🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 193.161.193.99:1194.

Database Entry


IOC ID:1092120
IOC: 193.161.193.99:1194
IOC Type :ip:port
Threat Type :botnet_cc
Malware: NjRAT
Malware alias:Bladabindi, Lime-Worm
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS198134 GETWIFI-AS
Country:- RU
First seen:2023-03-20 19:05:25 UTC
Last seen:2026-03-08 23:01:42 UTC
UUID:2bc6a5fb-c752-11ed-928d-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:njrat

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-08-18 21:55:23 6566cf90850e894917dfea4674f4bc9d8ef10e667cb9b981ed27dca073b0771e
2025-07-12 20:50:20 82e0ef85e352891a7cd82b9a24935917e00771c50c53141cde3cbddf97a09f24
2025-03-24 19:15:14 fd070899107cd15d65e14aa61343de0893a47dfdedb0911167ad1df8db54f01e
2023-03-20 19:10:26 f41ef98c543024f81a9f443613eae6eb09de3c7a310b8794ecc9baec31999ca2