ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://212.192.241.165/PL341/index.php.

Database Entry


IOC ID:241380
IOC: http://212.192.241.165/PL341/index.php
IOC Type :url
Threat Type :botnet_cc
Malware: Azorult
Malware alias:PuffStealer, Rultazo
Confidence Level : Confidence level is elevated (75%)
ASN:AS44477 UNKNOWN
Country:- MD
First seen:2021-11-02 10:35:25 UTC
Last seen:2023-09-27 14:02:10 UTC
UUID:97108a25-3bc8-11ec-8ab6-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:AZORult
Reference: https://bazaar.abuse.ch/sample/59cbb99d4b9653328917caceb177e1cf7dd27176c3afd4ff9eb3701ac805d40d/

Avatar
abuse_ch
azorult (aka PuffStealer,Rultazo) botnet C2

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-11-03 02:15:46 59cbb99d4b9653328917caceb177e1cf7dd27176c3afd4ff9eb3701ac805d40d