ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 162.55.188.117:48958.

Database Entry


IOC ID:1078699
IOC: 162.55.188.117:48958
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS24940 HETZNER-AS
Country:- DE
First seen:2023-02-07 14:46:02 UTC
Last seen:never
UUID:24701242-a6f6-11ed-a1c7-42010aa4000a
Reporter iamdeadlyz
Reward 10 credits from anonymous
Tags:Misterium PureLand
Reference: https://bazaar.abuse.ch/sample/fe11868abbb864dd3821faae6b1879e6899477ebd183caaca3d06bc3c4215f93/

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2023-02-07 16:15:32 fe11868abbb864dd3821faae6b1879e6899477ebd183caaca3d06bc3c4215f93