ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://sempersim.su/gl2/fre.php.

Database Entry


IOC ID:880626
IOC: http://sempersim.su/gl2/fre.php
IOC Type :url
Threat Type :botnet_cc
Malware: Loki Password Stealer (PWS)
Malware alias:Burkina, Loki, LokiBot, LokiPWS
Confidence Level : Confidence level is high (100%)
First seen:2022-10-13 09:30:26 UTC
Last seen:2022-10-13 15:38:33 UTC
UUID:abc0a903-4ad9-11ed-8054-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:Loki

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-10-14 07:50:08 851c8f56b8b81bd21099c6932e6b51df2087436df6c33031b5a65deb77b95def
2022-10-13 11:25:24 e69dbf92db4af31b8d796e85e0e94b1a52023f59370cb9868474f3d10c23fdd2
2022-10-13 09:40:30 ff0fd43e7ad37042877ec082b46556ede189857acb5f38a073edfaebf6af6668