youri.mooo.com
Classification: Malicious
youri.mooo.com is a malicious hostname. Linked to Njrat malware. Reported by 2 threat sources, last seen 2023-09-29.
Current activity
- Offline — no longer resolving. Last online 2023-09-29 14:39:52.
- Command & Control server — Used by cybercriminals to control victim computers.
MITRE ATT&CK associations
Malware families: NJRAT (S0385)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| NjRAT | ThreatFox Abuse.ch | 2023-09-27 14:10:25 | 2023-09-29 14:39:52 | malicious-activity | S0385 njRAT |
| Backdoor.Bladabindi | Hybrid-Analysis | 2021-08-04 22:00:27 | 2021-08-04 22:00:27 |
Tags
c2 historicalandnew njrat bladabindi lime-wormIP addresses resolved by this hostname
- 77.49.31.70 (2021-08-04 22:00:27)
Whois information
- AS name
- AS1241 Forthnet
- Domain
- mooo.com
- TLD
- com
- First indexed
- 2021-08-04 22:00:27
- Last updated
- 2023-09-29 14:39:52