ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://49.12.226.201/base/api/getData.php.

Database Entry


IOC ID:858734
IOC: http://49.12.226.201/base/api/getData.php
IOC Type :url
Threat Type :botnet_cc
Malware: PrivateLoader
Confidence Level : Confidence level is high (100%)
ASN:AS24940 HETZNER-AS
Country:- DE
First seen:2022-09-30 12:48:08 UTC
Last seen:2023-02-24 00:59:59 UTC
UUID:229be6a6-40be-11ed-ae73-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:privateloader

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-10-01 09:40:08 5a5158c712e1588c621124b5dc4b0c3ebfc064ffc0e2c2623d152e369eb8b8a5
2022-09-30 12:48:12 bf32d6402dff27525f6c67730b00a9f7e220ab4a258deee88fa9ada3f358a055