IOC Alert: Lumma Stealer C2 Domain Identified – larpfxs[.]top
IOC Alert: Lumma Stealer C2 Domain Identified – larpfxs[.]top
📖 Overview
A new domain-based indicator has been identified linked to botnet command-and-control infrastructure for apk.hook (HookBot). The domain, hosted under Hetzner (AS24940), is tied to ERMAC v3.0 activity and represents a high-confidence threat to Android devices targeted by banking trojans.
📌 Key Details
FieldInformationTypeDomain