S0344 - Azorult

Threat Intelligence Feed

Feed ID: 8R3PI4cBgHqbhTfS2g_t

Azorult is a commercial Trojan that is used to steal information from compromised hosts. Azorult has been observed in the wild as early as 2016.In July 2018, Azorult was seen used in a spearphishing campaign against targets in North America. Azorult has been seen used for cryptocurrency theft.


Select the way you want to use this feed:


Download Feed

Download this Threat Intelligence feed directly or through code:

  • Several different formats (Simple IoC lists or full context JSON)
  • Code snippets available on how to download it in different programming languages.


  • Integrate Feed

    Automate your Security Operations by integrating this feed data real time into your Security Stack:

  • Onboard Maltiverse Feeds on security devices (SIEM, SOAR, Firewalls, etc)
  • Create your own feed and deploy new IoCs insantly across you security devices.


  • Feed composition

    Feed composition by type

    IP Address Hostname URL Sample Total

    Feed ingestion over time (now-1M)

    Feed composition by type

    results found for: “classification:malicious AND blacklist.external_references.external_id:"S0344"”