TF-MAL-elf.ipstorm
📛 Threat Title
Malware family: IPStorm
Description
ThreatFox malware family `elf.ipstorm`. Printable name: IPStorm. Aliases: InterPlanetary Storm.
Indicators of Compromise (1)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
domain
elf.ipstorm
VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/elf.ipstorm
IOC database
- Type
- domain
- Value
elf.ipstorm- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Extracted from Threat TF-MAL-elf.ipstorm
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/elf.ipstorm
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (9)
-
web:cybersecuritynews.com
Samples analyzed and classified by Intezer in the IPStorm malware family . This victory against the IPStorm botnet reflects the unwavering commitment of law enforcement to disrupt and bring to justice cyber criminals who exploit the digital landscape for illicit gains.
-
web:intezer.com
UPDATE: The FBI has successfully secured a guilty plea from the individual responsible for the IPStorm infrastructure. Intezer's research team assisted in this case, sharing our findings and analysis about the new IPStorm malware variants and capabilities.
-
web:malpedia.caad.fkie.fraunhofer.de
A Look at IPStorm - Cross-Platform Malware Written in Go IPStorm IPStorm 2023-11-14 ⋅ Department of Justice ⋅ U.S. Attorney's Office District of Puerto Rico Russian and Moldovan National Pleads Guilty to Operating Illegal Botnet Proxy Service that Infected Tens of Thousands of Internet-Connected Devices Around the World IPStorm IPStorm
-
web:nationalcioreview.com
The FBI has successfully dismantled the IPStorm botnet and its associated infrastructure following a plea deal with the mastermind behind the operation, Sergei Makinin. Makinin, a Russian and Moldovan national, recently pleaded guilty to three hacking charges, exposing a malware scheme that infected thousands of devices across the globe.
-
web:securityaffairs.com
The Federal Bureau of Investigation (FBI) dismantled the infrastructure behind the illegal botnet proxy service IPStorm .
-
web:therecord.media
The FBI dismantled the IPStorm botnet proxy network and its infrastructure this week following a September plea deal with the hacker behind the operation. The Justice Department said it took down the infrastructure associated with the IPStorm malware — which experts said infected thousands of ...
-
web:www.justice.gov
In connection with the operation of that IPStorm malware and botnet proxy service, on September 18, 2023, Sergei Makinin, a Russian and Moldovan national, pled guilty to three counts of violating 18 U.S.C. § 1030 (a) (5) (A), knowingly causing the transmission of a program that intentionally caused damage without authorization to protected ...
-
web:www.pcmag.com
FBI Shuts Down 'IPStorm' Malware That Targeted Windows, Mac, Linux A Russian national arrested earlier this year also pleads guilty to developing and deploying the IPStorm malware .
-
web:www.securityweek.com
The US government on Tuesday announced the takedown of the IPStorm botnet and the guilty plea of a man who created and operated the cybercrime service. According to the Justice Department, the FBI dismantled the infrastructure associated with the IPStorm malware , as well as the proxy network powered by the IPStorm botnet.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.