ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 78.189.76.2:50000.

Database Entry


IOC ID:1027215
IOC: 78.189.76.2:50000
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Emotet
Malware alias:Geodo, Heodo
Confidence Level : Confidence level is elevated (75%)
ASN:AS9121 TTNet
Country:- TR
First seen:2022-11-30 09:20:34 UTC
Last seen:2022-11-30 09:37:26 UTC
UUID:3e78b3d8-7090-11ed-8c16-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:emotet
Reference: https://bazaar.abuse.ch/sample/3ed3759a7759fd6cffc0bddfc01d262f1a8a47b10ee5c4c2192547f7f47683d1/

Avatar
abuse_ch
emotet (aka Geodo,Heodo) botnet C2