ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://ppdb.smkn1cilegon.sch.id/huPl/index.php.

Database Entry


IOC ID:67864
IOC: http://ppdb.smkn1cilegon.sch.id/huPl/index.php
IOC Type :url
Threat Type :botnet_cc
Malware: Azorult
Malware alias:PuffStealer, Rultazo
Confidence Level : Confidence level is high (100%)
First seen:2021-05-31 12:01:03 UTC
Last seen:2023-09-27 14:02:47 UTC
UUID:dfb89fd8-c207-11eb-b17b-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:AZORult

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-06-08 07:07:40 6d11e9bcf23f1b1e0fa235ff9fa4d28a967743b159ebedd10f0bbfa169ebfccd
2021-06-08 07:07:40 3ec30eabf7c98ed1c6031f57038e10d195276621ccb77237158a46bce3083cc6
2021-06-08 07:07:38 eba13d2d3a2217296afb54dce9203015253967359181ddee11f7c456a4521c43
2021-06-08 07:07:37 6cd9afd78d3d65eddd125b2c6b2b812edd58da2b521d8d9c9c1d8e1a372c3c3c
2021-06-08 07:07:36 6e8f4d33a2233085f2a9dea84b029098fded41e97af2f95e4a2e4e07fc6f52d9
2021-05-31 13:55:53 49c21b1c59f065d20fa66d292d4fd2709620449d422aef8d39fe4d4bd69f1d31
2021-05-31 12:01:07 6707f8585bc86cee81fa957414be0bcfc707b1786d372b057de4cc0f30d2af08