ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain xgpviv.za.com.

Database Entry


IOC ID:1734325
IOC: xgpviv.za.com
IOC Type :domain
Threat Type :botnet_cc
Malware: AsyncRAT
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS13335 CLOUDFLARENET
Country:- US
First seen:2026-01-19 11:50:38 UTC
Last seen:2026-02-07 11:52:57 UTC
UUID:1288d53a-f52d-11f0-9957-42010aa4000a
Reporter abuse_ch
Reward 10 credits from wance
Tags:asyncrat
Reference: https://bazaar.abuse.ch/sample/620664270e52acf2b8512390e25de3e39b157f9c5a3596d0a637e236866ce2b5/

Avatar
abuse_ch
asyncrat botnet C2 on port 1337 TCP