ThreatFox IOC Database

You are viewing the ThreatFox database entry for url https://nagains.azurewebsites.net/wp-content/plugins/wp-file-manager/lib/codemirror/mode/rpm/changes/seismologist.php.

Database Entry


IOC ID:276068
IOC: https://nagains.azurewebsites.net/wp-content/plugins/wp-file-manager/lib/codemirror/mode/rpm/changes/seismologist.php
IOC Type :url
Threat Type :payload_delivery
Malware: Hancitor
Malware alias:Chanitor
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS8075 MICROSOFT-CORP-MSN-AS-BLOCK
Country:- US
First seen:2021-12-15 16:27:16 UTC
Last seen:2021-12-15 17:10:30 UTC
UUID:de0c3875-5dc3-11ec-8ab6-42010aa4000a
Reporter Cryptolaemus1
Reward 5 credits from ThreatFox
Tags:doc Hancitor html