agent Tesla
Malware alias:AgenTesla, AgentTesla, Negasteal
Confidence Level : Confidence level is high (100%)
ASN:AS16276 OVH
Country:- FR
First seen:2022-08-03 07:30:42 UTC
Last seen:2022-11-12 21:53:19 UTC
UUID:2e08c0fc-12fe-11ed-961f-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:AgentTesla

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-08-04 03:20:13 df8723cf1e135173f9a26e74fbd3f4f3e85cb4b0a922d17fdb9c38699164d6e5
2022-08-04 03:20:11 184d29dc3f61be7eae40a6b38ec4ce6ea0c10eeb141d6f81252488d5269af1b2
2022-08-03 07:30:43 fd3ee92d2d58129a26dd3f43816178047afc35b7b423da06a6db32ea23ff6613