ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://37.252.5.231/files/upgrade.php.

Database Entry


IOC ID:548174
IOC: http://37.252.5.231/files/upgrade.php
IOC Type :url
Threat Type :botnet_cc
Malware: BlackGuard
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS34702 WAVECOM-AS
Country:- EE
First seen:2022-05-05 05:21:24 UTC
Last seen:never
UUID:34af65bc-cc33-11ec-a357-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:BlackGuard

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-05-05 05:21:25 ef50e73a5cfe39668c16914a9d2b4d0f399c507486c0f240b0e9ecd1b3bee557