ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://gwinaz.pro/PL341/index.php.

Database Entry


IOC ID:851127
IOC: http://gwinaz.pro/PL341/index.php
IOC Type :url
Threat Type :botnet_cc
Malware: Azorult
Malware alias:PuffStealer, Rultazo
Confidence Level : Confidence level is elevated (75%)
First seen:2022-09-22 14:16:12 UTC
Last seen:never
UUID:1c8b2cc8-3a81-11ed-ae73-42010aa4000a
Reporter @abuse_ch
Reward 5 credits from ThreatFox
Tags:AZORult
Reference: https://bazaar.abuse.ch/sample/134488a4700a7deda589f0015dbd0c23a0cebd5b0a47d02c77cab3e8d4d0578b/

Twitter
@abuse_ch
azorult (aka PuffStealer,Rultazo) botnet C2