ThreatFox IOC Database

You are viewing the ThreatFox database entry for url https://wrat.in:992/sa1at/.

Database Entry


IOC ID:1807823
IOC: https://wrat.in:992/sa1at/
IOC Type :url
Threat Type :botnet_cc
Malware: Unknown malware
Confidence Level : Confidence level is moderate (49%)
Is compromised? : False
ASN:AS215703 FREAKHOSTING
Country:- GB
First seen:2026-05-06 20:53:18 UTC
Last seen:2026-05-07 09:05:05 UTC
UUID:8a8f2e38-4973-11f1-8759-42010aa4000a
Reporter johannes
Reward 5 credits from ThreatFox
Tags:Salat Stealer
Reference: https://darkatlas.io/blog/salat-stealer-analysis-go-based-rat-c2-resilience-and-info-stealing-capabilities

Avatar
johannes
From the Dark Atlas report "Salat Stealer Analysis: Go-Based RAT, C2 Resilience, and Info-Stealing Capabilities". See all IOC from that report at https://rosti.dev/reports/Wmr9Te7R