ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 142.132.179.117:23232.

Database Entry


IOC ID:1068344
IOC: 142.132.179.117:23232
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS24940 HETZNER-AS
Country:- DE
First seen:2023-01-14 18:42:27 UTC
Last seen:2023-08-01 17:56:57 UTC
UUID:31d4a22d-943b-11ed-8c16-42010aa4000a
Reporter iamdeadlyz
Reward 10 credits from anonymous
Reference: https://bazaar.abuse.ch/sample/b3472ce58423fb8546d8648f150303fe856c779cc05756ae1349965c1698866b/

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2023-01-15 08:45:41 9e36d46ed59ffe9f276424cbe75b2ee5f5f164a5964acf2f59b48106fe306b12
2023-01-15 08:15:17 b3472ce58423fb8546d8648f150303fe856c779cc05756ae1349965c1698866b