ThreatFox IOC Database
You are viewing the ThreatFox database entry for ip:port 172.245.128.35:8443.
Database Entry
This IOC expired
This IOC is an old IOC and hence has expired on 2026-04-12 01:15:01 UTC. We therefore refrain from exporting it into our datasets. As a result, this database entry is purely informational and has no impact.
| IOC ID: | 1093798 |
|---|---|
| IOC: | 172.245.128.35:8443 |
| IOC Type : | ip:port |
| Threat Type : | botnet_cc |
| Malware: | BianLian |
| Confidence Level : | Confidence level is moderate (50%) |
| Is compromised? : | False |
| ASN: | AS36352 AS-COLOCROSSING |
| Country: | US |
| First seen: | 2023-03-24 19:07:24 UTC |
| Last seen: | never |
| UUID: | 1c5f3e95-ca77-11ed-928d-42010aa4000a |
| Reporter | |
| Reward | 5 credits from ThreatFox |
| Tags: | AS-COLOCROSSING Bianlian Go Trojan |
| Reference: | https://search.censys.io/search?resource=hosts&q=services.certificate%3A%22d42324b39f761b6b7a5faee4af3e28f4899078037dfd0c84ad67b5bc0ee55539%22 |
drb_ra
Bianlian Go Trojan FoundC2: 172[.]245[.]128[.]35:8443
Certificate: d42324b39f761b6b7a5faee4af3e28f4899078037dfd0c84ad67b5bc0ee55539
Country: United States
ASN: AS-COLOCROSSING
US