ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://45.133.1.13/xsaz/index.php.

Database Entry


IOC ID:238219
IOC: http://45.133.1.13/xsaz/index.php
IOC Type :url
Threat Type :botnet_cc
Malware: Azorult
Malware alias:PuffStealer, Rultazo
Confidence Level : Confidence level is high (100%)
ASN:AS203320 TURIEN-AS
Country:- NL
First seen:2021-10-27 10:46:25 UTC
Last seen:2023-09-27 13:59:34 UTC
UUID:221de474-3713-11ec-8ab6-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:AZORult

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-10-28 08:55:13 e60f5cf1e6d747b279f97b990ee3c3c14ccb35572bb8f748bf0b1ca575e6dddc
2021-10-27 10:46:28 b4edff6003f9f9c93ab200311c08c1798898da7787ddbfe48a9333646aa1b432